Director of Technology & Operational Risk

Director of Technology & Operational Risk

Full-Time 100000 - 130000 Β£ / year (est.) No working from home possible
IG Group

At a Glance

  • Tasks: Lead the design and operation of risk processes in a fast-paced fintech environment.
  • Company: Join a leading financial services firm at the forefront of technology and innovation.
  • Benefits: Competitive salary, flexible working options, and opportunities for professional growth.
  • Other info: Collaborative culture with a focus on innovation and strategic influence.
  • Why this job: Make a real impact on operational and technology risk in a dynamic industry.
  • Qualifications: Extensive experience in operational and technology risk within financial services.

The predicted salary is between 100000 - 130000 Β£ per year.

Requirements

  • Significant experience in operational and/or technology risk within financial services, with meaningful exposure to fintech, digital assets, or crypto β€” gained in a second-line or specialist risk function.
  • Deep working knowledge of UK regulation, including MIFIDPRU and FCA expectations for operational resilience, with awareness of the evolving regulatory framework for crypto assets and digital markets.
  • Proven track record of designing and operating core risk processes β€” RCSAs, risk registers, control attestations, incident management β€” at scale and across global, diversified businesses.
  • Experience quantifying operational risk for capital adequacy purposes, including scenario analysis and stress testing.
  • Strong grasp of technology risk disciplines, including cyber risk, infrastructure risk, data risk, technology change management, and emerging risks associated with AI systems and crypto infrastructure.
  • Track record of engaging in new product and innovation risk processes, providing proportionate second-line input across products at different stages of maturity and scale.
  • Track record of presenting to and influencing senior committees and regulators, with the gravitas to challenge constructively at all levels.
  • Technically credible β€” able to engage meaningfully with Technology, Engineering, and Product teams, and translate complex exposures into clear risk language.
  • Commercially minded β€” understands business drivers and calibrates risk management to support, not obstruct, strategic objectives and innovation ambitions.
  • Outstanding communicator β€” able to convey complex risk topics with clarity and authority, both in writing and in person.
  • Rigorous and disciplined β€” brings structure and consistency to risk processes without sacrificing pragmatism.
  • Collaborative and influential β€” builds trusted relationships across functions and operates effectively in a matrixed, global organisation.

What the job involves

  • This is a senior, technically substantive role at the heart of IG's second line of defence.
  • You will own the design and operation of IG's core operational and technology risk processes β€” from incident response and control attestations to RCSA facilitation and risk register management β€” ensuring the framework is both rigorous and commercially informed.
  • You will be a subject matter expert who commands credibility with technologists, product teams, and regulators alike β€” equally comfortable navigating the risk landscape of a global retail trading platform and the emerging challenges of crypto, AI, and digital asset products.
  • This is a role for someone who operates at the intersection of technical depth and strategic influence, and who thrives in a fast-moving, innovation-led financial services environment.
  • Design and maintain IG's operational risk framework in line with MIFIDPRU requirements and the ICARA process, including quantification of operational risk exposure for capital adequacy purposes.
  • Own the end-to-end operational risk event and issue (ORE) lifecycle β€” identification, recording, root cause analysis, remediation tracking, and lessons learned β€” ensuring consistent standards across all business lines.
  • Design, facilitate, and challenge Risk and Control Self-Assessments (RCSAs) across the organisation, with particular focus on technology, operations, and commercial functions.
  • Maintain the operational risk loss database, producing regular management information for Risk Committees and the Board.
  • Manage the control attestation process and operational risk registers, driving discipline and accountability across first-line owners.
  • Lead second-line oversight of technology risk, covering cyber, infrastructure, data, and change risk, ensuring the risk profile remains within Board-approved tolerances.
  • Oversee the incident response framework, providing independent challenge and assurance on first-line incident identification, escalation, and remediation.
  • Embed a robust technology risk assessment methodology, partnering with Technology and Operations teams to identify and mitigate emerging risks β€” including those arising from AI adoption, algorithmic systems, and crypto/digital asset infrastructure β€” before they crystallise.
  • Oversee Business Continuity Management (BCM) and Disaster Recovery (DR) risk assessments and own Crisis Management frameworks, ensuring IG meets its important business service obligations under the Group's operational resilience frameworks.
  • Partner with business and product teams on the design and launch of new products β€” including crypto, digital assets, and AI-powered features β€” ensuring proportionate risk and control frameworks are established from inception rather than retrofitted.
  • Provide credible second-line challenge and guidance across IG's diverse product range, from large-scale retail trading platforms to emerging and scaling fintech propositions, calibrating control expectations to the maturity, scale, and risk profile of each.
  • Engage proactively with first-line teams on operational risk considerations in product and technology change programmes, acting as a trusted risk partner without obstructing pace of innovation.
  • Maintain awareness of the evolving risk landscape for digital assets, crypto custody, DeFi-adjacent products, and AI-driven decisioning, providing horizon-scanning input to senior leadership and product governance forums.
  • Support the annual ICARA process by providing robust operational risk capital calculations, including scenario-based stress testing and quantitative modelling of tail loss events.
  • Engage proactively with prudential and conduct regulatory developments, drafting IG's responses to FCA consultations and thematic reviews relevant to technology and operational risk.
  • Act as a subject matter expert during regulatory examinations, internal audits, and external reviews, representing the second-line function with confidence and authority.
  • Prepare and present risk reports, emerging risk assessments, and thematic reviews for the Risk Committee, Audit Committee, and Board Risk Committee.
  • Maintain IG's operational risk policy suite, including the Operational Risk Policy, Outsourcing & Third Party Risk Policy, and Business Continuity Policy.
  • Provide second-line oversight and challenge to third-party and outsourcing risk, ensuring material arrangements meet regulatory and internal standards.
  • Build and sustain strong working relationships with Technology, Operations, Compliance, Finance, and Front Office, acting as a trusted and commercially grounded risk partner.

Key Deliverables & Outcomes

  • A mature, well-governed operational and technology risk framework that withstands regulatory scrutiny, meets Board expectations, and protects against material loss.
  • Timely, high-quality MI and risk reporting that enables informed decision-making at committee and Board level.
  • A rigorous RCSA process embedded across business lines, with clear ownership and meaningful outputs.
  • An incident management framework that drives swift escalation, root cause resolution, and sustainable remediation.
  • Robust ICARA-aligned operational risk capital quantification, including credible stress-testing scenarios.
  • A policy suite that is current, proportionate, and actively applied across the organisation.
  • Effective second-line challenge to first-line technology and outsourcing risk management.
  • Proportionate, well-designed risk and control frameworks for new and scaling products, including crypto and AI-enabled propositions.

Director of Technology & Operational Risk employer: IG Group

At IG, we pride ourselves on being an exceptional employer that fosters a dynamic and innovative work culture, particularly for the Director of Technology & Operational Risk role. Our commitment to employee growth is evident through our robust training programmes and opportunities to engage with cutting-edge technologies in the fast-evolving financial services landscape. Located in a vibrant city, we offer a collaborative environment where your expertise will be valued, and you can make a meaningful impact on our operational resilience and risk management strategies.

IG Group

Contact Details:

IG Group Recruitment Team

StudySmarter Expert Advice🀫

We think this is how you could land Director of Technology & Operational Risk

✨Tip Number 1

Network like a pro! Get out there and connect with folks in the fintech and operational risk space. Attend industry events, webinars, or even local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Show off your expertise! When you get the chance to chat with potential employers, make sure to highlight your experience with UK regulations and operational resilience. Use specific examples from your past roles to demonstrate how you've tackled similar challenges.

✨Tip Number 3

Be proactive! If you see a role that fits your skills, don’t just wait for the application window to open. Reach out directly to the hiring manager or team members via LinkedIn. A friendly message expressing your interest can go a long way!

✨Tip Number 4

Keep it real during interviews! Be prepared to discuss not just your technical skills but also how you can support innovation while managing risk. Show them you understand the balance between driving business objectives and maintaining a robust risk framework.

We think you need these skills to ace Director of Technology & Operational Risk

Operational Risk Management
Technology Risk Management
Regulatory Knowledge (MIFIDPRU, FCA)
Risk Control Self-Assessments (RCSAs)
Incident Management
Quantitative Risk Analysis
Cyber Risk Assessment

Some tips for your application 🫑

Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience in operational and technology risk, especially within financial services. We want to see how your background aligns with the specific requirements mentioned in the job description.

Showcase Your Technical Credibility:When writing your application, emphasise your technical knowledge and experience with UK regulations like MIFIDPRU. We’re looking for someone who can engage meaningfully with tech teams, so don’t shy away from showcasing your understanding of complex risk topics.

Communicate Clearly:Your written application should reflect your outstanding communication skills. Use clear and concise language to convey your experiences and achievements, as we value the ability to present complex information with clarity and authority.

Apply Through Our Website:We encourage you to submit your application through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!

How to prepare for a job interview at IG Group

✨Know Your Regulations

Make sure you brush up on UK regulations like MIFIDPRU and FCA expectations. Being able to discuss how these regulations impact operational resilience will show that you're not just familiar with the rules, but that you can apply them in a practical context.

✨Demonstrate Technical Credibility

Prepare to engage with technical teams by understanding key concepts around technology risk, cyber security, and AI systems. Use specific examples from your past experience to illustrate how you've navigated these areas, as this will help you connect with the interviewers on a deeper level.

✨Showcase Your Strategic Influence

Be ready to discuss how you've influenced senior committees and regulators in previous roles. Share stories that highlight your ability to challenge constructively and present complex risk topics clearly, as this will demonstrate your leadership potential.

✨Build Relationships

Emphasise your collaborative approach by sharing examples of how you've built trusted relationships across functions. Highlighting your ability to work effectively in a matrixed organisation will show that you can thrive in their environment and support innovation without hindering progress.