At a Glance
- Tasks: Lead IT governance and security risk management across value streams, ensuring compliance with standards.
- Company: 1st Central is a top insurance company known for excellent service and innovative technology.
- Benefits: Enjoy flexible working options, a supportive environment, and great corporate perks.
- Why this job: Join a winning team recognised as Insurance Employer of the Year and make a real impact.
- Qualifications: Strong knowledge of IT governance, risk assessment, and excellent communication skills required.
- Other info: This role offers a chance to grow in a fast-paced DevOps environment.
The predicted salary is between 48000 - 72000 £ per year.
We are 1st Central, a market-leading insurance company utilising smart data and technology at pace. Rapid growth has been based on giving our 1.4 million customers exactly what they want: great value insurance with an excellent service. We won Insurance Employer of the Year at the British Insurance Awards 2024 and our Glassdoor score is impressive!
We are on the hunt for an experienced IT Governance Lead for a newly created role within our IT Governance team. This position will play a pivotal role within the IT Governance team.
You will be responsible for driving IT governance, security and technology risk management across the value stream. You will embed in a value stream and will play a key part in ensuring that all technology and business initiatives within the value streams comply with technology & governance frameworks, standards and policies. As the IT Governance Lead, you will act as a link between the Value Streams and the Security, IT Governance and Tech & Data risk team, and will be the first point of contact within the value stream to provide contextual advice and undertake relevant activities in stream.
We value flexible working arrangements, so you can choose to work remotely or work in the office occasionally if you live within a commutable distance from one of our offices in Salford Quays, Manchester, Haywards Heath, West Sussex, or Guernsey.
Core skills we are looking for to succeed in the role:
- Strong communication and collaboration skills, with excellent reporting skills.
- Ability to analyse security and technology risks.
- Stakeholder management skills.
- Ability to work across multiple teams.
What’s involved:
- You will lead and oversee IT, Security & technology risk governance within value streams, ensuring compliance with internal standards, policies, guardrails, etc.
- You will ensure value stream initiatives and ongoing activities follow appropriate governance processes.
- You will provide guidance on risk, including assessments, mitigation strategies, and acceptance processes, within existing frameworks.
- You will monitor, review, and report on technology and security risk across the value stream, providing direction on managing risk and minimising vulnerabilities.
- You will collaborate with the IT Governance & Information Security teams to highlight, assess, and mitigate changing or emerging risks within the value stream.
- You will assist in ensuring that security and other controls are embedded within the value streams’ development, deployment, and run lifecycles, including assessing, monitoring, and providing advice on value stream epics, features, etc.
- You will escalate and assist in the management of incidents, security events, and the establishment of root causes as required.
- You will assist in the triage and distribution of vulnerability & Pen Test findings and associated actions as required.
- You will undertake cross-value stream control testing and other assurance as needed.
- You will be responsible for monitoring, helping prioritise, and reporting on 1st/2nd/3rd line actions within the value stream.
- You will undertake standard IT Governance & Risk and Security activities in value stream, such as 3rd party risk assessments and due diligence.
- You will support all in-value stream 1st/2nd/3rd line reviews, audits, etc.
- You will undertake specific IT Governance and Security reporting activities as required.
- You will act as the 'eyes and ears' and champion within the value stream, bridging between value stream stakeholders and the IT Governance and Security teams, managing concerns, escalations, etc.
- You will engage, provide training, and promote awareness with value stream leaders and teams to ensure IT governance, risk, and security requirements are clearly understood and followed.
- You will identify opportunities for governance process improvements within value streams, and drive initiatives to improve governance, risk management, and security maturity.
- You will help foster a culture of accountability, ensuring value stream leaders and teams adhere to technology and security standards and are committed to appropriate and proportionate risk management.
- You will comply with the requirements, and act in accordance with, the Group Code of Conduct and Fitness and Propriety policies at all times.
- You will ensure compliance with Company Policies, Values and guidelines and other relevant standards/regulations at all times.
Experience and Knowledge:
- Strong knowledge of IT & Security governance, policies and requirements.
- Conducting risk assessments, control testing, and other assurance activities.
- Identifying, assessing, and mitigating technology and security risks.
- Technical experience and knowledge of security principles & controls.
- Knowledge of cloud security principles and DevOps governance.
- Experience in financial services or other regulated industries.
- Knowledge of Azure cloud security principles and DevOps.
- Knowledge of ISO 27001, COBIT and similar frameworks.
Skills:
- Strong communication and collaboration skills, with excellent reporting skills.
- Ability to analyse security and technology risks.
- Stakeholder management skills.
- Ability to work across multiple teams.
Behaviours:
- Ask questions, explore new solutions, and drive continuous improvement.
- Proactively identify risks and governance issues early and take initiative to address them.
- Collaborate effectively across teams, building strong relationships to embed governance principles and influence outcomes.
- Take ownership and responsibility for in value stream governance, ensuring teams meet security and compliance standards.
- Thrive in a fast-paced DevOps environment, balancing agility with governance requirements and practical solutions.
- Clear communication and explain governance and security concepts in a way that both technical and business teams can understand.
This is just the start. Imagine where you could end up! The journey's yours...
What can we do for you?
People first. Always. We are passionate about our colleagues and know the best people deserve an extraordinary working environment. Our workplaces are energetic, inspirational, supportive.
Intrigued? Our Talent team can tell you everything you need to know about what we want and what we are offering, so feel free to get in touch.
Value Stream IT Governance Lead employer: First Central Insurance & Technology Group
Contact Detail:
First Central Insurance & Technology Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Value Stream IT Governance Lead
✨Tip Number 1
Familiarise yourself with the specific IT governance frameworks mentioned in the job description, such as ISO 27001 and COBIT. Understanding these frameworks will not only help you in interviews but also demonstrate your commitment to the role.
✨Tip Number 2
Network with professionals in the insurance and IT governance sectors. Engaging with industry peers can provide insights into the company culture at 1st Central and may even lead to referrals, which can significantly boost your chances of landing the job.
✨Tip Number 3
Prepare to discuss real-world examples of how you've successfully managed technology risks or implemented governance processes in previous roles. This practical experience will resonate well with the interviewers and showcase your capability for the position.
✨Tip Number 4
Stay updated on the latest trends in cloud security and DevOps governance, especially related to Azure. Being knowledgeable about current technologies will not only impress your interviewers but also show that you're proactive about continuous learning.
We think you need these skills to ace Value Stream IT Governance Lead
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in IT governance, risk management, and security. Use keywords from the job description to demonstrate that you meet the core skills required for the role.
Craft a Compelling Cover Letter: In your cover letter, explain why you're interested in the Value Stream IT Governance Lead position. Highlight specific examples of your past experiences that align with the responsibilities mentioned in the job description.
Showcase Communication Skills: Since strong communication is key for this role, consider including examples in your application that demonstrate your ability to communicate complex ideas clearly to both technical and non-technical stakeholders.
Highlight Continuous Improvement Initiatives: Mention any previous experiences where you've identified risks or governance issues and successfully implemented improvements. This will show your proactive approach and alignment with the company's values.
How to prepare for a job interview at First Central Insurance & Technology Group
✨Understand the Role Thoroughly
Before the interview, make sure you have a solid grasp of what the Value Stream IT Governance Lead entails. Familiarise yourself with IT governance frameworks like ISO 27001 and COBIT, as well as the specific responsibilities mentioned in the job description.
✨Showcase Your Communication Skills
Since strong communication is key for this role, prepare to demonstrate your ability to convey complex information clearly. Think of examples where you've successfully communicated with both technical and non-technical stakeholders.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Be ready to discuss how you would handle risk assessments or manage security incidents within a value stream context.
✨Highlight Your Collaborative Experience
This role requires working across multiple teams, so be prepared to share examples of how you've effectively collaborated in the past. Discuss any experiences where you built relationships to influence outcomes and drive governance principles.