AX-26 Risk Manager
- Hiring from
- Colombia
- Work type
- Remote
- Posted
- Oct 1, 2026
Is this job info correct?
Job Summary
Oceans Code Experts is looking for a Risk Manager (AX-26) to join our team. This role involves managing Third-Party Risk Management (TPRM), Supply Chain Risk Management, Information Security Risk, Governance, Risk & Compliance (GRC), or related cybersecurity functions. We are seeking an individual with 10+ years of experience, advanced English proficiency, and a strong background in enterprise-scale TPRM programs.
Job Responsibilities
- Lead enterprise-scale TPRM programs, operations, and governance frameworks across multiple regions and business units.
- Conduct supplier risk assessments, due diligence, risk reporting, incident management, and ensure regulatory compliance requirements are met.
- Utilize tools such as OneTrust TPRM for third-party risk assessment methodologies, workflow configuration, and process optimization.
- Integrate security posture insights from continuous monitoring platforms like BitSight into risk management decisions.
- Manage teams, drive organizational change, resolve complex stakeholder issues, and influence executive-level decisions.
- Collaborate with Procurement, Legal, Privacy, Internal Audit, and Enterprise Risk Management teams.
- Present complex risk concepts to senior leadership, boards, and auditors effectively.
- Implement automation, AI-driven workflows, analytics, and operational transformation initiatives within TPRM or cybersecurity programs.
Job Requirements
- Minimum of 10 years of experience in TPRM, Supply Chain Risk Management, Information Security Risk, GRC, or related cybersecurity functions.
- Advanced English proficiency, both written and spoken.
- Strong expertise in TPRM operations, supplier risk assessments, due diligence, and regulatory compliance.
- Hands-on experience with OneTrust TPRM and continuous monitoring platforms like BitSight.
- Proven leadership experience in managing teams and driving organizational change.
- Knowledge of enterprise risk frameworks and standards such as ISO 27001, NIST, SOC 2, and PCI DSS.
- Experience collaborating with cross-functional teams and presenting to senior leadership.
- Familiarity with AI tools and workflow automation platforms is preferred.
Nice to Have
- Experience developing automation using Copilot or other Agentic AI frameworks.
- Experience leading TPRM activities during mergers, acquisitions, divestitures, and integration programs.
- Knowledge of emerging risks including AI, cloud security, geopolitical risk, privacy, and evolving regulatory requirements.
- Experience implementing automation, AI-driven workflows, analytics, and operational transformation initiatives within TPRM or cybersecurity programs.
- Familiarity with enterprise risk frameworks and standards such as ISO 27001, NIST, SOC 2, PCI DSS, and privacy regulations.
- Strong executive communication skills with a proven ability to present complex risk concepts to senior leadership, boards, and auditors.
Position Type and Expected Hours of Work
- Full-time consulting position.
- Up to 40 hours per week with flexible core hours.
- Fully remote.