▷ 3 Days Left: Senior Associate/ Manager Risk Assessor

2 weeks ago


Cork, Ireland Eli Lilly and Company Full time

Overview

At Lilly, we unite caring with discovery to make life better for people around the world. We are a global healthcare leader headquartered in Indianapolis, Indiana. Our employees work to discover and bring life-changing medicines to those who need them, improve the understanding and management of disease, and give back to our communities through philanthropy and volunteerism. We put people first and look for people who are determined to make life better for others.

Eli Lilly Cork is made up of a diverse team of over 2000 employees across 60 nationalities who deliver innovative solutions across the Business Service functions including Finance, Information Technology, Medical, Clinical Trials and more. The Cork site offers a premium workspace on our campus in Little Island, with flexible hybrid working options, healthcare, pension and life assurance benefits, subsidised canteen, onsite gym, travel subsidies and on-site parking. Wellbeing initiatives are part of the holistic benefits that enhance the career experience for our colleagues.

Eli Lilly Cork is committed to diversity, equity and inclusion (DEI) with four pillars: EnAble, embRACE, LGBTQ+ & Ally and GIN-Gender Inclusion Network. EnAble supports people with disabilities and those who care for them, partnering with the Access Lilly initiative to promote accessibility and inclusivity.

Come join our team - Be Creative, Be an Innovator, and most of all, Be Yourself

Third Party Risk Management (TPRM) at Lilly Cork

Lilly works with an extensive network of third party organisations. Risks such as Cyber, Privacy, Compliance, and Business Continuity are impacted by third parties. While third party oversight is decentralised, we are implementing a holistic program to support consistent, efficient, and effective decision making in determining potential inherent risk. The central team’s scope encompasses priority business and risk areas across all stages of the third-party collaboration lifecycle.

The scope of the Cork TPRM Team includes:

1. Create and maintain policies, procedures, and training to drive consistent TPRM for third party use.

2. Liaise with Risk Domain Partners to create and maintain: Risk Definitions, Tolerances, and Required Training for TPMOs, Engagement Owners, and Third Parties.

3. Construct and own the overall TPRM Program.

4. Own the enterprise TPRM technology solution.

5. Provide oversight of the TPRM initial and on-going monitoring due diligence processes.

6. Report progress and results to Senior Leadership including, but not limited to, the Chief Procurement Officer (CPO), the SVP of Ethics & Compliance, and the Compliance & Enterprise Risk Management Committee (CERMC).

Role

Role: The Risk Assessor will work in partnership internally, cross-functionally and externally with third parties to assess and mitigate third party risk. Current risk domains in scope are Cyber, Anti Corruption, Privacy and Information Systems Quality, which will expand as the programme grows.

Responsibilities

- Determine, conduct and incorporate applicable risk domain screenings into due diligence activities and ongoing oversight plans.

- Conduct assessments in coordination with other risk domains, including scoping the assessment, testing controls, conducting interviews, reviewing evidence, determining final disposition of findings, communicating findings, rating criticality of findings and evaluating action plans provided by the third party.

- Perform ongoing monitoring activities per the inherent risk domain level as part of the TPRM Program.

- Define and own risk domain assessment methodology for control assessments activities.

- Provide risk domain requirements for termination and off-boarding activities, supporting these activities as required.

- Maintain risk domain questions for the Inherent Risk Questionnaire (IRQ) for the TPRM tool.

- Work with risk domain partners to provide risk domain specific scoring thresholds for inherent risk domain levels per common TPRM risk tiering scale.

- Provide feedback on centralized intake form.

- Classify and consolidate reports of findings using the centralized TPRM tool, while notifying appropriate stakeholders/partners.

- Opine on/recommend risk domain specific controls to mitigate identified findings and determine residual risk domain level for respective risk domains.

- Provide risk domain subject matter expertise and standard setting on findings tracking and mitigation.

- Create and own standards for qualitative residual risk scoring that align with the overall scoring methodology of the TPRM Program.

- Issue approvals according to the TPRM Approvals Matrix.

- Provide guidance to business teams on Third Party Risk Management.

- Support internal education and best practices sharing with peers and colleagues, as well as third party education and awareness.

- In partnership with the Legal team, maintain inventory of risk domain specific contract principles, provide feedback on contract terms in negotiations and approve edits or adjustments to risk domain contractual principles.

- Drive and deliver on risk domain IRQ and process metrics to measure control effectiveness and support decision-making.

- Continually monitor and update assessments of the control environment, keeping abreast of significant control issues, trends and developments.

- Integrate emerging risk control requirements into the existing risk assessment process.

- Serve as an internal subject-matter expert of Lilly’s TPRM procedures and standards, owning and updating as required.

- Maintain list of third parties by risk domain in the centralized TPRM tool.

- Consult or provide risk domain input into Lilly’s framework for third party governance.

- Support the TPRM Team in the implementation and maintenance of an effective enterprise risk management framework.

- Participate in forums including TPRM Steer Committee, Assessment Coordination and TPRM Operations Committee.

- Support TPRM projects as required and partner with risk domain business areas to ensure TPRM activities are current with risks and expectations.

Qualifications/Competencies

- Bachelor’s Degree or professional qualifications such as CIPP/CIPT/CTPRP/CRISC/CISA/CISM.

- Experience performing third party risk assessments in areas including Anti-Corruption, Privacy, Information Systems and Information Systems Quality.

- Minimum of three or more years of audit, operational risk or other risk management experience or related business experience.

- Good understanding of risk management and internal control leading practices within the focus area.

- Demonstrated ability to work effectively in a complex, highly regulated environment.

- Ability to plan, organize, prioritize and drive workload autonomously.

- Effective communication, organization and presentation skills.

- Effective influence management skills.

- Strong analytical and data management skills.

- Ability to collaborate and build partnerships across functions and regions; works well with others.

- Ability to work in a matrix organization to influence outcomes.

Lilly is dedicated to helping individuals with disabilities engage in the workforce, ensuring equal opportunities when vying for positions. If you require accommodation to submit a resume for a position at Lilly, please complete the accommodation request form at https://careers.lilly.com/us/en/workplace-accommodation for further assistance. This is for individuals to request accommodation as part of the application process and any other correspondence will not receive a response.

Lilly does not discriminate on the basis of age, race, color, religion, gender, sexual orientation, gender identity, gender expression, national origin, protected veteran status, disability or any other legally protected status.

#WeAreLillyUKandIreland

#J-18808-Ljbffr



  • Cork, Ireland Ipsos Full time

    **PART-TIME TRANSPORT ASSESSORS WANTED! EMBARK ON AN ADVENTURE ACROSS IRELAND!** Calling all travel enthusiasts and detail detectives! We currently have an irresistible opportunity to join our vibrant team of Transport Assessors. This is your chance to contribute to the improvement of public transport across Ireland, with a particular focus on Cork. If...


  • Cork, Ireland Xeinadin Group Full time

    Company Description Xeinadin was established in 2019 when more than 100 successful, independent, business advisory and accountancy practices across the UK and Ireland came together to re-imagine the future of accountancy. Our collective mission to provide locally forged, trusted business advice to SMEs through forward-thinking, close-knit relationships...

  • Strategic Risk

    4 weeks ago


    Cork, Ireland Brown & Brown UK Full time

    1 day ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Built on meritocracy, our unique company culture rewards self-starters and those who are committed to doing what is best for our customers. We are looking for a strategic, hands-on operator to join Brown & Brown Ireland and support our CEO’s senior...


  • Cork, Ireland Enable Ireland Full time

    Overview Enable Ireland is an organisation that makes a real difference to the lives of children and adults with disabilities in Ireland. Enable Ireland is named as one of Ireland's Best Employers 2024. The organisation holds a Silver Award in Diversity from the Irish Centre for Diversity and advocates for fairness, respect, equality, diversity, inclusion,...


  • Cork, Ireland Arlo Technologies, Inc. Full time

    FP&A Manager page is loaded## FP&A Managerlocations: Cork, Irelandtime type: Full timeposted on: Posted Yesterdayjob requisition id: JR100239**About Arlo:**At Arlo, we're passionate about creating innovative and reliable solutions that help people protect what matters most to them. Our team is dedicated to delivering products that exceed our...


  • Cork, Ireland Clarity Search Partners Full time

    About the job Our Tax Professionals help businesses meet demands for tax reporting, compliance, planning, tax policy, and controversy management in a fast-paced technology-enabled business world. The opportunity Excellent opportunity to join our growing Big 4 tax practice where you will be part of a high-performing team. Our globally coordinated tax...


  • Cork, Ireland Teamworx Ltd Full time

    Teamworx are delighted to be recruiting for a Marketing Manager based in Cork. This is an excellent opportunity to join a family business with over 100 years of experience providing superior customer service and an excellent experience to all its customers. As part of the Management Team, the Marketing Manager has overall authority for execution of the...

  • Swimming Teacher

    2 weeks ago


    Cork, Ireland Turtle Tots Ireland Limited Full time

    We are looking for a Baby and ToddlerSwimming Teacherin theKinsalearea for a permanent part-time position, approximately 10-15 hours over 3 days per week to start with (every Sunday is essential). This position has the ability to provide more hours for the right candidate, if sought. No experience necessary, full training provided to the successful...


  • Cork, Ireland Mmd Construction Ltd Full time

    This is a fantastic opportunity for a highly motivated and ambitious Project Quantity Surveyor to work side by side with a Senior Quantity Surveyor on an exciting Agri-Food infrastructure Project and join a growing team on a permanent basis. Site Based – 2 Year Project Duration Duties - Manage day to day commercial and contract activities of a project...


  • Cork, Ireland Process Automation – Controls.Instruments.Validations, Inc. Full time

    PACIV, a global leader in industrial automation solutions with offices in Puerto Rico, United States and Ireland, and servicing the Life Sciences, F&B and Utilities industries, is looking for Delta V Engineer with 3+ years experience.for our client in Cork. Job Description The potential candidates must have 3+Years Delta V Experience, including...