At a Glance
- Tasks: Lead the development of a cutting-edge Third-Party Risk Management strategy and framework.
- Company: Join Enstar Group, a leader in risk management with a collaborative culture.
- Benefits: Enjoy competitive salary, wellness reimbursements, and automatic pension enrolment.
- Other info: Dynamic role with excellent career growth opportunities and a focus on innovation.
- Why this job: Shape the future of risk management while making a real impact across the organisation.
- Qualifications: 10+ years in risk management with strong stakeholder influence skills.
The predicted salary is between 70000 - 85000 £ per year.
A senior member of the Operations team, this exciting new role will be responsible for shaping the Group’s Third-Party Risk Management (TPRM) strategy, framework and operating model across Enstar Group. The role is accountable for the ongoing development of a scalable and risk-based TPRM framework that supports the organisation’s strategic objectives and regulatory obligations. Acting as the Group subject matter expert for third-party risk management, the role requires close partnership with Heads of Functions across Procurement, Compliance, Enterprise Risk (Head of Operational Risk), Information Security, Legal, IT, Operational Resilience, Investments and business service owners to ensure third-party risk considerations are embedded into day-to-day decision making and operational processes. As well as working with peers, the role will need to closely engage with Regional COOs and Group Execs.
The role will be responsible for an Enstar Group function and operates within a Group federated risk and control model, working closely with specialist risk and control functions to ensure relevant domain expertise, standards and regulatory requirements are effectively integrated into third-party governance, assessment and oversight processes. The role will also play a key role in the implementation and optimisation of TPRM technologies, tooling and data capabilities to support improved oversight, workflow management, reporting and risk insight. This is a highly visible, hands-on first line of defence leadership role requiring strong judgement, stakeholder influence, operational credibility and the ability to translate policy and framework requirements into practical business outcomes.
What you will be doing:
- Group Third-Party Risk Strategy & Framework
- Own and evolve the Group-wide Third-Party Risk Management strategy, framework and operating model across all categories of third-party relationships.
- Drive the continued maturity and embedding of TPRM capabilities across all business areas.
- Will be accountable for a small Department with responsibility for Departmental strategy.
- Establish proportionate governance models which recognise differing third-party relationship structures, risk profiles and business operating models.
- Deliver continuous improvement of TPRM methodologies, controls, standards and lifecycle processes.
- Third Party Oversight & Risk Management
- Provide enterprise-wide oversight and coordination of third-party risk activities throughout the lifecycle of third-party relationships.
- Support the effective management of risks associated with suppliers, TPAs, investment managers, outsourced service providers and other external partners, through collaboration with specialist teams.
- Lead approaches relating to material outsourcing, critical third parties, concentration risk, fourth party exposure and operational dependencies.
- Ensure robust due diligence, risk assessment, monitoring, issue management and escalation processes are embedded across the organisation.
- Support business stakeholders and service owners in making informed, risk-based decisions relating to third-party engagements and outsourcing arrangements.
- Deliver meaningful management information, reporting and insight to support effective oversight and decision making.
- Governance & Regulation
- Ensure alignment of TPRM practices with evolving regulatory expectations, operational resilience requirements and industry best practice.
- Manage Governance and reporting processes relating to outsourcing, critical third parties and material external relationships.
- Coordinate cross-functional risk input into third-party assessment, governance and oversight activities.
- Ensure effective integration of Operational Resilience, Information Security, Legal, Compliance and other specialist risk domain requirements into TPRM lifecycle processes and governance.
- Support regulatory engagement and audit activity.
- Enterprise Collaboration & Stakeholder Leadership
- Build strong partnerships with senior stakeholders across Operations, Procurement, Investments, Compliance, Enterprise Risk, Information Security, Legal, IT and Operational Resilience functions.
- Work closely with the Head of Procurement to ensure effective integration between sourcing, supplier lifecycle management and third-party risk governance activities.
- Act as the Group subject matter expert and trusted advisor on third party risk management matters.
- Influence and support business stakeholders in embedding practical, commercially effective and risk-based third-party management practices.
- Lead stakeholder engagement, awareness and education activities to strengthen organisational understanding and ownership of third-party risk management responsibilities.
- Technology, Data & Transformation
- Manage the implementation and optimisation of TPRM technologies, tooling and workflow capabilities.
- Drive improvements in automation, data quality, reporting and management insight capabilities.
- Support the development of scalable and sustainable governance processes through technology-enabled transformation.
- Use data-driven insights to identify emerging risks, trends and improvement opportunities.
- Leadership & Capability Development
- Provide leadership, direction and prioritisation across the TPRM function and future operating model.
- Support the continued development of organisational capability, awareness and accountability for third-party risk management.
- Foster a culture of collaboration, continuous improvement and pragmatic risk management.
- Support the ongoing evolution of team structure, capability and operating approach as the function matures.
- Contribute to broader enterprise transformation, governance and operational excellence initiatives.
What you will bring:
- Educated to degree level or equivalent professional experience.
- Extensive experience (ideally 10+ years) within Procurement, Supplier Risk, Third-Party Risk Management or related risk disciplines.
- Demonstrable experience evolving enterprise-wide TPRM or supplier risk frameworks within regulated organisations.
- Experience operating within first line risk ownership models and working closely with second and third line functions.
- Experience managing cross-functional transformation and framework embedding initiatives.
- Experience managing and developing small teams and operating models.
- Strong track record of influencing senior stakeholders and driving organisational change.
- Extensive experience leading Third-Party Risk Management, Supplier Risk Management or Outsourcing Risk functions within Financial Services or other highly regulated environments.
- A strong understanding of UK Regulation is essential and a good understanding Regulation in our other operating jurisdictions is helpful, especially Bermuda and EU.
- Proven ability to operate effectively in complex, matrixed organisations and influence senior stakeholders across multiple business functions and jurisdictions.
- Strong strategic thinking capability combined with a pragmatic, hands-on delivery mindset.
- Ability to balance commercial objectives, operational realities and risk management requirements in decision making.
- Outstanding stakeholder management and executive communication skills, with the ability to challenge constructively and influence at Exec level.
- Demonstrated experience designing, implementing and embedding risk management frameworks and governance models.
- Strong organisational change and transformation capability, including experience embedding new processes, controls and technologies into business operations.
- Ability to lead through ambiguity, manage competing priorities and navigate organisational complexity effectively.
- Collaborative style with strong relationship management and cross-functional partnering capability.
- Strong judgement, credibility and resilience, with the ability to simplify complex issues into clear and actionable outcomes.
- Deep understanding of Third-Party Risk Management frameworks, outsourcing governance and supplier risk management practices within Financial Services.
- Strong knowledge of supplier governance and relevant regulatory expectations impacting outsourcing and third-party risk.
- Experience implementing and enhancing TPRM technologies, platforms and workflow solutions.
- Strong understanding of end-to-end procurement and supplier lifecycle management processes.
- Knowledge of risk management methodologies, controls, governance and reporting practices.
- Strong analytical and problem-solving capability with the ability to use data and insight to support decision making.
- Ability to develop meaningful management information, risk reporting and executive-level insights.
- Excellent communication and presentation skills across technical and non-technical stakeholder groups.
- Strong project, programme and change management capability.
Head of Third Party Risk Management in London employer: Enstar Group
Enstar Group is an exceptional employer, offering a dynamic work culture in Greater London that prioritises employee well-being and professional growth. With comprehensive benefits such as medical and wellness reimbursement programs, employees are supported both personally and professionally, fostering a collaborative environment where innovation thrives. Join us to be part of a team that values your contributions and encourages continuous development in the ever-evolving field of cloud operations.
StudySmarter Expert Advice🤫
We think this is how you could land Head of Third Party Risk Management in London
✨Join Compliance Communities
Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!
✨Attend Industry Conferences
Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.
✨Leverage Your University Career Services
If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.
✨Showcase Your Knowledge Online
Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like Enstar Group looking for candidates who are engaged and informed.
We think you need these skills to ace Head of Third Party Risk Management in London
Some tips for your application 🫡
Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!
Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.
Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!
Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at Enstar Group. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!
How to prepare for a job interview at Enstar Group
✨Master the Regulations
Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!
✨Show Your Analytical Skills
Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!
✨Know Your Tools
Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!
✨Align with Company Culture
Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with Enstar Group’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!