Global Head of Third Party Risk Management
9 days ago
City of London
Global Head of Third Party Risk Management\n London, United Kingdom \nJob Description\n Who weâre looking for The Global Head of Third-Party Risk Management (TPRM) is responsible for designing, implementing, and overseeing a global framework to assess, monitor, and manage risks associated with Schrodersâ third-party relationships. This includes vendors, outsourcing partners, service providers, and other external entities critical to the firmâs operations. \n The role ensures that third-party risk is embedded in business decision-making, aligned with regulatory expectations (e.g., FCA, PRA, EBA, SEC), and integrated within the wider enterprise risk management framework. The role requires cross-functional working with Risk, Compliance, Legal, and Technology to embed effective risk controls, due diligence, and supplier assurance within all stages of the procurement lifecycle. \n The role will bring a continuousâimprovement mindset, staying abreast of the evolving regulatory landscape to ensure Schrodersâ thirdâparty risk practices remain forwardâlooking and fit for purpose. Based in London, the role reports to the Chief Procurement Officer, who is responsible for all Procurement activity across the organisation. \n About Schroders Weâre a global investment manager. We help institutions, intermediaries and individuals around the world invest money to meet their goals, fulfil their ambitions, and prepare for the future.\nWe have around 6,000 people on six continents. And weâve been around for over 200 years but keep adapting as society and technology changes. What doesnât change is our commitment to helping our clients, and society, prosper. \n The team Group Procurement is the centre of excellence for active commercial management of all of Schrodersâ supply chain, enabled by great people, disciplined cost management and seamless risk and compliance. Group Procurement sits within the COO Corporate Functions, supporting the wider business on all its thirdâparty commercial activity. The team are made up of multiple disciplines across Market Data & Operations, Technology, Corporate Services, Third Party Risk and Procurement Operations. Located across London, Horsham, Singapore, and New York. \n The base We moved into our new HQ in the City of London in 2018. Weâre close to our clients, in the heart of the UKâs financial centre and we have everything we need to work flexibly. \nWhat youâll do\n\n ⢠Lead the development and continuous enhancement of Schrodersâ ThirdâParty Risk Management strategy and policy.\n, ⢠Establish governance structures, including steering committees, reporting lines, and escalation protocols.\n, ⢠Ensure alignment with regulatory standards (e.g., DORA, EBA Guidelines, UK PRA SS2/21) and Schrodersâ risk appetite.\n, ⢠Develop and maintain a robust TPRM framework, including risk segmentation, due diligence, onboarding, monitoring, and exit processes.\n, ⢠Define risk taxonomy and criticality tiers for thirdâparty services.\n, ⢠Oversee enterpriseâwide risk assessments and due diligence of vendors, including financial stability, cyber resilience, and ESG risk.\n, ⢠Establish ongoing monitoring mechanisms, including performance reviews, SLA adherence, and control testing.\n, ⢠Implement early warning indicators and risk dashboards to track thirdâparty exposure and performance.\n, ⢠Act as the key control point to prevent the onboarding of supplier risk through data capture, review and assessment.\n, ⢠Coordinate the deâcentralised supplier oversight framework, supporting, advising and collaborating with Business Owners globally, maintaining oversight of supplier reviews and ensuring policy compliance.\n, ⢠Work closely with 2nd line risk functions (e.g. Financial Crime, Credit Risk, Business Continuity) to ensure supplier dueâdiligence information is made available for SME review.\n, ⢠Design and embed supplierâoversight reporting capabilities and continuously improve performance and riskâassessment governance and metrics.\n, ⢠Continually monitor the global regulatory landscape to ensure policies and procedures remain compliant and fit for purpose.\n, ⢠Provide guidance on all areas of the supplier lifecycle and business areas to direct reports and the wider team as required.\n, ⢠Own the supplier contract management and oversight platform, ensuring supplier information is recorded, maintained and regularly reviewed.\n, ⢠Maintain the Outsourcing Register, including the record of Business Owners, contracts, criticality and associated dueâdiligence activities.\n, ⢠Partner with Legal, Risk, Compliance, Procurement, IT, and Information Security to embed thirdâparty risk management practices.\n, ⢠Engage with regulators, internal audit, and external assurance providers on thirdâparty risk matters.\n, ⢠Communicate thirdâparty risk exposures and mitigation strategies to senior management and the board.\n, ⢠Lead or support implementation of TPRM systems and tools to automate workflows and reporting.\n, ⢠Maintain a centralised thirdâparty inventory and ensure quality, consistency, and completeness of vendor data.\n, ⢠Support incident response and contingency planning related to thirdâparty failures or disruptions.\n, ⢠Coordinate with business continuity and resilience teams to ensure robust thirdâparty crisis management.\n\nThe knowledge, experience and qualifications you need\n\n, ⢠Experience in operational risk, thirdâparty risk management, enterprise risk within financial services.\n, ⢠Deep knowledge of regulatory requirements for outsourcing and thirdâparty risk (FCA, PRA, EBA, DORA, etc.).\n, ⢠Strong knowledge of contract risk clauses, exit terms, business continuity, and supplier classification models.\n, ⢠Proven senior leadership experience managing crossâfunctional teams and risk frameworks in a complex global environment.\n, ⢠Experience working closely with 2nd Line Risk and Assurance functions to ensure supplier due diligence is performed, monitored, and aligned to policy.\n, ⢠Experience designing, owning and implementing supplierâmanagement and oversight frameworks, including contractâdatabase or supplierâmanagement systems, strong understanding of information security, data privacy, business continuity, and legal/vendor contracting principles.\n, ⢠Experience with thirdâparty risk platforms (e.g., Archer, ServiceNow VRM, Aravo, Coupa, etc.) is a plus.\n, ⢠Adept at leading crossâfunctional engagements with second line and audit teams.\n, ⢠Excellent communication, influencing, and presentation skills; experience engaging with senior stakeholders and regulators.\n, ⢠Strategic Thinking\n, ⢠Supplier & ThirdâParty Governance Expertise\n, ⢠Risk and Control Mindset\n, ⢠Regulatory Acumen\n, ⢠Leadership & People Management\n, ⢠Stakeholder Influence & Communication\n, ⢠Analytical & Problem Solving\n\nThe knowledge, experience and qualifications thatâll help\n\n, ⢠Degree in Risk Management, Business, Law, Finance, or related field\n, ⢠Masterâs degree or MBA advantageous\n