At a Glance
- Tasks: Lead technology risk management and ensure compliance across our innovative financial services.
- Company: Join Newcastle Building Society, a community-focused financial institution with a strong purpose.
- Benefits: Enjoy competitive salary, flexible working, generous leave, and health benefits.
- Why this job: Make a real impact in safeguarding technology while shaping the future of finance.
- Qualifications: Experience in Technology Risk or Compliance, with strong stakeholder engagement skills.
- Other info: Inclusive workplace with excellent career growth and a commitment to diversity.
The predicted salary is between 36000 - 60000 £ per year.
As the Technology Risk Specialist, you will be responsible for embedding a strong risk culture across technology, playing a critical role in creating standardisation across technology, identifying gaps in the current Enterprise Risk Management Framework and ensuring plans are in place to resolve any issues. You are responsible for identifying, assessing and mitigating technology risks within the day-to-day operations and ensuring that risks are controlled, monitored and reported.
Providing operational governance over the 1st Line of Defence control environment, you will proactively ensure you are informed and understand the impact of evolving technology threats, regulatory changes and industry trends to enable us to adapt any risk management strategies that protect the organisation from technological vulnerabilities and operational disruptions. You are expected to support the assessment and reduction of residual risk to within risk appetite whilst driving timely and sustainable closure of audit and assurance actions.
Facilitating risk workshops with Technology and Data service and control owners to identify and document inherent risks associated with Technology and Data processes, platforms, and change initiatives.
About You
You are expected to have extensive experience in Technology and Data Risk, Audit, or a Compliance role, preferably within Financial Services or regulated industries. From this you will have a strong understanding of inherent and residual risk concepts, and control design principles and familiarity with 1st line risk management practices, ideally within a technology function. Possessing practical experience managing audit findings, remediation plans, and stakeholder coordination with excellent stakeholder engagement, influencing, and communication skills. You will have strong documentation and reporting skills, including preparing materials for risk and audit committees whilst experience delivering in 1st Line of Defence or integrated control functions. Being proficient in risk tools (e.g., ServiceNow GRC, Archer, MetricStream) is seen as a plus in addition to being familiar with risk frameworks and standards (e.g., ISO 27005, NIST, COBIT, FAIR).
About Us
The Newcastle Building Society Group comprises of Newcastle Building Society, Manchester Building Society, Newcastle Financial Advisers and Newcastle Strategic Solutions. Our purpose, connecting our communities with a better financial future inspires and directs our activities. The Group provides traditional financial services, helping people own their own home, plan and manage their finances and operate a 32-branch network across the North-East, North-West, Cumbria and Yorkshire. Our Strategic Solutions subsidiary owns the UK’s leading savings management platform and provides managed technology services to new challenger banks and other established providers.
As an inclusive employer and member owned mutual, we aim to reflect the diverse communities we serve and encourage applications from candidates of all backgrounds. We believe everyone should feel valued, respected, and celebrated for who they are, we want colleagues to feel this is a place they belong. A place to be you.
What do you get in return?
- Financial Corporate bonus scheme (on target 10%, up to a maximum 15%)
- Pension scheme (up to 9% employer contribution)
- Annual performance related pay reviews
- Colleague mortgage scheme
- Electric car salary sacrifice scheme
- Life assurance (4x salary) and income protection
- Access to our financial advisers
- Access to a range of high street and online discounts
- A 35-hour weekly contract – We are happy to talk flexible working and welcome discussions
- 30 days’ annual leave + bank holidays
- The option to buy and sell up to 5 days’ holiday
- Hybrid working
- Above statutory family leave entitlement – 3 months full pay, 3 months half pay, regardless of gender or route to parenthood
- Private medical insurance
- Access to a health cash plan through a Medicash scheme
- Access to an employee assistance programme
- Free onsite gym at our Cobalt head office and access to discounted gyms
- Two paid volunteering days each year
- Cycle to work scheme
Recognising there’s no one-size-fits-all approach to recruitment, we’re committed to ensuring every candidate has the opportunity to showcase their full potential throughout the recruitment process. We strive to make our processes as accessible as possible, if there are any ways in which we can provide support or make adjustments, we would love to discuss this with you.
Technology and Data Risk and Compliance Manager Newcastle Building Society employer: CyberNorth
Contact Detail:
CyberNorth Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Technology and Data Risk and Compliance Manager Newcastle Building Society
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, especially those already at Newcastle Building Society. A friendly chat can open doors and give you insider info on what they're really looking for.
✨Tip Number 2
Prepare for the interview by brushing up on your risk management knowledge. Be ready to discuss how you've tackled technology risks in the past and how you can bring that experience to the table.
✨Tip Number 3
Showcase your soft skills! Communication and stakeholder engagement are key in this role. Think of examples where you've influenced decisions or led teams through challenges.
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets the attention it deserves. Plus, we love seeing candidates who take that extra step!
We think you need these skills to ace Technology and Data Risk and Compliance Manager Newcastle Building Society
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in Technology and Data Risk. Use keywords from the job description to show us you understand what we're looking for.
Showcase Your Skills: Don’t just list your skills; give us examples of how you've used them in past roles. Whether it’s managing audit findings or facilitating risk workshops, we want to see how you’ve made an impact.
Be Clear and Concise: When writing your application, keep it straightforward. We appreciate clarity, so avoid jargon and make sure your points are easy to understand. This will help us see your thought process.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy!
How to prepare for a job interview at CyberNorth
✨Know Your Risk Frameworks
Familiarise yourself with key risk frameworks like ISO 27005 and NIST. Be ready to discuss how these frameworks apply to the role and how you can leverage them to enhance the risk culture within the organisation.
✨Showcase Your Stakeholder Skills
Prepare examples of how you've engaged with stakeholders in previous roles. Highlight your communication and influencing skills, as these will be crucial for facilitating risk workshops and managing audit findings.
✨Understand Technology Threats
Stay updated on the latest technology threats and regulatory changes. Be prepared to discuss how you would adapt risk management strategies to mitigate these evolving risks effectively.
✨Demonstrate Your Practical Experience
Bring concrete examples of your experience in managing audit findings and remediation plans. Discuss specific tools you've used, like ServiceNow GRC or MetricStream, to show your hands-on expertise in risk management.