Lead Specialist, Third Party Risk Management

KPMG

$120K — $150K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of recent experience in information security governance, privacy, compliance, and security assessments with a consulting background preferred
  • Master's degree in information security, computer science, engineering or similar field; Bachelor’s degree required
  • Experience with BS ISO/IEC/SIG 27002:2005 and BS 25999 standard domains
  • Knowledge of ISO 27001, NIST 800-53, and PCI-DSS frameworks
  • Strong understanding of current information security trends and applied methodologies
  • Excellent written and verbal communication skills in English
  • Willingness to travel as necessary

Responsibilities

  • Conduct vendor and third-party security assessments independently and interact with clients
  • Write assessment reports based on remote reviews and perform quality checks on peers' work
  • Lead business continuity planning and disaster recovery initiatives
  • Establish and maintain collaborative client and team relationships
  • Manage client engagements with a focus on high-quality service delivery
  • Promote a respectful and professional work culture within KPMG

Benefits

  • Comprehensive medical and dental plans, vision coverage
  • Disability and life insurance offerings
  • 401(k) retirement plans
  • Personal well-being benefits supporting mental health
  • Paid time off and observed holidays
  • Two additional breaks each year without using Personal Time Off
Full Job Description
KPMG is currently seeking a Lead Specialist, Third Party Risk Management to join our Managed Services practice.

Responsibilities:
  • Interact with onshore engagements and clients directly performing vendor or third-party security assessments, and perform remote assessments independently
  • Independently draft reports of the assessments based on the discussions during remote reviews, and perform second level quality review of the reports written by peers/junior resources
  • Conduct business continuity planning and disaster recovery implementation and review experience
  • Build and maintain strong, collaborative relationships with clients and internal teams, and support the current team with the execution and management of engagements in our current and future Client portfolio
  • Lead and manage client engagements with a focus on delivering high-quality service in a managed services context
  • Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment

Qualifications:
  • Minimum five years of recent information security governance, privacy and compliance and security assessment experience, with a focus on IT and IS Risk Assessments and program reviews / establishment; prior consulting experience with big 4 or large clientele is preferable, and CISA/ CISSP/ CISM/ CIPP/ ISO 27001 is preferable
  • Master's degree from an accredited college or university in information security, computer science, engineering, technology or a similar degree is preferred; minimum of a Bachelor's degree in information security, computer science, engineering, technology or a similar degree is required
  • Familiarity with and demonstrated experience assessing against the BS ISO/IEC/SIG 27002:2005 BS 7799 standard domains, BS 25999 including Risk Assessment; Security policy; Organization of Information Security; Asset Management; HR Security; Physical and Environmental Security; Communications and Operations Management; Access Control; IS Acquisition, Development and Maintenance; IS Incident Management; Business Continuity Management; and Compliance
  • Information Security Governance, Privacy and Compliance and Security Assessment experience with a focus on IT and IS Risk Assessments and program reviews / establishment, and understanding on ISO 27001/ NIST 800-53/ PCI-DSS
  • Broad understanding of Information Security trends, services and disciplines, and experience applying them in dynamic environments
  • Strong client interaction skills, both written and verbal, and highly fluent in English- both verbal and written
  • Ability to travel as required

KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work .

Follow this link to obtain salary ranges by city outside of CA:
https://kpmg.com/us/en/how-we-work/pay-transparency.html/?id=M105ADV_3_26

KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them.

Similar Jobs

More Jobs at KPMG

More Information Technology Jobs

Find similar Lead Specialist, Third Party Risk Management jobs: