About The Position

EY's Third Party Risk Management (TPRM) practice helps organizations improve and operate third-party risk programs through program transformation, risk assessments, technology enablement and managed services. As a TPRM Delivery Senior in the EY Service Delivery Center (SDC) in Charlotte, you will be a hands-on member of client delivery teams, supporting consistent execution, quality and transparency across TPRM engagements. This role combines project management support, reporting and analytics, quality control review, and direct execution of third-party risk assessments. You will work with engagement leaders, client stakeholders, assessors and other delivery team members to keep work progressing, identify risks and issues, and deliver accurate, timely work products.

Requirements

  • A bachelor's degree or equivalent relevant work experience.
  • A minimum of 3+ years of relevant TPRM experience, including experience supporting or performing third-party risk assessments within industry or professional services.
  • Experience with one or more aspects of TPRM delivery, such as PMO coordination, management reporting, quality review, due diligence, ongoing monitoring, issue management or remediation tracking.
  • Proficiency with Microsoft Office tools, particularly Excel, PowerPoint, Word, Outlook and Teams.
  • Availability to work from the EY Service Delivery Center in Charlotte, North Carolina, consistent with role and business requirements.
  • Flexibility to support client teams operating across multiple time zones and to travel occasionally when engagement needs are required.

Nice To Haves

  • A degree in business, risk management, supply chain management, information systems, cybersecurity, engineering or a related discipline.
  • Experience with TPRM or governance, risk and compliance platforms such as ProcessUnity, ServiceNow, Archer, Aravo, OneTrust or similar solutions.
  • Experience developing dashboards, metrics and reporting using Excel, Power BI or comparable tools.
  • Familiarity with common risk and control frameworks or standards, such as NIST, ISO 27001, COBIT or other relevant industry frameworks.
  • Experience using generative AI or other AI-enabled tools in a professional setting, including the ability to construct effective prompts, validate outputs and apply appropriate human review.
  • A relevant professional certification, such as CRISC, CTPRP, CTPRA, CISA, CISSP, CISM, CBCP, CIA, CIPP or a comparable credential.

Responsibilities

  • Support day-to-day delivery of client TPRM engagements, including work planning, status tracking, action and issue management, dependency tracking, meeting coordination and follow-up.
  • Prepare clear, accurate and timely status reports, dashboards, metrics and management updates covering assessment volumes, aging, throughput, quality, risks, issues, remediation progress and other engagement measures.
  • Maintain project documentation and delivery artifacts, including trackers, procedures, job aids, meeting materials, decision logs and supporting evidence.
  • Coordinate with engagement leadership, client stakeholders, third parties, risk subject-matter resources and global delivery teams to obtain inputs, resolve questions and keep deliverables on schedule.
  • Execute third-party risk assessments when needed, including reviewing questionnaires and evidence, evaluating control design and implementation, documenting conclusions, identifying gaps, drafting findings and supporting remediation activities.
  • Perform quality control reviews of third-party risk assessments and related work products for completeness, accuracy, consistency, evidence sufficiency and alignment with client methodology and procedures.
  • Provide actionable feedback to assessors, track corrections to closure and identify recurring quality themes that may require clarification, coaching or process improvement.
  • Apply knowledge of key third-party risk domains, including information security, data protection, business continuity and resiliency, technology, compliance and other operational risks relevant to the engagement.
  • Use the designated TPRM AI enabler and other approved AI tools to support delivery activities such as information synthesis, questionnaire and evidence review, drafting, analysis and quality checks, while applying professional judgment and following applicable EY and client requirements.
  • Communicate delivery risks, issues, decisions and recommendations to project teams and client stakeholders; escalate matters promptly when appropriate.
  • Analyze data and recurring operational themes, support root cause analysis, and recommend practical improvements to processes, controls, workflows, reporting and use of technology.
  • Work effectively across multiple engagements, priorities and time zones while maintaining attention to detail, responsiveness and a strong focus on client service.

Benefits

  • medical and dental coverage
  • pension and 401(k) plans
  • a wide range of paid time off options
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service