M&G Logo

M&G

Director Group Third Party Risk

Posted 6 Days Ago
Be an Early Applicant
In-Office
London, Greater London, England, GBR
Senior level
In-Office
London, Greater London, England, GBR
Senior level
The Director of Group Third Party Risk is responsible for managing third party risks, implementing TPRM frameworks, overseeing due diligence, and leading stakeholder engagement efforts.
The summary above was generated by AI

Our purpose is to give everyone real confidence to put their money to work. With a heritage dating back more than 175 years, we have a long history of innovation in savings and investments, combining asset management and insurance expertise to offer a wide range of solutions. 

Our two distinct operating segments, Asset Management and Life, work together to provide access to balanced, long-term investment and savings solutions.

Through telling it like it is, owning it now, and moving it forward together with care and integrity; we are creating an exceptional place to work for exceptional talent.

We will consider flexible working arrangements for any of our roles and also offer work place accommodations to ensure you have what you need to effectively deliver in your role.

The Director, Group Third Party Risk Management – First Line Risk & Control is accountable for the ownership, implementation, and effective operation of the firm’s third party risk management (TPRM) framework across the group.
Operating as a senior first line leader, the role ensures that risks arising from third parties — including outsourcing arrangements, suppliers, vendors, non‑supplier third parties, and strategic partners — are identified, assessed, managed, and monitored throughout the full third party lifecycle.

The role acts as the primary first line owner of the group third party risk framework, working in close partnership with business leaders, business‑aligned third party management officers, Procurement, Legal, Information Security, Operational Resilience, Data Privacy, and enterprise First Line GRC teams. The role also provides leadership to the first line third party risk community, embedding a strong risk culture, clear accountability, and consistent practices aligned to enterprise expectations.
Main Responsibilities
First Line Ownership of Third Party Risk
  • Own group‑level oversight of third party risks, ensuring risks are identified, assessed, mitigated, and monitored in line with firm standards and regulatory expectations.
  • Accountable for the effective implementation and embedding of the firm’s third party risk management framework, policies, and standards across the group.
  • Ensure third party risk considerations are integrated into business decision‑making, technology delivery, and change activity.
  • Act as the accountable first line owner for group third party risk controls, issues, and remediation actions, providing subject matter expertise to business teams.
Third Party Lifecycle Management
  • Ensure robust third party risk assessments are completed at onboarding, renewal, material change, and exit stages.
  • Oversee due diligence activities covering financial, operational, technology, cyber, data, privacy, resilience, and regulatory risk domains.
  • Ensure contractual risk requirements are defined, implemented, and monitored in partnership with Procurement and Legal.
  • Maintain oversight of material and high‑risk third parties, including concentration, dependency, and substitutability risks.
Governance, Monitoring and Reporting
  • Chair and contribute to relevant first line governance forums covering third party and outsourcing risk.
  • Define and maintain group‑level third party risk metrics, key risk indicators, and management information, ensuring accuracy and transparency.
  • Oversee ongoing monitoring, performance management, and issue remediation for critical and high‑risk third parties.
  • Ensure timely escalation of material third party incidents, breaches, or control failures to senior management and appropriate governance committees.
Stakeholder Engagement and Business Enablement
  • Act as the senior first line risk partner to technology and business stakeholders on third party risk matters.
  • Work closely with Procurement, Legal, Information Security, Data Privacy, Operational Resilience, and Enterprise Risk teams to ensure joined‑up risk management.
  • Support regulatory engagements, audits, and internal assurance activity relating to third party and outsourcing risk.
  • Drive awareness, ownership, and accountability for third party risk management across delivery and operational teams.
Leadership
  • Build and lead a high‑performing third party risk team aligned to the First Line GRC operating model.
  • Set clear objectives, performance expectations, and development plans aligned to enterprise priorities.
  • Act as a role model for effective first line risk ownership and pragmatic risk management.
Key Knowledge, Skills and Experience
Essential
  • Significant experience in third party risk management, outsourcing risk, or operational risk within a regulated financial services or large‑scale technology environment.
  • Strong understanding of third party risk frameworks, lifecycle management, and regulatory expectations.
  • Proven experience embedding third party risk controls into technology delivery and operational processes.
  • Demonstrated ability to engage and influence senior stakeholders within a first line ownership model.
  • Experience leading teams and operating effectively within a matrixed organisation.
Desirable
  • Experience operating within a large financial services enterprise with global third party arrangements.
  • Exposure to cross‑border outsourcing and global supplier landscapes.
  • Understanding of dependencies between third party risk, operational resilience, data protection, and technology risk.
Suggested Essential Skills
  • Senior‑level stakeholder engagement and influence
  • Strong ownership and accountability mindset
  • Pragmatic, delivery‑oriented approach to risk management
  • Ability to balance business enablement with robust risk and control discipline
  • Clear and confident communication at executive and governance levels

What we offer:

At M&G, we’re committed to helping you thrive and supporting your wellbeing, both at work and beyond. Our benefits are designed to help you balance your professional and personal life, while planning confidently for your future. Our UK benefits include:

  • As a savings and Investments firm we are proud to offer a valuable pension scheme of 18%, with 13% made up of Employer Contributions and 5% Employee Contributions. We also offer Share Save and our Share Incentive Plan, together with access to financial wellbeing and support services - to help give you real confidence to put your money to work.

  • Enjoy 38 days annual leave including bank holidays, with the opportunity to purchase up to 5 extra days and additional flexibility through our Time Off When You Need It policy – to balance your work and personal commitments.  

  • Our market leading Inspiring Families policy includes comprehensive support and paid parental leave covering maternity, adoption, surrogacy, and paternity leave - as supporting families is a core aspect of our inclusive culture.

  • Health & Protection cover including Private Healthcare, Critical Illness cover and Life Assurance for you, with family options - for peace of mind.

To explore more about life at M&G and our full benefits offering, visit Life at M&G

We have a diverse workforce and an inclusive culture at M&G, underpinned by our policies and our employee-led networks who provide networking opportunities, advice and support for the diverse communities our colleagues represent. Regardless of gender, ethnicity, age, sexual orientation, nationality, disability or long term condition, we are looking to attract, promote and retain exceptional people. We also welcome those who take part in military service and those returning from career breaks.

M&G is also proud to be a Disability Confident Leader, and we welcome applications from candidates with long-term health conditions, disabilities, or neuro-divergent conditions. 

If you need assistance or an alternative means of applying for a role due to a disability or additional need, please let us know by contacting us at: [email protected]

HQ

M&G London, England Office

10 Fenchurch Avenue, London, United Kingdom, EC3M 5AG

Similar Jobs

3 Minutes Ago
Remote or Hybrid
London, Greater London, England, GBR
Expert/Leader
Expert/Leader
Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
Lead design and build of 0-to-1 fintech products in an internal innovation lab. Translate executive AI/strategy into MVPs, own full-stack implementations, make pragmatic architectural trade-offs, and bootstrap foundations for future product teams. Drive technical evaluation of AI/LLMs and balance rapid validation with maintainability.
Top Skills: Automated Agent WorkflowsGenerative AiLlms
5 Minutes Ago
Remote or Hybrid
Senior level
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Consult with P&C insurance clients to analyze and implement claims operations solutions, provide training and support, apply data analytics and project management, develop documentation, and build client relationships to drive operational transformation.
5 Minutes Ago
Remote or Hybrid
Mid level
Mid level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Lead design and implementation of data infrastructure, pipelines, and integrations using cloud platforms. Manage teams and client accounts, ensure data quality, security, and compliance, deploy scalable solutions (Databricks, Snowflake), mentor junior staff, and identify data-driven business opportunities.
Top Skills: Amazon Web Services (Aws)Azure Data FactoryDatabricksSnowflake

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account