TPRM / GRC implementation- Lead
4 days ago
Company:
Job Title : Senior CERTA TPRM Implementation Lead
Location
Preferred Location: Chennai & Pune
Work Mode: Hybrid (Prestige Alphatech, Kharadi)
ESO is implementing the CERTA SaaS Third-Party Risk Management (TPRM) platform to modernize and automate due-diligence processes. The consultant will lead solution design and implementation across process, integrations, data migration, and AI-enabled workflows, partnering with Cyber, Risk, ERO, Technology, and Compliance stakeholders.
Role Summary
We are seeking an experienced TPRM / GRC Solution Lead to deliver an end-to-end CERTA implementation. This role requires strong hands-on expertise in TPRM workflows, cybersecurity assessments, system integrations, and regulated financial-services environments, with the ability to translate policy and risk frameworks into scalable, auditable system solutions.
Key Objectives (Outcomes)
- Deploy an AI-enabled due-diligence workflow in CERTA (intake scoping assessment review closure) with measurable improvements in cycle time and quality.
- Integrate CERTA with enterprise systems including Ivalua, ServiceNow, Moodys/Orbis (SSoR), UNY, Fusion/Connections, Access Hub, IDIP, Ecovadis, and SFTP/identity endpoints.
- Operationalize data migration and AI governance (auditability, telemetry, model-risk controls) for TPRM.
Scope & Responsibilities
CERTA Solution Design & Configuration
- Lead solution architecture and configuration for CERTA TPRM including intake rules, control mapping, dynamic questionnaires, review gates, and closure workflows.
- Configure workflow automation, roles/permissions, approval paths, and exception handling.
- Document configurations, design decisions, and operational procedures.
Integrations & Data Architecture
- Design and implement secure integrations using REST APIs, webhooks, OAuth2/OIDC, and SFTP.
- Build and manage interfaces with Ivalua, ServiceNow, Orbis/SSoR, UNY, Fusion/Connections, Access Hub, IDIP, and other enterprise systems.
- Define monitoring, error handling, retries, reconciliation, and operational support models.
- Establish assessment and evidence data models, lineage, and traceability, aligned with SSoR/UVM standards.
Data Migration & Operational Readiness
- Lead migration of historical assessment data from SharePoint and legacy tools into CERTA.
- Ensure data quality, usability, and audit readiness post-migration.
- Define and execute cutover, hypercare, and stabilization activities.
AI-Enabled Due Diligence
- Embed AI-assisted capabilities such as prefill, evidence extraction, summarization, and reviewer assistance.
- Implement model governance, explainability, audit trails, and risk controls aligned with enterprise AI standards.
Testing, UAT & Enablement
- Define and execute UAT strategy, test scripts, regression packs, and defect triage.
- Produce runbooks, SOPs, desktop procedures, and training materials.
- Enable reporting and dashboards for SLA, KPI, and risk metrics.
Required Qualifications
- 10+ years of experience implementing GRC / TPRM platforms (CERTA, Archer, ServiceNow GRC, OneTrust, MetricStream, ProcessUnity, etc.).
- 5+ years of experience in cybersecurity and third-party risk assessments (SIG, ISO 27001, SOC 2, NIST CSF, cloud security controls).
- Strong hands-on experience with API integrations (REST/JSON, OAuth2/OIDC, event-driven integrations, SFTP).
- Experience working in regulated financial-services environments with audit and compliance requirements.
- Strong stakeholder management skills with the ability to convert policy and risk requirements into executable workflows.
** Interested candidates drop your resume to **
-
GRC Deputy Manager/ Manager
2 weeks ago
chennai, India Cubical Operations LLP Full timeJob Title: GRC Deputy Manager/ManagerLocation: ChennaiExperience: Minimum 4 yearsShift: Regular business hours (as per company policy)Role OverviewWe are seeking a GRC Consultant / Senior Consultant with strong experience in ISMS, ISO 27001, and Third-Party Risk Management (TPRM). The ideal candidate will support governance, risk, and compliance initiatives,...
-
Technical Lead
4 weeks ago
Chennai, Tamil Nadu, India Wipro Full timeWe use cookies to offer you the best possible website experience Your cookie preferences will be stored in your browser s local storage This includes cookies necessary for the website s operation Additionally you can freely decide and change any time whether you accept cookies or choose to opt out of cookies to improve website s performance as well as...
-
GRC Deputy Manager/ Manager
2 weeks ago
Chennai, India Cubical Operations LLP Full timeJob Title: GRC Deputy Manager/ManagerLocation: ChennaiExperience: Minimum 4 yearsShift: Regular business hours (as per company policy)Role OverviewWe are seeking a GRC Consultant / Senior Consultant with strong experience in ISMS, ISO 27001, and Third-Party Risk Management (TPRM). The ideal candidate will support governance, risk, and compliance initiatives,...
-
GRC Deputy Manager/ Manager
2 weeks ago
Chennai, India Cubical Operations LLP Full timeJob Title: GRC Deputy Manager/Manager Location: Chennai Experience: Minimum 4 years Shift: Regular business hours (as per company policy) Role Overview We are seeking a GRC Consultant / Senior Consultant with strong experience in ISMS, ISO 27001, and Third-Party Risk Management (TPRM). The ideal candidate will support governance, risk, and compliance...
-
GRC Deputy Manager/ Manager
2 weeks ago
Chennai, India Cubical Operations LLP Full timeJob Title: GRC Deputy Manager/Manager Location: Chennai Experience: Minimum 4 years Shift: Regular business hours (as per company policy) Role Overview We are seeking a GRC Consultant / Senior Consultant with strong experience in ISMS, ISO 27001, and Third-Party Risk Management (TPRM). The ideal candidate will support governance, risk, and compliance...
-
GRC Deputy Manager/ Manager
2 weeks ago
Chennai, India Cubical Operations LLP Full timeJob Title: GRC Deputy Manager/Manager Location: Chennai Experience: Minimum 4 years Shift: Regular business hours (as per company policy) Role Overview We are seeking a GRC Consultant / Senior Consultant with strong experience in ISMS, ISO 27001, and Third-Party Risk Management (TPRM). The ideal candidate will support governance, risk, and compliance...
-
GRC Deputy Manager/ Manager
2 weeks ago
Chennai, India Cubical Operations LLP Full timeJob Title: GRC Deputy Manager/ManagerLocation: ChennaiExperience: Minimum 4 yearsShift: Regular business hours (as per company policy)Role OverviewWe are seeking a GRC Consultant / Senior Consultant with strong experience in ISMS, ISO 27001, and Third-Party Risk Management (TPRM). The ideal candidate will support governance, risk, and compliance...
-
GRC Deputy Manager/ Manager
2 weeks ago
Chennai, India Cubical Operations LLP Full timeJob Title: GRC Deputy Manager/ManagerLocation: ChennaiExperience: Minimum 4 yearsShift: Regular business hours (as per company policy)Role OverviewWe are seeking a GRC Consultant / Senior Consultant with strong experience in ISMS, ISO 27001, and Third-Party Risk Management (TPRM). The ideal candidate will support governance, risk, and compliance initiatives,...
-
GRC Deputy Manager/ Manager
2 weeks ago
Chennai, India Cubical Operations LLP Full timeJob Title: GRC Deputy Manager/ManagerLocation: ChennaiExperience: Minimum 4 yearsShift: Regular business hours (as per company policy)Role OverviewWe are seeking a GRC Consultant / Senior Consultant with strong experience in ISMS, ISO 27001, and Third-Party Risk Management (TPRM). The ideal candidate will support governance, risk, and compliance initiatives,...
-
GRC Deputy Manager/ Manager
2 weeks ago
Chennai, India Cubical Operations LLP Full timeJob Title: GRC Deputy Manager/ManagerLocation: ChennaiExperience: Minimum 4 yearsShift: Regular business hours (as per company policy)Role OverviewWe are seeking a GRC Consultant / Senior Consultant with strong experience in ISMS, ISO 27001, and Third-Party Risk Management (TPRM). The ideal candidate will support governance, risk, and compliance initiatives,...