About this role
Basic information
Business Line
Enabling Functions
Job Type
Permanent / FTC
Date published
23-Jul-2026
Req #
24024
Job description
Connect to your Industry
As Deloitte UK’s reliance on third parties continues to grow, effective third-party risk management is increasingly critical to protecting the firm from financial, operational, regulatory and reputational risk. Regulators and clients are placing greater scrutiny on how organisations manage their extended supply chain, including the extent to which third parties meet relevant regulatory, contractual and policy requirements.
This role sits within Deloitte’s second line of defence and plays a key part in managing the firm’s Third-Party Risk Management (TPRM) capability. The TPRM programme helps the business identify, assess and manage the risks that arise when Deloitte procures or uses third-party goods and services, whether to support the firm’s operations or the delivery of client engagements.
You will play a pivotal role in helping the business make informed, risk-based decisions about third-party relationships and in strengthening how associated risks are understood, governed and managed across the firm.
Connect to your career at Deloitte
Deloitte drives progress. Using our vast range of expertise, we help our clients become leaders wherever they choose to compete. To do this, we invest in outstanding people. We build teams of future thinkers, with diverse talents and backgrounds, and empower them all to reach for and achieve more.
What brings us all together at Deloitte? It’s how we approach the thousands of decisions we make every day. How we behave, our beliefs and our attitudes. In other words: our values. Whatever we do, wherever we are in the world, we lead the way, serve with integrity, take care of each other, foster inclusion, and collaborate for measurable impact. These five shared values lead every decision we make and action we take, guiding us to deliver impact how and where it matters most.
Connect to your opportunity
This is a high-impact opportunity to help safeguard Deloitte UK’s Third-Party risk landscape at a time of increasing regulatory scrutiny, growing reliance on external suppliers and continued focus on operational resilience across the supply chain during a period of transformation.
Within our 2nd Line of Defence, you will support the TPRM Team Leader and Managers within the team with project management support and will play a leading role in the effective implementation of the TPRM policy, framework, and programme of activities, working to protect the firm against risks arising from third party relationships across BAU.
You will work closely with stakeholders across the business, Extended Enterprise, QRS SMEs and Managed Service teams to support effective delivery, clear governance and continuous improvement across the TPRM programme.
You will be detail orientated with great organisational skills and an ability to deliver quality and timely analysis and business reporting. This is a fantastic opportunity to demonstrate and grow a variety of skills as well as the opportunity to develop your repertoire of TPRM competencies in a maturing team.
Responsibilities include
- Direct support for the TPRM Leader in documenting short-, medium- and long-term strategies for Third-Party Risk Management.
•
Supporting across a variety of projects that mature our TPRM programme and improve our risk maturity with the opportunity to lead on occasions.
•
Liaise and support the TPRM Managed Service, the 1st Line of defence function that supports third parties and Deloitte colleagues, with escalations and additional guidance where needed.
- Support in the production of quality and timely reporting and presentations for the TPRM Steering Committee and other governance forums.
•
Oversight and maintenance of TPRM Governance Documentation ensuring it remains updated and robust, including risk registers and change logs to enable data quality and robustness.
•
Developing, documenting, and implementing TPRM processes with the 2nd line TPRM Team, including consideration on impact to TPRM programme.
•
Supporting with regulatory, client and internal requests for assurances across our TPRM Programme.
•
Supporting the implementation of a TPRM Monitoring Programme and responsibility for undertaking 1st line monitoring once implemented.
•
Co-ordinate and maintain communication and awareness strategies relating specifically to Third-Party risk management, educating colleagues across the firm to ensure they have a high awareness of the TPRM discipline.
•
Maintain clear, accessible TPRM guidance, intranet content and training resources to help practitioners understand and apply TPRM requirements effectively.
•
Ability to produce dynamic communication styles, to develop and maintain excellent stakeholder relations.
Connect to your skills and professional experience
Candidates should possess the following skills and experience:
- Strong analytical skills with understanding of risk and controls monitoring and testing.
- Ability to create/draft detailed process maps and succinct process documentation and experience with process improvement projects.
•
Ability to tell a story visually through PowerPoint for senior audiences.
•
Be detail oriented, and able to manage and maintain multiple governance documents.
•
Comfortable and able to work autonomously and deliver results with proven ability to take responsibility and drive actions, and to see deliverables through to completion with a focus on high quality.
•
Effective teamwork and interpersonal skills with the ability to adapt approach to suit situations, individuals, jobs and cultures.
- Excellent communication skills both orally and in writing, with the ability to express views clearly and fluently, particularly with regards to articulating risk management concepts in business language.
- Experience with SharePoint, Visio, Microsoft Office and Teams and tools for collaborative working.
Desirable
- Experience in third-party risk management, procurement, information security, outsourcing, operational resilience or internal risk management.
•
Ability to challenge and influence Senior Managers and stakeholders.
•
Experience of operating as part of a distributed, international team and in a matrix environment.
Connect to your business - Enabling Functions
Collaboration is central to everything we do at Deloitte. From IT to HR, marketing and more, our teams help to support the wider business in everything they do. Bringing your individual skills and specialist knowledge, you can make a far-reaching impact. Come join us.
National Quality and Risk Management
We ensure we manage our business with integrity. This includes developing and managing assurance and business risk frameworks, anti-money laundering, addressing any potential conflicts of interest amongst clients and maintaining our independence from them, ensuring we’re compliant and managing the security of our people.
Personal independence
Regulation and controls are standard practice in our industry and Deloitte is no exception. These controls provide important legal protection for both you and the firm. We are subject to a number of audit regulations, one of which requires that certain colleagues abide by specific personal independence constraints (e.g., in relation to any financial interests and employment relationships). This can mean that you and your "Immediate Family Members" are not permitted to hold certain financial interests (shares, funds, bonds etc.) with audit clients of the firm, and also prohibitions on certain employment relationships (e.g., you are not permitted to hold a secondary employment role with SEC audit clients of the firm whilst being employed by the firm). The recruitment team will provide further details as you progress through the recruitment process, or you can contact the Independence team upon request.
About security roles for ex-police
Security management, operations and consultancy roles. Years of operational policing — command, incident response, public order — translate directly into corporate security, and employers in this sector actively rate police experience.
See all security jobs in Cardiff →Why this fits a police background — match score 86/100
- Financial crime & fraud
- Working to legislation & regulation
- Team & shift leadership
What security roles pay ex-police
Advertised UK ranges, editorial estimates reviewed July 2026
| Security officer (SIA) | £24,000–£29,000 |
| Security supervisor / team leader | £28,000–£34,000 |
| Site / security manager | £38,000–£52,000 |
| Regional / operations security manager | £50,000–£65,000 |