Deloitte Third Party Risk Management - Cyber Risk Technologist in Philadelphia, Pennsylvania
When you join the Deloitte Advisory Third-Party Risk Management (TPRM) practice, you will see how we work with some of the largest organizations in the world, across a variety of industries, to assist organizations in the development and operation of TPRM programs. Our client list includes eminent organizations across industries, e.g. technology, mining, media, pharmaceuticals, oil and gas, public sector and charities.
The work you perform will help you develop an understanding of:
Clients' functional and technical requirement, solution configuration and implementation
the different third-party relationships an organization may have across different industries;
the drivers which affect behaviors of business partners, suppliers and customers; and
the operational processes and controls required by an organization to effectively manage and monitor its third-party relationships.
Our TPRM portfolios of services includes a broad variety of solutions for our clients, including designing and implementing broad third-party governance and risk management technologies/frameworks/processes, developing third-party risk and control assessments, and implementing managed services to improve/enhance an organization's TPRM program. Given the ever increasing size and complexity of third party ecosystems, our clients are increasing leveraging our firm's expertise to implement and operate a wide variety of TPRM solutions designed to mitigate risks and drive more value in third party relationships.
Lead and support the design and implementation of third-party risk technology platforms , identifying, evaluating, and providing solutions to evaluate complex business and technology risks
Participating in workshops about designing, building, testing, integrating, and implementing TPRM tools/platforms to help organizations develop practical solutions to achieve better visibility over key components of their third-party risk programs, including various risk domains
Work and consult with client technical/functional teams to design and implement solutions enhancements to optimize performance
Use various tools or methodologies to review, design, integrate and/or implement TPRM platform / tools including the process requirements design, writing business and functional requirements and testing the platform
Creating architecture PoV documents to describe the architecture types (app, data, integration, security), purposes, guiding principles, reference architectures, preferred architecture patterns, related technologies, and roles associated with implementing each architecture.
Providing smart automation and digital solutions, including Robotic Process Automation (RPA) and Artificial Intelligence (AI) through Case Management, Business Process Management (BPM) and Enterprise Content Management (ECM) platforms along with robust industry- and market-specific process frameworks
Design policies and procedures that support the successful implementation of TPRM operating models
Facilitate process walkthrough discussions to document end-to-end business processes and functional requirements
Consider the application of legal and regulatory requirements to company's risk management practices.
Design technology enhancement requirements to support third-party risk management processes.
Track and communicate engagement performance and planning to Deloitte engagement management, ensuring project milestones remain on track and are completed timely
Actively mentor and train team members on Third Party Risk Management processes, governance, and frameworks
Work cross-functionally with team members to support and drive a collaborative team environment
Create and design effective presentations as a means for communicating project and deliverable progress to clients
Perform sophisticated data analyses to understand client's business and identify risk
Execute advanced services and supervise staff in delivering basic services
Assist in the selection and tailoring of approaches, methods and tools to support service offering or industry projects
Understand client's business environment and basic risk management approaches
Demonstrate a general knowledge of market trends, competitor activities, Deloitte & Touche's products and service lines
Actively participate in decision making with engagement management and seek to understand the broader impact of current decisions
Generate innovative ideas and challenge the status quo
Build and nurture positive working relationships with clients with the intention to exceed client expectations
Facilitate use of technology-based tools or methodologies to review, design and/or implement products and services
Identify opportunities to improve engagement profitability
Excellent potential for 1. playing lead role in designated tasks of the project team in gathering, organizing and analyzing data; 2. making major contributions in assuring products/deliverables meet contract/work plan; and 3. strong potential for growth and acceptance of additional responsibilities
Applicants need the ability to adopt a pragmatic approach to dealing with situations where confidentiality is important or where our work is of a sensitive nature. Helping maintain our client's strong professional relationships is integral to our business.
5+ years' experience within professional services or related roles within industry
5+ years of demonstrated experience with risk management across the third party engagement lifecycle (pre-contracting, contracting and post contracting) and an understanding of the associated organizational infrastructure (e.g. relevant internal controls, business processes, governance structures)
Demonstrated solid functional knowledge of the various TPRM tools program components and be able to resolve both functional and technical issues
Hands-on functional and technical system knowledge of the TPRM standard processes and configurations
5+ years of experience in one or more of the following:
Business process and organizational design (e.g. process mapping, workflows, governance structures across the three lines of defense, process and enterprise level RACIs)
Procurement / supply chain process assessment and design (and other third- party engagement processes not typically within procurement remit, e.g. distributor relationships)
Third party cyber assessment experience
Third Party Risk Management tools and technology solutions (e.g. GRC enablement solutions, etc.)
Third Party Risk Management market utilities (e.g. community models)
Framework testing (e.g. Process UAT, design of testing scripts and testing plans, etc.)
Experience in change management and/or managed service solution design and implementation a plus
BA/BS in Business Administration, Supply Chain, Accounting/Finance, Engineering, Computer Science, Information Management Systems or related fields
Ability to travel up to 50% (While up to 50% travel is a requirement of the role, due to COVID-19, non-essential travel has been suspended until further notice)
Limited immigration sponsorship may be available
Previous Consulting or Big 4 experience preferred
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.