SonicJobs Logo
Left arrow iconBack to search

Procurement Risk & Compliance Lead

S&P Global Mobility
Posted 2 months ago, valid for 17 days
Location

Centreville, VA 20121, US

Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • S&P Global is seeking a Senior Manager, Vendor Risk & Procurement Governance to lead vendor risk management processes within Procurement.
  • The role requires 7 to 10+ years of experience in Procurement, Third-Party Risk, Compliance, or Governance, with a preference for experience in a publicly traded or highly regulated organization.
  • Key responsibilities include operationalizing the vendor risk process, configuring workflows in Coupa, and developing policy documentation while ensuring compliance with risk reviews.
  • The final base salary for this position will vary based on geographic location and individual qualifications, in addition to eligibility for an annual incentive plan.
  • Candidates must have the right to work in the United States and will be part of a diverse and inclusive workplace.

The Role:

Mobility Global is developing and building its third-party governance framework to support regulatory compliance, information security, and enterprise risk management.

Reporting to the Global Head of Procurement, the Procurement Risk & Compliance Lead, will lead a small team responsible for the operational implementation of the Company’s vendor risk management process within Procurement. While Legal Risk & Compliance will design and maintain the enterprise risk framework, this role will be responsible for developing and building the third-party risk management function inside of procurement, aligning with enterprise risk domain owners (information security, HR, ethics and compliance, and finance), monitoring and mitigating supplier risk, and ensure proper governance across the procurement function.

This role serves as the operational bridge between Procurement, Legal, Risk & Compliance, and Information Security.

Responsibility and Impact:

Vendor Risk Process Operationalization

  • Translate the enterprise vendor risk framework into scalable procurement processes and policies.
  • Work with risk domain owners to define intake requirements and risk-tiering triggers for vendor engagements.
  • Monitor the TPRM process and ensure timely completeness of the risk reviews by the applicable risk domain owners.
  • Drive continuous improvement in vendor risk governance processes.
  • Maintain vendor risk attributes, classifications, and documentation repositories.
  • Partner with Finance Systems and IT to enhance automation and reporting.
  • Develop dashboards and reporting to monitor review completion, SLAs, and compliance trends.

Policy & Documentation Development

  • Draft and maintain procurement-facing vendor risk policies and SOPs.
  • Conduct training sessions for business stakeholders.

Risk Review Coordination & Enforcement

  • Monitor review timelines and escalate exceptions.
  • Maintain documentation of approvals, conditions, and remediation requirements.
  • Track and report compliance metrics to Procurement and Finance leadership.

Audit & Compliance Support

  • Maintain audit-ready documentation of vendor risk approvals and workflows.
  • Support SOX-related vendor governance controls where applicable.
  • Partner with Internal Audit on third-party risk assessments.
  • Support remediation efforts tied to vendor governance findings.
  • Promote a culture of governance and risk awareness.

What We're Looking For:

Basic Required Qualifications:

  • Bachelor’s degree in Business, Supply Chain, Risk Management, Finance, or related field or equivalent relevant experience.
  • 7 to 10+ years of experience in Procurement, Third-Party Risk, Compliance, or Governance.
  • Experience in a publicly traded organization required.
  • Strong understanding of third-party risk domains, including:
    • Information security
    • Data privacy
    • Regulatory and compliance risk
    • Operational and financial risk
  • Experience developing policy documentation and process controls.
  • Strong systems and workflow configuration experience.
  • Must be a results-focused team player and adapt well to a multitasking, fast paced environment with changing priorities and challenges
  • Strong organizational, presentation and communication skills.
  • Experience working cross-functionally with Technology, Legal, Finance, and Risk teams.

Additional Preferred Qualifications:

  • Experience with LogicGate or similar TPRM tool
  • Governance-oriented with strong attention to detail.
  • Systems-minded and process-driven.
  • Confident cross-functional influencer.
  • Able to enforce controls in a collaborative but firm manner.
  • Comfortable operating in a transformation-oriented, post-spin environment.

 

If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!

It is the policy of Mobility to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, Mobility will provide reasonable accommodations for qualified individuals with disabilities.




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.