Job Title: Consultant | IRM- Third Party Risk Management | Bengaluru | ServiceNow
Deloitte.
Be audacious in impact
When was the last time you thought the unthinkable, defined the unfathomable, or did what no one else has dared to try?
At Deloitte, we're creating bold new frontiers for our clients and communities. Our roar echoes across India and beyond. So, bring your unique self and rise louder and leap further than ever before.
Consultant | IRM-Third Party Risk Management | Bangalore | ServiceNow
• Job requisition ID: 105660
• Location: PAN India
• Entity: Deloitte Touche Tohmatsu India LLP
The team
Enterprise technology must do much more than keep the wheels turning; it is the engine that drives functional excellence and the enabler of innovation and long-term growth. Learn more about ET&P
Your work profile
We are seeking an experienced ServiceNow Consultant specializing in Vendor Risk Management (VRM) / Third‑Party Risk Management (TPRM) and Data Privacy. The ideal candidate will have deep functional and technical expertise in ServiceNow GRC/IRM modules, with hands-on experience implementing VRM/TPRM workflows, assessments, vendor onboarding, integrations, and privacy management processes. The consultant will collaborate with procurement, compliance, legal, risk, and privacy teams to design, develop, and deploy scalable solutions aligned with regulatory and organizational standards.
Key Responsibilities:
Lead end-to-end implementation of ServiceNow VRM / TPRM and Data Privacy modules
• Work with procurement, legal, risk, and privacy stakeholders to capture and translate business requirements
• Configure and customize VRM/TPRM components such as vendor onboarding, tiering, inherent/residual risk scoring, assessments, questionnaires, due diligence, issue remediation, and continuous monitoring
• Implement Data Privacy workflows including Data Subject Requests (DSRs), consent management, data processing assessments (DPIAs/PIAs), and data retention processes
• Integrate VRM/TPRM with ERP, procurement systems, security tools, and third‑party risk data providers
• Build dashboards, reports, and risk metrics to support vendor governance and privacy operations
• Create solution design documents, configuration guides, and process documentation
• Support SIT, UAT, deployments, hypercare, and ongoing enhancement cycles
• Ensure vendor risk and privacy processes comply with frameworks such as GDPR, CCPA, ISO 27001, SOC2, NIST
• Troubleshoot module-specific issues and provide functional and technical support
· Development Responsibilities:
• Design and develop custom workflows, playbooks, automation, and logic within VRM/TPRM and Privacy modules
• Build custom assessments, vendor questionnaires, evaluation logic, and remediation workflows
• Develop integrations using REST, SOAP, MID Server, IntegrationHub, and VRM spokes
• Customize vendor tiering logic, risk scoring models, privacy scoring, and exception handling
• Develop custom UI elements, workspace components, and portal experiences
• Implement data models ensuring secure data access and compliance with privacy/ confidentiality requirements
• Build reusable scripts, script includes, business rules, and maintain high code quality
• Participate in code reviews and contribute to solution architecture discussions
• Perform root‑cause analysis and resolve technical defects efficiently
Key Skills required:
• 3-5 years of ServiceNow experience with strong expertise in GRC/IRM
• Minimum 2 years of hands-on experience in VRM / TPRM or Data Privacy modules
• Strong understanding of ServiceNow platform architecture, Glide scripting, and configuration practices
• Experience with risk methodologies (ISO 27001, NIST 800‑53, SOC2, GDPR, CCPA, HIPAA)
• Hands-on experience with vendor assessments, privacy workflows, GRC controls, policies, and issue management
• Experience with REST/SOAP integrations and IntegrationHub
• ServiceNow CSA certification required; IRM/GRC certification preferred
• Strong communication and stakeholder management skills
Preferred Skills:
· ServiceNow Certified System Administrator (CSA)
· ServiceNow CIS – Risk and Compliance / IRM certification
· Experience with:
o Continuous Monitoring
o Performance Analytics for GRC
o Automated evidence collection
o Prior experience working in audit, risk, or compliance programs
o Experience in Agile / SAFe / DevOps environments
You bring you
That's all we ask. And in return, we'll create an enabling and respectful environment. That includes reasonable accommodation for Fate unique needs.
Your bold odyssey starts here
Our story starts with your success: Experience excellence in an environment that is meritorious, respectful, collaborative, and empowering. One that is a catalyst of 360-degree happiness for you and your loved ones.
Get right skilled for tomorrow: Get equipped to fuel transformative change and be the best in the industry. Don't just learn new skills, but be the engine of innovation, with clutter-breaking solutions and practices.
Power the nation's growth story: We're Indian-owned and led and working towards India's future. Our team spans and creates impact for the country, well beyond its urban centers. We move ahead along with the communities in which we operate, thereby giving you a profession with a strong sense of purpose.