At a Glance
- Tasks: Manage IT risk and implement frameworks to protect data and technology.
- Company: Join a forward-thinking tech company that values collaboration and innovation.
- Benefits: Enjoy competitive pay, growth opportunities, and a flexible work environment.
- Why this job: Make a real impact by safeguarding technology and influencing key decisions.
- Qualifications: Strong understanding of IT security and experience in risk management.
- Other info: Dynamic culture with a focus on continuous learning and philanthropy.
The predicted salary is between 36000 - 60000 £ per year.
We are looking for an IT Risk Manager to join our Technology team. You will manage IT risk across the technology estate and turn the Orbis IT Risk Framework into repeatable assessments, controls and governance-ready evidence. This is a hands-on role: you will work with Technology, business and assurance teams to reduce real risk to production services and third parties. You will also help implement and maintain frameworks that protect our data, technology and operational capability, directly supporting the firm’s ability to deliver consistent client value and meet technology and data-related regulatory obligations. You will bridge technical teams and senior leaders, ensuring technology and data risk activity informs decisions and is embedded into how we build, change and run services.
Why Orbis?
- Culture: We are committed to our Core Values. We encourage intellectual curiosity and individualism as well as collaboration across different areas of the business. We seek to hear our people’s voices – whether quiet or loud. Sharing ideas and challenging the status quo are commonplace.
- Autonomy: While guidance and support are provided, team members own their work and projects.
- Growth opportunities: We support our people in continuous learning and development.
- Agile environment: We are committed to providing a work environment that balances the needs of our clients; the needs of our teams; and the personal needs, commitments, and interests of our people.
- Philanthropy: Our people can contribute to society in a unique and personal way, through various philanthropy opportunities and programmes.
What will your responsibilities be?
- Translate strategic direction from senior risk and security leaders into measurable deliverables.
- Chair and lead IT governance forums, ensuring decisions, actions and risks are clearly recorded and followed up.
- Operate the Orbis IT Risk Management Framework and ensure alignment with enterprise risk appetite and regulators.
- Own technology risk assessments, IT risk register and remediation. Work closely with senior management to manage exposures and deliver concise risk reporting.
- Support control testing and periodic assurance. Embed IT risk practices into projects, change and BAU.
- Help implement data protection controls to meet relevant global privacy regulations (e.g. GDPR, UK DPA).
- Maintain data inventories, records of processing and classification standards.
- Map critical business services, dependencies and impact tolerances, ensure RTOs/RPOs remain aligned with business needs.
- Support design, testing and maintenance of BCPs and DR for critical systems and processes.
- Keep IT frameworks, policies, standards and procedures up to date and accessible.
- Monitor applicable regulatory and industry requirements related to IT risk, resilience, and data protection, support updates to internal frameworks and practices.
About you
- Strong technical understanding across key security domains, including security tooling, secure software development, cloud security, infrastructure and network.
- Practical experience in maintaining an IT Risk Register.
- Proficiency in running technology risk assessments, supporting control testing, and ensuring remediation is complete.
- Practical familiarity with FCA, DORA and GDPR and how they apply to technology, third-party risk and reporting.
- Knowledgeable with third-party due diligence processes and supplier risk monitoring.
- Experience in presenting to governance forums and influencing technical and business stakeholders with clear evidence and options.
- Organised and delivery-focused: you manage concurrent assessments, assurance cycles and audit requests to agreed deadlines.
Nice to Have
- Experience with incident response, BCP/DR and resilience testing.
- Prior audit experience working with internal and external auditors and preparing evidence packs.
- Vendor contract and SLA experience.
Instructions for application
To complete your application, please submit your resume, cover letter and transcripts (all post-secondary to this point; unofficial are accepted).
IT Risk Manager in London employer: Orbis Investment Management Limited
Contact Detail:
Orbis Investment Management Limited Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IT Risk Manager in London
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even just grab a coffee with someone who works at Orbis. Building relationships can open doors that a CV just can't.
✨Tip Number 2
Show off your skills! If you’ve got a portfolio or examples of your work, bring them along to interviews. Demonstrating your hands-on experience with IT risk management frameworks can really set you apart from the crowd.
✨Tip Number 3
Prepare for those tricky questions! Research common interview questions for IT Risk Managers and practice your responses. We want to see how you think on your feet, so be ready to discuss real-life scenarios and how you tackled them.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Orbis team!
We think you need these skills to ace IT Risk Manager in London
Some tips for your application 🫡
Tailor Your Resume: Make sure your resume speaks directly to the IT Risk Manager role. Highlight relevant experience and skills that align with the job description, especially around risk management and compliance. We want to see how you can bring value to our team!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to tell us why you're passionate about IT risk management and how your background makes you a perfect fit for our culture at Orbis. Don’t forget to mention specific examples of your past work that relate to the responsibilities listed.
Showcase Your Technical Skills: Since this role requires a strong technical understanding, make sure to include any relevant certifications or tools you’re familiar with. We love seeing candidates who can bridge the gap between technical teams and senior leaders, so don’t hold back on your tech prowess!
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It helps us keep everything organised and ensures your application gets the attention it deserves. Plus, it’s super easy to do!
How to prepare for a job interview at Orbis Investment Management Limited
✨Know Your Risk Frameworks
Familiarise yourself with the Orbis IT Risk Framework and be ready to discuss how you would turn it into repeatable assessments. Show that you understand the importance of governance-ready evidence and how it impacts decision-making.
✨Bridge the Gap
Prepare examples of how you've successfully communicated between technical teams and senior leaders in the past. Highlight your ability to ensure that technology and data risk activities are embedded into service delivery.
✨Stay Current on Regulations
Brush up on relevant regulations like GDPR, FCA, and DORA. Be prepared to discuss how these apply to technology and third-party risk, and share any experiences you have with compliance and reporting.
✨Showcase Your Organisational Skills
Demonstrate your ability to manage multiple assessments and assurance cycles. Bring examples of how you've met deadlines while maintaining quality, and be ready to discuss your approach to prioritising tasks.