Risk Assessor

Science & Pharmaceutical
Science & Pharmaceutical

Risk Assessor

Our client is creating a new department within their organisation and are looking for highly skilled candidates to join this exciting project based in Cork.


  • Determine, conduct and incorporate applicable risk domain screenings into due diligence activities and ongoing oversight plan
  • Conduct assessments in a coordinated fashion with other risk domains. Assessment work includes but is not limited to scoping the assessment, testing controls, conducting interviews, reviewing evidence, determining final disposition of findings, written and verbal communication of findings, rating criticality of findings and evaluating action plans provided by the third party
  • Set risk domain ongoing monitoring schedule and activities per inherent risk domain level
  • Perform Ongoing Monitoring activities per the inherent risk domain level as a part of the TPRM Program
  • Define and own risk domain assessment methodology for control assessments activities
  • Provide risk domain requirements for termination and off-boarding activities, supporting these activities as required
  • Maintain risk domain questions for Inherent Risk Questionnaire (IRQ) for the TPRM tool
  • Work with risk domain partners to provide risk domain specific scoring thresholds for inherent risk domain levels per common TPRM risk tiering scale
  • Provide feedback on centralized intake form
  • Classify and consolidate report of findings using centralized TPRM tool whilst notifying appropriate stakeholders / partners
  • Opine on / recommend risk domain specific controls to mitigate identified findings and determine residual risk domain level for respective risk domains
  • Provide risk domain subject matter expertise and standard setting on findings tracking and mitigation
  • Create and own standards for qualitative residual risk scoring that adhere to the overall scoring methodology set by the TPRM Program
  • Issue approvals according to TPRM Approvals Matrix
  • Provide guidance to business teams on Third Party Risk Management
  •  Support internal education and best practices sharing with peers and colleagues, as well as third party education & awareness
  • In partnership with the Legal team, maintain inventory of risk domain specific contract principles, provide feedback on contract terms in contract negotiations and approve edits or adjustments to risk domain contractual principles
  • Drive and deliver on risk domain IRQ and process metrics to measure control effectiveness and allow decision making
  • Continually monitor and update assessments of the control environment, keeping abreast of significant control issues, trends and developments
  • Integrate emerging risk control requirements into the existing risk assessment process
  • Internal subject-matter expert of Lilly’s TPRM risk procedures and standards, owning & updating as required
  • Maintain list of third parties by risk domain in centralized TPRM tool
  • Consult or provide risk domain input into Lilly’s framework for third party governance
  • Support the TPRM Team in the implementation and maintenance of an effective enterprise risk management framework
  • Participate at forums including but not limited to TPRM Steer Committee (Risk Domain Partner Leadership), Assessment Coordination and TPRM Operations Committee
  • Support TPRM Projects as required
  • Partner with risk domain business functional areas to ensure TPRM activities are maintained and reflect current risks and expectations.


  • Bachelor’s Degree or CIPP/CIPT/CTPRP/CRISC/CISA/CISM qualification
  • Experience performing third party risk assessments in areas including but not limited to Anti-Corruption, Privacy, Information Systems and Information Systems Quality.
  • Minimum of three or more years of audit, operational risk or other risk management experience or other proven related business experience
  • Good understanding of risk management and internal control leading practices within specialized area of focus
  • Demonstrated ability to work effectively in a complex, highly regulated environment
  • Ability to plan, organize, prioritize and drive workload autonomously
  • Effective communication, organization and presentation skills
  • Effective influence management skills
  • Evidence of strong analytical and data management skills
  • Collaborate and builds partnerships across functions and regions, works well with others
  • Ability to work in a matrix organization to influence outcomes

For more information or even a private discussion please contact Jason O'Flaherty



Apply For This Job

Your Consultant
Jason O'Flaherty
Recruitment Consultant