Our client is looking for an experienced IT Risk & Resilience Lead to drive enterprise-wide initiatives in IT governance, risk, compliance, and operational resilience. In this strategic role, you will help shape how our client anticipates, responds to, and recovers from IT-related risks, while ensuring ongoing alignment with global regulatory requirements.
This is a high-impact role working across business units, third parties, and regulatory environments, ideal for someone with strong risk expertise and a deep understanding of how technology, compliance, and resilience intersect in regulated environments.
What You’ll Be Doing
- IT Governance & Compliance: Advise governance forums, monitor compliance across internal policies and regulatory standards (e.g., DORA, GDPR, FCA, BaFin), and ensure our digital resilience strategy is fully embedded across the business.
- IT Risk Management: Own the IT Risk Management Framework, run independent control tests, assess vulnerabilities, lead risk assessments, and guide remediation across critical systems and functions.
- Operational Resilience & Incident Oversight: Coordinate post-incident analysis and response, ensure adherence to incident protocols, and enable robust service continuity in the face of technology disruptions.
- Stress Testing & Critical Function Assurance: Lead the annual IT stress testing programme and ensure continuous review of critical business functions from a technology perspective.
- Third-Party & Supply Chain Risk: Evaluate and oversee risk exposure from third-party providers and technology supply chains, ensuring controls are in place and regulatory alignment is maintained.
- Awareness & Culture: Develop and lead IT risk training initiatives that build resilience awareness across staff and partners, reinforcing policy adherence.
- Innovation & Emerging Risk (AI Focus): Support development of the firm’s approach to AI governance, implementation, and risk mitigation as new technologies are adopted.
What You’ll Bring
- Extensive experience in IT operational risk within financial services or a similarly regulated environment.
- Strong understanding of IT governance, control frameworks, digital resilience, and compliance (e.g. DORA, GDPR, FCA Operational Resilience).
- Proven ability to conduct in-depth risk assessments, scenario testing, and vulnerability analysis.
- Experience working across departments and engaging with senior leadership on risk strategy.
- Excellent communication and stakeholder management skills.
- Strong analytical mindset with a detail-oriented approach.
- Proficiency with Microsoft Office; familiarity with GRC tools is advantageous.
- Knowledge of enterprise and operational risk management frameworks.
ICT and AI Risk Management Officer employer: McGregor Boyall
Contact Detail:
McGregor Boyall Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land ICT and AI Risk Management Officer
✨Tip Number 1
Network like a pro! Reach out to folks in your industry on LinkedIn or at events. A friendly chat can open doors that a CV just can't.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Tailor your answers to show how your experience aligns with their needs, especially in IT risk and compliance.
✨Tip Number 3
Practice makes perfect! Do mock interviews with friends or use online platforms. The more comfortable you are, the better you'll perform when it counts.
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets noticed and shows you're serious about joining the team.
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the job description. Highlight your experience in IT risk management and compliance, and don’t forget to mention any relevant frameworks you’ve worked with. We want to see how your skills align with what we’re looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re the perfect fit for the ICT and AI Risk Management Officer role. Share specific examples of your past achievements in risk management and how they relate to our needs at StudySmarter.
Showcase Your Analytical Skills: Since this role requires a strong analytical mindset, make sure to include examples that demonstrate your ability to conduct risk assessments and scenario testing. We love seeing how you tackle challenges and come up with solutions!
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates from our team!
How to prepare for a job interview at McGregor Boyall
✨Know Your Risk Frameworks
Make sure you’re well-versed in IT risk management frameworks, especially those relevant to the financial services sector. Brush up on DORA, GDPR, and FCA regulations, as these will likely come up during your interview.
✨Showcase Your Analytical Skills
Prepare to discuss specific examples where you've conducted risk assessments or vulnerability analyses. Use the STAR method (Situation, Task, Action, Result) to structure your responses and highlight your analytical mindset.
✨Engage with Stakeholders
Demonstrate your experience in engaging with senior leadership and cross-departmental teams. Be ready to share how you’ve communicated risk strategies effectively and built relationships across various business units.
✨Stay Current on Emerging Risks
With a focus on AI governance, it’s crucial to show that you’re aware of emerging risks associated with new technologies. Research recent trends in AI and be prepared to discuss how they might impact IT risk management.