Operational Resilience and Third Party Risk Manager

Company: Hollybank Trustees Ltd
Apply for the Operational Resilience and Third Party Risk Manager
Location: London
Job Description:

Operational Resilience and Third Party Risk Manager

Fenchurch St, London EC3M 4BY, UK

Permanent | Full-time | Hybrid

About the Role

We’re looking for an experienced Third Party Risk & Operational Resilience Manager to join our First Line Risk team at Hampshire Trust Bank. This is a high‑impact role where you’ll take ownership of the Third Party Risk Management (TPRM) framework while supporting the bank’s broader operational resilience strategy. You’ll act as a subject‑matter expert, ensuring our third‑party risk framework remains compliant, proportionate and embedded across the business, while providing oversight, challenge and guidance to key stakeholders.

You’ll play a critical role in protecting the bank, strengthening supplier governance and ensuring resilience across our services, with strong visibility at senior leadership level.

Third Party Risk Management (Primary Focus)

  • Own and maintain the TPRM policy, framework, operating model and supporting standards
  • Oversee onboarding, segmentation and risk assessment of third‑party suppliers
  • Provide expert guidance and challenge to business owners on supplier risk responsibilities
  • Deliver assurance activity, identify control weaknesses and escalation non‑compliance
  • Lead the Third Party Risk Forum, including MI production, governance and action tracking
  • Manage third‑party due diligence (including platforms such as Hellios) and supplier oversight
  • Develop and track third‑party performance metrics and reporting
  • Design and deliver exit strategy testing and contingency planning

Operational Resilience (Supporting)

  • Support the implementation of the operational resilience framework across the bank
  • Contribute to business continuity planning, incident management and service resilience
  • Support scenario testing and identification of resilience vulnerabilities
  • Ensure TPRM is effectively integrated into resilience reporting and governance

Business Incident Management

  • Participate in the Business Incident Management rota
  • Act as incident lead when required, coordinating response, governance and resolution
  • Ensure incidents are managed in line with policy and closed effectively

Who You’ll Work With

You’ll collaborate closely with:

  • Director of First Line Risk and Risk Business Partners
  • Procurement, IT, Cyber Security and Infrastructure teams
  • 2nd Line Risk & Compliance and Operational Risk teams
  • Commercial Managing Directors and business owners
  • External industry bodies and third‑party providers

Qualifications & Experience

  • Proven experience in Third Party Risk Management or supplier risk, ideally within financial services
  • Strong knowledge of UK regulatory requirements (FCA, PRA, outsourcing, operational resilience)
  • Experience designing and maintaining TPRM frameworks, policies and operating models
  • Experience working with procurement, legal and cyber teams on supplier onboarding
  • Practical experience of risk assessment, assurance and ongoing supplier oversight
  • Experience with third‑party risk platforms (e.g. Hellios desirable)
  • Understanding of operational resilience and business incident management
  • Experience engaging senior stakeholders and presenting risk insights

Skills & Attributes

  • Strong stakeholder management and influencing skills
  • High attention to detail with a control‑focused mindset
  • Organised and able to manage multiple workstreams
  • Confident in challenging and escalating risks appropriately
  • Proactive, self‑starter with a continuous improvement mindset
  • Collaborative team player with strong commercial awareness
  • Discretionary annual bonus
  • 25 days annual leave (increasing with service) + Holiday Buy Scheme
  • Private Medical Insurance (Bupa)
  • Cycle to Work & Green Car Schemes
  • Interest‑free season ticket loan

If you’re an experienced risk professional with a passion for third‑party risk, operational resilience and governance, we’d love to hear from you.

#J-18808-Ljbffr…

Posted: May 23rd, 2026