[EU] IT Outsourcing & Third Party Risk Manager
Responsibilities
Support the implementation, maintenance and operation of Bybit's third-party risk management framework
Oversee and monitor third-party services and vendors in accordance with regulatory requirements across Bybit EU's regulated entities in Austria
Ensure agreements, SLAs, KPIs and other metrics are in place to manage third parties against regulatory requirements
Review and analyse documentation, prepare reports, develop Management Information, and handle regulatory notifications
Support assessment of new third-party services
Continuously develop the third-party risk management framework including documentation, assessments, systems and tools
Provide first and second line review and challenge of third parties, helping implement SLAs, KRIs and other monitoring mechanisms
Maintain and update the third-party portfolio and registers in alignment with regulatory requirements (e.g. DORA)
Ensure adherence to the full Third-Party Risk lifecycle — from identification and assessment through to monitoring and exit planning
Support training for business partners on TPRM framework, policies, standards and processes
Interact with internal stakeholders (Legal, Compliance, Data Protection, Technology) and external providers and the Austrian regulator
Requirements
Solid understanding of Third-Party Risk Management, with specific knowledge of DORA, EBA Outsourcing guidelines, and the Austrian banking act
Hands-on experience operating third-party risk frameworks
Experience managing third parties across the full lifecycle, including SLA development
At least 3-5 year work experience in financial services with deep knowledge in banking regulation (first experience with DORA) and procurement/outsourcing area
Fluent in German and English
Strong stakeholder management and communication skills, with the ability to build credibility across internal and external audiences