Third Party Risk Manager

Edinburgh
6 months ago
Applications closed

Related Jobs

View all jobs

Third Party Cyber Risk Manager

GRC Analyst - Third Party Risk Management

Security Compliance Manager

Information Security Manager

Information Security Governance Manager

Senior IT Systems Engineer

Hybrid - Edinburgh

💰 Salary - up to £70,000

🛠 Role - Third Party Risk Manager

Head Resourcing have partnered with an established private banking client in Edinburgh who are looking to recruit a Third Party Risk Manager.

About the Role:

This role plays a key role in the management of the Bank's supply chain, with primary responsibility for the central tasks that support effective oversight and governance of third-party relationships and associated risks.

This role will work closely with Supplier Relationship managers to provide robust commercial support, strategic guidance and oversight of supplier performance and compliance with the Bank's Supply Chain Framework and overarching Risk Management Framework.

The role requires a highly organised, pro-active and commercially aware professional with demonstrable expertise in supplier governance, third-part risk and regulatory compliance.

Key Responsibilities include:

Partner with Supplier Relationship Managers to support effective oversight, including participation in supplier review meetings and escalation processes.
Lead central Supply Chain Management activities such as Supplier Due Diligence, Materiality Assessment, Contract updates, Supplier Risk Assessments.
Coordinate Supply Chain Management tasks with other support functions including Legal, Financial Crime, Finance, IT, Compliance.
Maintain a clear and actionable work plan, ensuing progress is well-tracked, communicated and aligned with stakeholder expectations.
Develop, enhance and maintain the Bank's Supply Chain Management Framework ensuring ongoing regulatory compliance (e.g., PRA SS2/21)

Required Knowledge & Skills:

Proven experience in Third Party / Supplier risk management in a regulated financial services environment.
Experience in the following relevant domains: Operational Resilience, Data Privacy, Regulatory Risk, Financial Crime, Information Security, Contracting.
Proven ability to enhance supplier relationships, driving improved outcomes through collaboration and strategic engagement.
Strong knowledge of UK regulatory requirements (e.g., PRA SS2/21, FCA Handbook, operational resilience).
Experience in designing and implementing Supply Chain and Risk Management frameworks and processes.
Exceptional stakeholder management skills, with a strong ability to negotiate, influence, and communicate effectively across all levels.
Resilience and toughness, with strong commercial acumen
Creative thinker with a proven track record of developing innovative approaches to complex challenges.
Strong analytical capabilities and excellent meticulous to detail.

Please apply with an up-to-date CV or reach out for more information.

Please note, this organisation doesn't not offer sponsorship and only candidates currently based within commuting distance of Edinburgh will be considered

Head Resourcing is committed to being an inclusive business where diversity is valued and celebrated. Diversity to us, includes but is not limited to educational background, socio-economic background, neurodiversity, age, marriage and civil partnership status, veteran status, gender, gender identity, gender reassignment, sexual orientation, disability, religion or belief, race, and ethnicity. As such we welcome enquiries and applications from everyone. We will be happy discuss with you any workplace adjustments you need in order to be at your best during the recruitment process

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Advertising cyber security jobs in the UK requires a different approach to most technical hiring. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Penetration Tester Jobs in the UK: What Employers Actually Want in 2026

The demand for skilled professionals in cyber security has never been higher, and penetration testers sit at the very heart of this rapidly evolving industry. As organisations across the UK continue to digitise their operations, protect sensitive data, and defend against increasingly sophisticated threats, the need for ethical hackers has grown dramatically. If you are considering a career in this field—or looking to advance within it—it is essential to understand what employers are really looking for in 2026. This guide breaks down the current expectations, required skills, certifications, and practical experience that can help you stand out in a competitive job market.

SOC Analyst Jobs UK 2026: Salaries, Skills & How to Get Hired

Cyber security is one of the UK's fastest-growing career paths — and SOC analyst is where most people begin. It's in high demand, genuinely accessible, and you don't need a degree or years of experience to get started. But knowing what UK employers actually want in 2026 — what they pay, which certs matter, and how to stand out — is a different matter. This guide covers all of it.