Third Party-Supplier Risk & Compliance Officer
Confidential
Posted: February 17, 2026
Interested in this position?
Create a free account to apply with AI-powered matching
Quick Summary
Utmost International is a leading provider of insurance-based wealth solutions operating across the UK, Europe, Latin America, Asia, and the Middle East.
Required Skills
Job Description
About Utmost International
Utmost International is a leading provider of insurance-based wealth solutions operating across the UK, Europe, Latin America, Asia, and the Middle East. Its solutions are largely based on unit-linked insurance policies, serving the needs of affluent, high net worth (HNW), and ultra-high net worth (UHNW) individuals.
About Utmost Luxembourg S.A.
Sitting at the crossroads of private banking, asset management, and insurance, we operate in a well-established and fast-growing division of the financial services industry. Our dynamic international team of 450+ experienced wealth structuring specialists, subject-matter and technical experts consists of 50 different nationalities, speaking over 30 languages.
We are a diverse and inclusive organisation driven by a values-based culture that promotes excellence, ambition, and innovation. We invest in talented teams who develop their expertise, curated through support and training, and fostered through a people centred culture. Our people truly are our greatest asset!
Your role – Are you ready for a challenge?
As a member of the Procurement & Third-Party Supplier Management Team, the Third Party-Supplier Risk & Compliance Officer is responsible for ongoing monitoring and management of risks associated with third-party suppliers, with particular emphasis on ICT service providers subject to the Digital Operational Resilience Act (DORA). The role ensures that third-party suppliers, are properly assessed, monitored, and in line with internal frameworks and regulatory requirements.
Your responsibilities will be as follows:
Lead the Third-Party Supplier Management governance framework with a focus on ICT service providers under DORA and Outsourcing,
Drive or perform Third Party Supplier materiality & risk assessments throughout the third-party lifecycle,
Actively monitor compliance of critical and important Third- Party Supplier arrangements including materiality assessments, risk assessments, contractual safeguards and exit strategies,
Collaborate with Information Security, IT, Legal, DPO & Risk to ensure compliance of Third-Party Supplier arrangements with DORA or any other applicable regulation,
Conduct monitoring and performance assessments for critical and important Third-Party Suppliers,
Execute ICT DORA Register of Information and record keeping,
Draft reports to internal committees incl. the preparation and analysis of data on Third Party Supplier related risk matters,
Contribute to the continuous improvement of Third-party Supplier management processes, systems and controls.
Your profile – Have you got what it takes to become our Third-Party Supplier Risk & Compliance Officer?
University degree with between 3-5 years of relevant experience in risk, control or audit functions, with strong focus on ICT Risk Management,
Strong working knowledge of regulatory frameworks is essential, particularly DORA and Outsourcing, ISO 27001, NIST 2.0 CSF, and NIS 2,
Good understanding of ICT environments, outsourcing, and cloud service models,
Risk focused with pragmatic approach,
Strong interpersonal and communication skills to effectively collaborate with cross-functional teams,
Excellent analytical and problem-solving skills. Identify and suggest new ideas and solutions. continuously thinking out of the box,
High level of proficiency in written and spoken English, any additional European language would be considered an asset,
Well-developed skills in MS Office applications,
Dedication and ability to produce high quality, accurate work under pressure and tight deadlines,
Ability to prioritise among deliverables relating to multiple topics,
Fast and enthusiastic learner.
As an equal opportunity employer, all qualified applicants will receive consideration for employment without regard to gender, colour, religion, sexual orientation, national origin, disability status, protected veteran status, or any other characteristic protected by law.
Given the sensitive nature of our business, industry sector and the role as described, the selected candidate is required to provide a criminal record (Bulletin n°3 for Luxembourgish residents). This excerpt will be kept by Utmost Luxembourg S.A. in compliance with article 8-5 (2) of the law of 23 July 2016 and for no longer than one month from the conclusion of the employment contract; otherwise, it will be destroyed without any undue delay should the candidate not be hired.
Utmost Luxembourg S.A. is aware of its obligations under the General Data Protection Regulation (GDPR) and is committed to processing your data securely and transparently.
Our Recruitment Privacy Notice is in line with GDPR and provides more information with regards to the types of data that we collect and hold on you as a job applicant, including for the performance of Background Checks. It also sets out how we use that information, how long we keep it for and other relevant information about your data. For full details please click here Recruitment Privacy Statement
#utmost