Lead Specialist, Third Party Risk Management
Listed on 2025-10-28
-
IT/Tech
Cybersecurity, Information Security
Lead Specialist, Third Party Risk Management
Join to apply for the Lead Specialist, Third Party Risk Management role at KPMG US.
KPMG Advisory practice is currently our fastest growing practice. We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility and leading market tools, we make sure our people continue to grow both professionally and personally.
If you re looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory.
KPMG is currently seeking a Lead Specialist, Third Party Risk Management to join our Managed Services practice.
Responsibilities- Interact with onshore engagements and clients directly performing vendor or third-party security assessments, and perform remote assessments independently
- Independently draft reports of the assessments based on the discussions during remote reviews, and perform second level quality review of the reports written by peers/junior resources
- Conduct business continuity planning and disaster recovery implementation and review experience
- Build and maintain strong, collaborative relationships with clients and internal teams, and support the current team with the execution and management of engagements in our current and future Client portfolio
- Lead and manage client engagements with a focus on delivering high-quality service in a managed services context
- Act with integrity, professionalism, and personal responsibility to uphold KPMG s respectful and courteous work environment
- Minimum five years of recent information security governance, privacy and compliance and security assessment experience, with a focus on IT and IS Risk Assessments and program reviews / establishment; prior consulting experience with big 4 or large clientele is preferable, and CISA/ CISSP/ CISM/ CIPP/ ISO 27001 is preferable
- Master s degree from an accredited college or university in information security, computer science, engineering, technology or a similar degree is preferred; minimum of a Bachelor s degree in information security, computer science, engineering, technology or a similar degree is required
- Familiarity with and demonstrated experience assessing against ISO 27002, BS 25999 and related security standards and frameworks
- Information Security Governance, Privacy and Compliance and Security Assessment experience with a focus on IT and IS Risk Assessments and program reviews / establishment, and understanding of ISO 27001/ NIST 800-53/ PCI-DSS
- Broad understanding of Information Security trends, services and disciplines, and experience applying them in dynamic environments
- Strong client interaction skills, both written and verbal, and highly fluent in English
- Ability to travel as required
- Authorized to work in the U.S. without visa sponsorship now or in the future; no sponsorship for U.S. work visas is available
KPMG LLP and its affiliates comply with all local/state regulations regarding salary disclosures. KPMG is an equal opportunity employer. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, or any other category protected by applicable law.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).