Sr. Third Party Risk Management Specialist
Liberty Mutual
Sr. Third Party Risk Management Specialist
- ID
- 2026-74845
- Position Type
- Full-Time
- Job Grade
- 16
- Department
- 0055-01442 Procurement
- Market
- Corporate Center
- Referral Bonus Amount
- 1,500
- Minimum Salary
- USD $94,000.00/Yr.
- Maximum Salary
- USD $174,000.00/Yr.
- Typical Starting Salary
- $110,000 - $138,000
- Recruiter
- Susan Hebert
Description
Candidates who live within 50 miles of Boston, MA; Portsmouth, NH; Seattle, WA; Indianapolis, IN; Columbus, OH; or Plano, TX will follow a hybrid schedule, coming into the office two days per week. Otherwise, this role is remote.
Join Liberty Mutual’s Third Party Risk Management team supporting global risk management practices throughout the third party lifecycle. The Senior Third Party Risk Management (TPRM) Specialist role will be responsible for assessing, monitoring, and managing risks associated with global third-party relationships to ensure compliance with internal policies, standards, and regulatory requirements. The ideal candidate will have a strong understanding of operational and TPRM practices and excellent analytical, reporting and communication skills. This role will include closely supporting senior business owners, Cybersecurity, Privacy, Compliance, Operational Resilience and international Risk Officers as well as helping the Global Head of TPRM with shaping enterprise-level risk reporting and other global governance practices.
Additionally, the candidate should have prior experience working in a global TPRM program with demonstrated proficiency in subcontractor/4th party risk assessment and analysis, management of third-party risk issues and trending and is knowledgeable of enterprise risk management and/or global TPRM principles.
Responsibilities
- Due Diligence and Risk Analysis: Evaluates potential 4th and nth party risks, including analyzing concentration, as well as partnering with operational risk, cyber security and resiliency teams regarding third party related issues and events.
- Monitoring and Reporting: Supports the Global Head of Third Party Risk by preparing regular metrics and other risk reports for committees, management and risk experts (e.g., aggregate KPIs, ERIs and other risk metrics through reporting and dashboards) and oversees completion of business on-going risk management activities and reports on instances of non-compliance or other areas of concern.
- Incident Management: Facilitates issue escalation and risk acceptance processes to ensure appropriate stakeholders and executives across the enterprise are involved based on defined risk thresholds.
- Policy Development: Contributes to the development and refinement of the organization's TPRM policies and procedures, ensuring alignment with industry best practices and regulatory requirements and partners with the Global Head of Third Party Risk to perform program maturity analysis to help inform strategic direction of program.
- Training and Awareness: Maintains training documentation for the business, provides support to internal stakeholders and manages the creation, updates to, and testing of program procedures.
- Support Stakeholders: Leads strategic business partner and risk expert meetings, provides stakeholder guidance throughout escalations and risk acceptance processes, and provides support and advisement to program team and assists in the resolution and management of complex stakeholder engagements.
Hiring Manager: Emily Irving
Qualifications
- Bachelor’s Degree or equivalent work experience. 6+ years of experience in Third Party Risk Management, Operational Risk, Audit, or related field.
- Professional certification in TPRM strongly preferred - e.g., Certified Third-Party Risk Professional Certification (CTPRP), Certified Third-party Risk Assessor (CTPRA), Certified Third-party Risk Management Professional (C3PRMP).
- Advanced knowledge of third party risk principles and best practices in these risk areas: Information Security, Privacy, Business Continuity, Disaster Recovery, Resilience and relevant regulatory frameworks (e.g., GDPR, NIST, DORA). Risk assessment and risk analytics skills required. Audit background, including familiarity with SOC I (SSAE16) and SOC II, ISO 27001, etc. preferred.
- Detail oriented with strong organizational and reporting skills.
- Ability to independently manage and prioritize work as well as work independently and as part of a team.
- Good judgment and strong analytical and problem-solving skills.
- Excellent oral and written communication skills.
- Knowledge of insurance or financial industry preferred.
- Proficiency in risk management software, Microsoft Office Suite (Excel, PowerPoint, Word, Copilot) required.
Options
Software Powered by iCIMS
www.icims.com