Regulatory Traction and Oversight - TPRM Execution
Number of Openings |
1 |
ECMS ID in sourcing stage |
TS-ID-15628 |
Assignment Duration |
6 Months |
Total Yrs. of Experience |
7+ years |
Relevant Yrs. of experience |
6 +years |
Detailed JD (Roles and Responsibilities) |
|
Third Party Risk Management | |
| |
Role is Third Party Risk Management Risk Specialist with emphasis on GDPR Risks. | |
| |
• Risk Assessment and Analysis | |
o Conduct detailed risk assessments for third-party vendors to identify potential risks associated with their services or products. | |
o Emphasize GDPR risks and compliance, ensuring that third parties adhere to data protection principles and practices. | |
o Additionally in collaboration with other subject matter experts evaluate the financial stability, cybersecurity measures, compliance with relevant regulations, and the operational resilience of third parties. | |
• Due Diligence and Continuous Monitoring | |
o Perform thorough due diligence before onboarding new third parties. | |
o Implement continuous monitoring strategies to ensure ongoing compliance and performance evaluation of existing third parties. | |
| |
• Reporting and Communication | |
| |
o Communicate findings and recommendations effectively to stakeholders and ensure alignment on risk management strategies. | |
o Highlight GDPR compliance status in reports and communications. | |
| |
• Regulatory Compliance and Documentation | |
| |
o Ensure all third-party engagements comply with relevant laws, regulations, and standards such as GDPR, DORA, HIPAA, or SOX depending on the industry. | |
| |
o Maintain comprehensive documentation for audits and regulatory reviews. Ensure thorough documentation of GDPR compliance for all third-party engagements | |
| |
• Stakeholder Engagement | |
| |
o Collaborate with other departments like procurement, legal, and compliance to align third-party risk management with overall organizational objectives. | |
o Emphasize GDPR compliance in stakeholder communications and engagements | |
| |
• Training and Awareness | |
| |
Raise awareness about the importance of third-party risk management throughout the organization. | |
| |
Emphasize GDPR specific content to ensure stakeholders understand data protection requirements. | |
| |
• Incident Management and Remediation | |
| |
o Analyze incidents to identify lessons learned and implement improvements in risk management practices. | |
Ensure GDPR compliance in incident response and remediation efforts. | |
| |
|
• Innovation and Improvement |
|
|
|
o Stay abreast of industry trends and advancements in risk management and GDPR best practices and technologies |
|
o Recommend and implement improvements in TPRM processes and tools to increase efficiency, quality and user experience. |
|
o Incorporate GDPR best practices into risk management processes and tools |
Max Vendor Rate in Per Day (Currency in relevance to work location) |
12000 INR |
Work Location given in ECMS ID |
Bangalore/Pune |
WFO/WFH/Hybrid WFO |
Hybrid |
BG Check (Before OR After onboarding) |
As per Infosys Policy |
Is there any working in shifts from standard Daylight (to avoid confusions post onboarding) YES/ NO |
NO |