TC-CS-SRCR-Manager-Supply Chain and Third-Party Risk Management
EY
- Location
- Bengaluru, KA, IN, 560016
- Work model
- On-Site
- Level
- Mid
Skills
About this role
At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.
Manager – AI Third Party Risk Analytics & Monitoring Lead Experience: 8–12 Years Role Summary The Manager – AI Third Party Risk Analytics & Monitoring Lead is responsible for leading the analytics and continuous monitoring capabilities within the Third Party Risk Management (TPRM) practice. The role combines deep expertise in vendor risk management and supply chain security with advanced AI-enabled analytics competencies including predictive modelling, AI-driven scoring, and Graph AI for vendor ecosystem intelligence. The Manager owns the development and operationalization of risk monitoring frameworks, manages a team of risk analysts, and serves as the analytics subject matter expert for TPRM engagements. Key Responsibilities
Lead the design and implementation of AI-powered TPRM continuous monitoring frameworks, including automated vendor risk alerting and real-time dashboard capabilities. Develop and manage AI-enabled vendor risk scoring models that incorporate external threat intelligence, financial health data, and control assessment outcomes. Apply predictive modelling techniques to forecast vendor risk trajectories, breach probabilities, and supply chain disruption scenarios. Deploy Graph AI methodologies to map complex vendor ecosystems, identify nth-party dependencies, and visualize supply chain concentration risks. Oversee end-to-end third party risk assessment lifecycle management across critical and strategic vendor portfolios. Lead supply chain risk analytics, including identifying systemic risks across geographies, sectors, and technology stacks. Manage vendor due diligence processes, ensuring consistency of assessment methodology, scoring, and reporting standards. Collaborate with procurement, IT, legal, and business units to integrate TPRM monitoring outputs into vendor governance decisions. Develop executive-ready risk reports, risk heat maps, and KRI/KPI dashboards for senior leadership and board-level reporting. Lead a team of Senior Consultants and Analysts, providing mentoring, quality oversight, and performance management. Contribute to TPRM practice development through thought leadership, tool evaluation, and methodology innovation.
Education / Certifications
Bachelor’s degree in engineering, Technology, Business, Risk Management, or related disciplines. Relevant certifications are advantageous (e.g., ISO 42001, CISSP, CISM, CRISC, CTPRP, ISO 27001 Lead Implementer, PMP, or equivalent).
AI & Cyber Certifications Cyber Security Certifications (Required / Advantageous):
Certified Information Systems Security Professional (CISSP) – Advanced cybersecurity, risk, and supply chain security knowledge. Certified in Risk and Information Systems Control (CRISC) – IT risk management lifecycle, KRIs, and risk monitoring. Certified Third Party Risk Professional (CTPRP) – Industry-recognized TPRM expertise and assessment methodology. Certified Information Security Manager (CISM) – Security governance, risk management, and program development. Project Management Professional (PMP) – Program delivery, resource management, and stakeholder engagement.
AI & Data Science Certifications (Required / Advantageous)
Microsoft Certified: Azure Data Scientist Associate – Building and deploying predictive models for risk analytics. AWS Certified Machine Learning – Specialty – ML model development, training, and deployment for risk scoring. Google Professional Data Engineer – Data pipeline design for risk analytics and monitoring platforms. Databricks Certified