Technology Risk Manager

auricoe
London, UK
11 days ago
Apply on www.reed.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
£90,000.0 - £100,000.0
Working hours
Regular working hours
Job source

Tech stack

Control Objectives for Information and Related Technology (COBIT) Cyber Security

Job description

Are you an experienced Technology Risk professional who can challenge senior technology stakeholders without becoming the person who owns the risk?

Auricoe is recruiting a Technology Risk Business Partner for a leading UK financial services organisation undergoing continued development of its technology, cyber and risk capabilities.

This is a high-profile second-line risk role, partnering closely with Technology, Cyber and Information Security teams and providing independent challenge, practical risk insight and advice.

Rather than simply administering frameworks, you’ll help senior stakeholders understand where technology and cyber risks are changing, whether controls are genuinely effective and what needs to happen next.

The role will include:

  • Acting as a trusted second-line adviser to Technology, Cyber and Information Security stakeholders
  • Reviewing and challenging technology/cyber risk assessments, control mappings and remediation plans
  • Assessing emerging risks and control effectiveness through thematic reviews
  • Providing risk challenge across technology change, projects and investments
  • Supporting the practical application of the organisation’s Non-Financial Risk Framework
  • Undertaking root-cause analysis and helping ensure lessons from risk events translate into meaningful action
  • Building strong relationships across first-line Technology and specialist Risk teams

We’re particularly interested in candidates with experience across Technology Risk, IT Risk, Cyber Risk, Information Security Risk, Technology Controls or Technology Operational Risk.

You’ll need a strong understanding of recognised technology/security risk frameworks such as NIST, COBIT or CRI, combined with the confidence to constructively challenge senior stakeholders.

Requirements

  • CISM Certification
  • CISSP & Related Security Certifications
  • Cyber Security
  • Information Security
  • Information Security (Infosec)
  • IT Risk Management
  • IT Risk Management (Controls)
  • NIST Cybersecurity Framework
  • NIST Cybersecurity Framework (Cobit)
  • NIST Security Frameworks

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.reed.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:48 min

Utilizing the NIST framework for risk management

Rebekka Weiss Rebekka Weiss +1 · World Congress 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

Videos

See all

Related articles

See all