> Markdown version of [/jobs/ext/3032166-technology-risk-manager](https://www.wearedevelopers.com/jobs/ext/3032166-technology-risk-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Technology Risk Manager - **Company:** auricoe - **Location:** London, UK - **Experience:** Expert - **Salary:** £90,000.0 - £100,000.0 - **Contract:** Permanent contract - **Skills:** Control Objectives for Information and Related Technology (COBIT), Cyber Security - **Published:** September 23, 2026 - **Apply:** https://www.reed.co.uk/jobs/technology-risk-manager/57383804 ## About the Role * CISM Certification * CISSP & Related Security Certifications * Cyber Security * Information Security * Information Security (Infosec) * IT Risk Management * IT Risk Management (Controls) * NIST Cybersecurity Framework * NIST Cybersecurity Framework (Cobit) * NIST Security Frameworks ## Description Are you an experienced Technology Risk professional who can challenge senior technology stakeholders without becoming the person who owns the risk? Auricoe is recruiting a Technology Risk Business Partner for a leading UK financial services organisation undergoing continued development of its technology, cyber and risk capabilities. This is a high-profile second-line risk role, partnering closely with Technology, Cyber and Information Security teams and providing independent challenge, practical risk insight and advice. Rather than simply administering frameworks, you'll help senior stakeholders understand where technology and cyber risks are changing, whether controls are genuinely effective and what needs to happen next. The role will include: * Acting as a trusted second-line adviser to Technology, Cyber and Information Security stakeholders * Reviewing and challenging technology/cyber risk assessments, control mappings and remediation plans * Assessing emerging risks and control effectiveness through thematic reviews * Providing risk challenge across technology change, projects and investments * Supporting the practical application of the organisation's Non-Financial Risk Framework * Undertaking root-cause analysis and helping ensure lessons from risk events translate into meaningful action * Building strong relationships across first-line Technology and specialist Risk teams We're particularly interested in candidates with experience across Technology Risk, IT Risk, Cyber Risk, Information Security Risk, Technology Controls or Technology Operational Risk. You'll need a strong understanding of recognised technology/security risk frameworks such as NIST, COBIT or CRI, combined with the confidence to constructively challenge senior stakeholders. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Outsmarting the System: What Game Cheaters Can Teach Us About Cyber Security](https://www.wearedevelopers.com/videos/1396-outsmarting-the-system-what-game-cheaters-can-teach-us-about-cyber-security) - [Policy as [versioned] code - you're doing it wrong](https://www.wearedevelopers.com/videos/532-policy-as-versioned-code-you-re-doing-it-wrong) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)