IT Risk Manager - Tech Infrastructure
Role details
Job location
Tech stack
Job description
This dynamic, regionally focused yet globally integrated role provides technical, governance, and operational expertise in IT Infrastructure (TI) Risk Management for UK, Channel Islands, and Europe, with broader global support via a follow-the-sun model. Aligned with RBC's enterprise TI Risk Management frameworks, the role ensures consistent application of risk strategies, policies, and tools across regions.
This role strengthens RBC's TI risk posture by embedding proactive governance, ensuring regulatory adherence, and fostering a resilient, secure technology environment across supported regions.
This role requires 4 days in the office.
What will you do?
- Ensure robust risk governance, compliance, and resilience across TI while driving innovation in risk management processes.
- Collaborate with TI regional leadership to ensure compliance with RBC enterprise standards and policies, and executive reporting.
- Manage stakeholder relationships to balance local, regional, and global risk priorities.
- Participate in regional/global meetings to address risk remediation and share expertise.
- Support the regional TI risk lead contact for risk functions (e.g., 2nd line Group Risk Management (GRM), 1st line Global Security, 1st T&O Global IT Risk (GITR), Internal Audit).
- Oversee the development and maintenance of regional and global TI risk reports and metrics to ensure effective leadership oversight, compliance and informed decision-making.
- Monitor and remediate open risk points (findings and issues) and drive mitigation action plans.
- Identify and prioritize risk controls in areas like access management, vulnerability mitigation, BCM/DR, and vendor governance.
- Collaborate with technical SMEs to enhance risk controls and automate reporting.
- Support internal/external audits for infrastructure controls and track issue remediation.
- Review major IT incidents, advise on reporting requirements, and file Operational Risk Events.
Requirements
Do you have experience in Virtualization?, Do you have a Bachelor's degree?, * Extensive general IT experience, ideally more focused in an IT infrastructure environment
- Solid experience in a broad range of Information Security and IT Risk Management, ideally in the 1st line of defence Operational function
- Drive end-to-end security governance by developing and enforcing policies, aligning with enterprise standards, enhancing global security awareness, collaborating on systems security, resolving complex incidents, and providing risk advisory for new initiatives and third-party engagements
- Proven experience interacting with 2nd line of defence, internal and external auditors, compliance and regulators
- Effectively influence and engage with diverse audiences (technical and business) across all levels to translate complex risks into actionable business context, driving ownership and resolution of regional and global risks
- Passionately lead or support global initiatives, prioritize tasks, and manage time efficiently to meet deadlines while fostering a shared sense of responsibility for risk mitigation
- Working knowledge of the UK, Channel Islands and Europe's banking/financial specific security threat landscape, culture and regulatory expectations, as well as an ability to stay current with this required level of knowledge
- Technical - CISSP, CRISC or CGEIT active certifications & Telecomms (IPT, Turrets, Networks, Firewalls, VPN)
- Server Operating Systems and End-user Devices (Windows, Linux and UNIX, Mobiles)
- Storage (SAN and NAS) / Database (SQL Server, Oracle, Sybase) / Virtualisation (VMWare, Citrix)
- Middleware, Messaging and Webservers / Data Centres / Cloud Computing
Nice-to-have
- Experience working in a global bank with a federated operating model
- Bachelor Degree in Computer Science / Engineering or related field
- Some experience in BCM/DR
- Some experience in managing Cyber Security/IT risk initiatives or projects
- CISA, CISM, CEH, GCIH, PMP or CIPP/IT Preferred
- Application development and SDLC principles
Benefits & conditions
We thrive on the challenge to be our best - progressive thinking to keep growing and working together to deliver trusted advice to help our clients thrive and communities prosper. We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.
- A comprehensive Total Rewards Program including bonuses, flexible benefits and competitive compensation
- Leaders who support your development through coaching and managing opportunities
- Opportunities to work with the best in the field
- Ability to make a difference and lasting impact
- Work in a dynamic, collaborative, progressive, and high-performing team
- A world-class training program in financial services
- Flexible working options fully supported.
Agency Notice
RBC Group does not accept agency resumés. Please do not forward resumés to our employees, nor any other company location. RBC Group only pay fees to agencies where they have entered into a prior agreement to do so and in any event do not pay fees related to unsolicited resumés. Please contact the Recruitment function for additional details.
Job Skills Business Continuity and Disaster Recovery (BCDR), Cost-Benefit Analysis (CBA), Cyber Security Management, Firewall Management, Information Security Management, IT Network Security, Operational Delivery, Problem Management, Process Management, Threat Management