GRC CareersAGJ, the AI governance job boardPost a Job

Jobs › Risk Business Partner - Third Party Risk Management

Risk Business Partner - Third Party Risk Management

FNZ

Job at a glance

Category
GRC
Work arrangement
On-site
Location
Edinburgh, UK
Posted
Aug 31, 2026
Apply for this jobApplications go directly to FNZ
Applying today? Most GRC roles fill fast. Get the next ones the day they post, in Edinburgh, UK.

Free. One click to unsubscribe. We never share your address.

ShareEmailLinkedInXFacebookPrint / Save PDF

FNZ is hiring a Risk Business Partner - Third Party Risk Management in Edinburgh, UK. This is a GRC job in the governance, risk, and compliance field. Review the full details below and apply directly with FNZ.

Role Description The objective of the Second Line Risk team is to deliver, coordinate and continuously develop an effective Risk Management Framework that provides the tools to enable FNZ to identify, assess, control and monitor risk; and through that framework manage risk within the appetite of the business, our clients, and regulators. The Risk Business Partner brings both experience and knowledge of operational risk management tools and frameworks demonstrated through practical experience and achievements in similar roles. This Second Line risk role will support the implementation and maintenance of the Risk Management Framework to support FNZ’s business plan and the regulatory environment it operates in. This includes provision of oversight of the application of risk management policies and procedures and working with the business to facilitate the understanding and embedding of these within FNZ. Key Responsibilities: The duties and responsibilities of this Second Line Risk role will include the following: Third-Party Risk Oversight Provide independent Second Line oversight of the firm's Third-Party Risk Management framework. Review and challenge supplier risk assessments, due diligence activities and ongoing monitoring arrangements. Ensure appropriate oversight of critical, material and outsourced service providers. Assess third-party risks including: Operational Risk Information Security Risk Cyber Risk Data Privacy Risk Financial Crime Risk Conduct Risk Business Continuity and Operational Resilience Risk Concentration Risk Geographic and Country Risk Monitor supplier risk profiles and ensure emerging risks are escalated appropriately. Challenge risk acceptances and remediation plans where control weaknesses are identified. Support oversight of supplier incidents, service failures and operational resilience events. Governance & Reporting Prepare risk reporting for management, Executive committees and Board forums. Representing Second Line Risk at appropriate FNZ governance committees. Provide management information and key risk metrics relating to third-party risks. Ensure material supplier risks, issues and trends are clearly communicated to senior stakeholders. Support preparation of regulatory submissions and responses relating to outsourcing and supplier management where required. Risk Framework & Assurance Maintain and continuously improve Third-Party Risk Management policies, standards and procedures. Provide independent review and challenge

Full responsibilities and requirements are on FNZ's application page.

Apply for this job →
About FNZ
Hiring for governance, risk, and compliance jobs on GRC Careers.
Search all FNZ jobs →

Location and market context

This job is based in Edinburgh, UK on-site. Local candidates benefit from being close to FNZ's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.

About third-party risk jobs

Third-party and vendor risk teams assess and monitor the security, privacy, and compliance posture of suppliers, an area under sharp regulatory and operational focus as AI vendors proliferate. Jobs like this one are typically evaluated against frameworks such as third-party risk frameworks, SOC 2, ISO/IEC 27001, and vendor due-diligence and monitoring practices.

How to position yourself for this third-party risk job

Strong candidates emphasize vendor due diligence and assessment, ongoing monitoring, contract and control requirements, and coordinating across security, privacy, and procurement. In your resume and outreach, tie your experience to how FNZ would apply third-party risk frameworks, SOC 2, ISO/IEC 27001, and vendor due-diligence and monitoring practices, and lead with concrete outcomes rather than duties.

Similar GRC jobs

Counsel - Third Party Risk Management
Everest Re Group
London, UK
Central Outsourcing Control Office (COCO)
Morgan Stanley
Frankfurt, Germany
Director, 3rd Party Security Risk
HealthEquity
$152k
Cybersecurity and Third-Party Risk Manager
Lord Abbett
Jersey City, NJ$95k to $110k
Assistant Chief Supply Chain Officer - ACSCO
Veterans Health Administration
Indianapolis, Indiana$107k to $140k
Third Party Oversight Coordinator
U.S. Coast Guard
Staten Island, New York$125k to $163k
Get more jobs like this by email
We will email you new GRC jobs in Edinburgh, UK as they post. Free and confidential, one click to unsubscribe.

Know your GRC? Take the 2-minute AI Governance Challenge. No signup needed.
Play now →

More GRC jobs: All GRC jobs · Search by category & location