At a Glance
- Tasks: Support risk management and compliance across IT and Data, ensuring robust controls and reporting.
- Company: Join a leading financial services firm focused on technology and risk management.
- Benefits: Competitive salary, flexible working options, and opportunities for professional growth.
- Other info: Be part of a collaborative team driving innovation and excellence in risk management.
- Why this job: Make a real impact in technology risk while developing your skills in a dynamic environment.
- Qualifications: Experience in governance, risk, and compliance; strong analytical and stakeholder engagement skills.
The predicted salary is between 50000 - 65000 £ per year.
Division: Information Technology
Reports To: As per Beazley’s organisation chart
Key Relationships: Risk, Audit, Compliance, Information Security, Financial controls teams, General Management, IT/Data leadership and SME’s, Operational resilience, Procurement and Third-Party Management, COO general management, COO Business Risk and Controls team
Job Summary: The role will effectively support management and oversight of compliance across the IT and Data portfolio, ensuring robust risk, control management and assurance, internal and external audits, regulatory actions and workstreams. The role will play a part in developing and producing comprehensive monthly, quarterly, and ad-hoc risk and controls review and reporting, providing assurance to senior management and keeping them informed.
Key Responsibilities
- Risk Management
- Support oversight risk identification, assessments, acceptances, and mitigation strategies within technology functions, ensuring appropriate controls are in place.
- Support management of all risks, controls and incidents activities that fall under the IT and Data remit, liaising and ensuring alignment and collaboration with Group Risk management in maintaining and communicating up to date risk information.
- Partner with relevant teams and SME’s to co-manage the existing controls to include alignment on priorities and performance expectations.
- Support controls annual assessment and improvement plan for controls.
- Support management of all IT and Data actions related to risk, assurance, controls.
- Support the enhancement and management of the IT risk management process and IT/Data risk registers, and where applicable, alignment with functional and group risk management frameworks.
- Support and monitor KPIs and KRIs for technology controls and risk exposure, supporting reporting for governance forums and senior management.
- Where risks fall outside of appetite/tolerance, work with relevant stakeholders in developing and tracking a mitigation plan within reasonable timelines.
- Support the identification of issues, issue management and remediation and provide reporting on risk/controls/KRIs to the relevant stakeholders.
- Challenging business on risk and control matters (e.g., incidents, issues, and actions) and the overall management of control environment.
- Support mapping policies, standards and controls to regulatory requirements and industry frameworks (DORA, CBI, CIS, ISO, NIST).
- Regulatory, Audit and Compliance
- Support management of internal and external audit processes, ensuring timely and accurate responses to audit requests, and driving remediation of findings with timely closures of related actions.
- Provide guidance and support to stakeholders regarding compliance and governance requirements.
- Support maintenance of an IT compliance register, mapped with applicable regulatory requirements and associated controls.
- Monitor changes in relevant laws and regulations and advising on impact and remediation, in conjunction with Compliance.
- Ensure policies, standards and guidance are updated following any review activities such as (but not limited to) external audits, regulatory changes and any internal change/requirements.
- Support the governance and communication of these updates to relevant stakeholders and committee/boards.
- In collaboration with Compliance, support relevant teams in fulfilling regulatory deliverables and provide input on any required communication to a regulator (eg. CBI).
- Assurance
- Develop and carry out an annual assurance programme for controls and policies under the IT and Data functions.
Personal Specification
Essential Criteria
- Extensive experience in governance roles, such as risk and controls, audit or compliance.
- Extensive experience in technology roles with excellent analytical and problem-solving abilities.
- Strong stakeholder engagement skills across all organisational levels.
Education and Qualifications
- Extensive experience in technology compliance, risk management, controls, and governance within a regulated environment.
- Experience within a financial industry desired.
- BA/BS degree, and/or relevant industry experience.
Skills and Abilities
- Experience in Technology governance, risk, and compliance.
- Strong stakeholder management at all levels.
- Providing guidance on Technology governance, risk, and compliance matters.
- Ability to identify and evaluate Technology risks and controls and provide practical and effective recommendations.
- Ability to communicate complex Technology risk and compliance issues to non-technical audiences.
- Experience in writing effective committee papers desired.
Knowledge Requirements
- Passionate about compliance, risk management, audit principles and practices and continuous improvement.
- Proven experience in operating in an IT GRC environment and in particular, leading the designing of IT risk frameworks, controls and policies.
- Excellent stakeholder management, communication and influencing skills, with the ability to build strong relationships and partnerships across the organisation.
- Strong knowledge and understanding of Technology risk management frameworks, methodologies and tools, such as COBIT, ISO 27001, NIST, etc.
- Strong knowledge of Technology governance, compliance and regulatory requirements, such as GDPR, PCI-DSS, Solvency II, etc.
- Analytical approach with ability to work systematically and unsupervised, to tight deadlines and with multiple competing priorities.
- Demonstrable ability to communicate with project teams and advise on operational implications of business requirements and change delivery risks.
- A self-starter and independent learner who takes the initiative to challenge the status quo and is creative and comfortable with ‘blank sheet of paper’ assignments.
- Strong written and oral communication skills.
- Influencing and excellent report-writing experience with a high standard of English is a pre-requisite.
Technology Risk Analyst employer: Beazley Management Limited
Contact Detail:
Beazley Management Limited Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Technology Risk Analyst
✨Network Like a Pro
Get out there and connect with people in the industry! Attend events, webinars, or even local meetups. The more you engage with others, the better your chances of landing that Technology Risk Analyst role.
✨Show Off Your Skills
When you get the chance to chat with potential employers, don’t hold back! Share specific examples of how you've tackled risk management or compliance challenges in the past. This will help them see you as the perfect fit for their team.
✨Tailor Your Approach
Every company is different, so make sure you tailor your conversations to align with their values and needs. Research their current projects or challenges in technology risk and come prepared with ideas on how you can contribute.
✨Apply Through Our Website
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive about their job search!
We think you need these skills to ace Technology Risk Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Technology Risk Analyst role. Highlight your experience in governance, risk management, and compliance, and don’t forget to mention any relevant frameworks you’re familiar with, like ISO or NIST.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about compliance and risk management. Share specific examples of how you've tackled similar challenges in the past.
Showcase Your Stakeholder Skills: Since this role involves engaging with various teams, make sure to highlight your stakeholder management skills. Mention instances where you've successfully collaborated with different departments or influenced decision-making.
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It’s the best way for us to receive your application and keep track of it, so don’t miss out!
How to prepare for a job interview at Beazley Management Limited
✨Know Your Risk Management Frameworks
Familiarise yourself with key risk management frameworks like COBIT, ISO 27001, and NIST. Be prepared to discuss how these frameworks apply to the role of a Technology Risk Analyst and how you’ve used them in past experiences.
✨Showcase Your Stakeholder Engagement Skills
Think of examples where you've successfully engaged with stakeholders at various levels. Highlight your communication strategies and how you’ve built relationships to manage risks and compliance effectively.
✨Prepare for Technical Questions
Brush up on your technical knowledge related to IT governance, compliance, and risk management. Be ready to explain complex concepts in simple terms, as you may need to communicate these to non-technical audiences.
✨Demonstrate Your Analytical Skills
Be prepared to discuss how you approach problem-solving and analysis in risk management. Use specific examples to illustrate your analytical abilities and how they’ve led to effective risk mitigation strategies.