IBM’s procurement function oversees $17B in annual spend for IBM and nearly $100B in spend for our BPO clients through our procurement BPO delivery team and seeks to continually drive savings and increased value. IBM procurement provides IBM and our clients with end to end S2P services including spend analytics, category strategy, strategic sourcing across multiple categories, tactical buying and procurement operations, all governed by robust and adaptable processes and procedures.
IBM is currently undergoing a procurement transformation that will transform internal procurement, making it an exemplar of digital procurement featuring IBM’s automation and AI capabilities and leverage this Client Zero environment as the catalyst to bring these capabilities to our procurement BPO clients.
As a Vendor Risk Management Specialist, you will play a key role in designing, documenting, and maintaining the policies, standard operating procedures (SOPs), workflows, and process maps critical to supplier risk governance. You will work closely with Risk SMEs, Procurement, Legal, and Compliance to formalize complex business requirements into clear, usable content that aligns with regulatory expectations and internal standards.
You will be responsible for:
Drafting and maintaining documentation for vendor risk processes, policies, and controls
Creating visually accurate and intuitive process maps using tools like Mural, Visio, or Lucidchart
Collaborating with stakeholders to collect requirements, conduct interviews, and review drafts
Structuring internal knowledge base articles and SOPs for clarity, consistency, and reusability
Ensuring version control and document governance across the vendor risk program
Supporting internal audits and assessments by maintaining up-to-date documentation
Contributing to continuous improvement initiatives within risk documentation and training delivery
- Having an interest in learning more about risk management
Minimum 2 years of experience in technical writing, process analysis, or policy documentation
Proficient in tools such as Microsoft Word, Excel, PowerPoint, Visio, or equivalent
Ability to translate complex technical or regulatory requirements into simple language
Strong organizational and communication skills with attention to detail
Proficiency in English, both written and spoken
Familiarity with risk management, supplier compliance, or audit programs
Experience with document control systems or knowledge management platforms (e.g., Confluence, SharePoint)
Understanding of regulatory frameworks like GDPR, ESG, or ISO standards
Bachelor's degree in Business, Information Systems, Communications, or a related field