Technology Consulting-DT Data Management (DRISC) Manager
Mumbai, Maharashtra, India
About KPMG in India
KPMG entities in India are professional services firm(s). These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993. Our professionals leverage the global network of firms, and are conversant with local laws, regulations, markets and competition. KPMG has offices across India in Ahmedabad, Bengaluru, Chandigarh, Chennai, Gurugram, Jaipur, Hyderabad, Jaipur, Kochi, Kolkata, Mumbai, Noida, Pune, Vadodara and Vijayawada.
KPMG entities in India offer services to national and international clients in India across sectors. We strive to provide rapid, performance-based, industry-focused and technology-enabled services, which reflect a shared knowledge of global and local industries and our experience of the Indian business environment.
• Lead and manage TPRM engagements for clients, including assessment of vendor risks, development of risk mitigation strategies, and implementation of compliance frameworks.
• Act as a primary point of contact for clients, ensuring high-quality delivery and timely communication.
• Build strong client relationships by understanding their business needs and providing tailored risk management solutions.
• Design, implement, and optimize third-party risk management frameworks aligned with industry standards (ISO 31000, NIST, COSO).
• Oversee the execution of third-party risk assessments, including cyber, operational, compliance, and financial risks.
• Develop tools, templates, and methodologies to streamline the TPRM process.
• Manage, mentor, and develop a team of analysts and consultants, ensuring effective project delivery.
• Collaborate with internal stakeholders (e.g., Procurement, IT, Legal) and third-party vendors to address risk management challenges.
• Drive cross-functional workshops and training sessions to enhance risk awareness.
• Ensure compliance with regulatory standards, including GDPR, CCPA, ISO 27001, and sector-specific requirements.
• Monitor industry trends and best practices to continually enhance risk management practices.
• Lead initiatives for process improvement and innovation within the TPRM function.
• Support business growth by identifying opportunities to expand TPRM services within existing and new client portfolios.
• Contribute to proposals, presentations, and thought leadership content to position the firm as a leader in TPRM.
• Bachelor’s degree in Risk Management, Business Administration, IT, or a related field (Master’s preferred).
• Professional certifications such as CISA, CISM, CRISC, CISSP, or equivalent are strongly preferred.
• 10+ years of experience in third-party risk management, vendor governance, or related domains, with at least 2-3 years in a leadership role.
• Proven experience working with frameworks like ISO 31000, NIST CSF, and COBIT.
• Strong understanding of third-party risk management tools (e.g., RSA Archer, OneTrust, MetricStream).
• Knowledge of regulatory compliance standards such as GDPR, SOX, or PCI DSS.
• Expertise in risk quantification, reporting, and dashboarding.
Equal employment opportunity information
KPMG India has a policy of providing equal opportunity for all applicants and employees regardless of their color, caste, religion, age, sex/gender, national origin, citizenship, sexual orientation, gender identity or expression, disability or other legally protected status. KPMG India values diversity and we request you to submit the details below to support us in our endeavor for diversity. Providing the below information is voluntary and refusal to submit such information will not be prejudicial to you.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: CCPA CISA CISM CISSP COBIT Compliance CRISC GDPR Governance ISO 27001 NIST PCI DSS Risk assessment Risk management RSA SOX
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.