Enstargrouplimited
OpenHead of Third-Party Risk Management
- Location
- London
- Posted
- Jul 23, 2026
- Last seen
- Aug 7, 2026
About the role
About you and the role:
A senior member of the Operations team, this exciting new role will be responsible for shaping the Group’s Third-Party Risk Management (TPRM) strategy, framework and operating model across Enstar Group.
The role is accountable for the ongoing development of a scalable and risk-based TPRM framework that supports the organisation’s strategic objectives and regulatory obligations.
Acting as the Group subject matter expert for third-party risk management, the role requires close partnership with Heads of Functions across Procurement, Compliance, Enterprise Risk (Head of Operational Risk), Information Security, Legal, IT, Operational Resilience, Investments and business service owners to ensure third-party risk considerations are embedded into day-to-day decision making and operational processes. As well as working with peers, the role will need to closely engage with Regional COOs and Group Execs.
The role will be responsible for an Enstar Group function and operates within a Group federated risk and control model, working closely with specialist risk and control functions to ensure relevant domain expertise, standards and regulatory requirements are effectively integrated into third-party governance, assessment and oversight processes.
The role will also play a key role in the implementation and optimisation of TPRM technologies, tooling and data capabilities to support improved oversight, workflow management, reporting and risk insight.
This is a highly visible, hands-on first line of defence leadership role requiring strong judgement, stakeholder influence, operational credibility and the ability to translate policy and framework requirements into practical business outcomes.
What you will be doing:
Group Third-Party Risk Strategy & Framework
- Own and evolve the Group-wide Third-Party Risk Management strategy, framework and operating model across all categories of third-party relationships. Drive the continued maturity and embedding of TPRM capabilities across all business areas.
- Will be accountable for a small Department with responsibility for Departmental strategy
- Establish proportionate governance models which recognise differing third-party relationship structures, risk profiles and business operating models.
- Deliver continuous improvement of TPRM methodologies, controls, standards and lifecycle processes.
Third Party Oversight & Risk Management
- Provide enterprise-wide oversight and coordination of third-party risk activities throughout the lifecycle of third-party relationships.
- Support the effective management of risks associated with suppliers, TPAs, investment managers, outsourced service providers and other external partners, through collaboration with specialist teams.
- Lead approaches relating to material outsourcing, critical third parties, concentration risk, fourth party exposure and operational dependencies.
- Ensure robust due diligence, risk assessment, monitoring, issue management and escalation processes are embedded across the organisation.
- Support business stakeholders and service owners in making informed, risk-based decisions relating to third-party engagements and outsourcing arrangements.
- Deliver meaningful management information, reporting and insight to support effective oversight and decision making.
Governance & Regulation
<li style="font-size: 10pt; color:
