Skip to content

Risk and Control Subject Matter Expert Third-Party & Commercial Risk

  1. Nottingham
  2. Legal & Compliance
  3. Permanent
  4. Hybrid
  5. Full Time

We are seeking a highly motivated and experienced professional to lead the global third-party risk and operational resilience program. This role is critical in ensuring that our external partners can deliver services reliably and recover effectively from disruptions, safeguarding our customers, operations, and reputation.

Key Responsibilities

1. Third Party Risk Management

Oversee the third-party lifecycle, ensuring robust risk assessment, due diligence, and ongoing monitoring of critical suppliers, resellers, and distributors. - Collaborate with procurement, legal, compliance, and business units to embed risk controls and resilience requirements into third-party engagements. - Support contract reviews to ensure appropriate risk and resilience clauses are included and consistently applied.

2. Operational Resilience

Design and maintain a global framework for assessing third-party operational resilience, aligned with regulatory expectations (e.g., DORA, FCA, OCC). - Lead resilience due diligence and ongoing assessments, including business continuity, disaster recovery, and incident response capabilities. - Monitor third-party performance against resilience KPIs and manage remediation plans for identified gaps.

3. Incident Management & Monitoring

Track and coordinate responses to third-party incidents, supporting root cause analysis and lessons learned. - Maintain visibility of emerging risks and industry trends to proactively enhance resilience strategies.

4. Governance, Reporting & Compliance

Prepare and deliver regular reports to senior management and governance committees on third-party risk and resilience status. - Ensure compliance with internal policies and global regulatory requirements, supporting timely notifications (e.g., FCA, ICO). - Conduct policy gap analyses and support business units in understanding and implementing compliance obligations.

Key Competencies & Skills

  • Strong understanding of third-party risk governance and operational resilience frameworks.
  • Experience in risk assessment, control design, and mitigation strategies across enterprise-wide risks.
  • Familiarity with regulatory requirements (e.g., GDPR, AML, cybersecurity) and ability to translate them into business processes.
  • Analytical and problem-solving skills, with attention to detail and ability to identify risk themes and hotspots.
  • Effective stakeholder engagement and communication skills, with the ability to influence across functions.

 


About Experian

Hybrid - Nottingham or London office.

Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realize their financial goals and help them save time and money.

We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments.

We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.


Experience and Skills

  • Proven experience in third-party risk management and operational resilience, ideally within financial services or a regulated technology environment.
  • Demonstrated ability to manage complex vendor relationships and drive continuous improvement in resilience capabilities.
  • Proven experience with third party risk working in the first line risk team
  • Commercial risk exposure - preferrable not essential

Additional Information

Our uniqueness is that we celebrate yours. Experian's culture and people are important differentiators. We take our people agenda very seriously and focus on what matters; DEI, work/life balance, development, authenticity, collaboration, wellness, reward & recognition, volunteering... the list goes on. Experian's people first approach is award-winning; World's Best Workplaces™ 2024 (Fortune Top 25), Great Place To Work™ in 24 countries, and Glassdoor Best Places to Work 2024 to name a few. Check out Experian Life on social or our Careers Site to understand why.

Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

Internal Grade: EB8

#LI-Hybrid

Experian Careers - Creating a better tomorrow together

Find out what its like to work for Experian by clicking here

Experian Careers - Creating a better tomorrow together

Find out what its like to work for Experian by clicking here