At a Glance
- Tasks: Support IT and cybersecurity risk strategies, manage incidents, and deliver risk updates.
- Company: Join a leading Financial Services company in Investment Management based in Edinburgh/Glasgow.
- Benefits: Enjoy a competitive salary of £60,000-£70,000 plus an attractive benefits package.
- Why this job: Be part of a dynamic team shaping risk management in a fast-paced industry.
- Qualifications: 5+ years in IT/security risk, relevant degree, and certifications like CRISC or CISSP required.
- Other info: Opportunity to advocate for risk awareness and collaborate across teams.
The predicted salary is between 60000 - 70000 £ per year.
Job Description
Rev & Regs are now recruiting for a new Technology Risk Specialist position, on behalf of a leading Financial Services company (Investment Management) in Edinburgh / Glasgow.
This role will support the Head of Operational Risk with the development, implementation and embedding of the IT and security Risk Framework.
Key Responsibilities:
- Support the execution of IT and cybersecurity risk strategies, procedures, and controls aimed at identifying, evaluating, managing, and reporting on risk exposure.
- Collaborate on building and refining the enterprise risk management framework, including defining risk appetite in coordination with first and second-line teams.
- Assist in handling IT incidents, conducting root cause analysis, and capturing key takeaways to minimize future risk.
- Provide independent review and constructive challenge on IT and security risk matters in collaboration with business stakeholders. This includes activities like risk and control self-assessments (RCSAs), focused risk evaluations, issue tracking, and incident reviews.
- Help monitor and analyze both current and emerging technology and security-related risks through operational risk scenario testing and other tools.
- Prepare and deliver clear, concise, and timely risk updates and reports for internal governance groups and committees.
- Contribute input for calculating annual operational risk capital requirements.
- Advocate for a strong risk awareness mindset throughout the organization while cultivating productive working relationships across teams.
- Participate in ad-hoc investigations and assessments, including reviews of relevant external risk events.
- Deliver user support and training for the enterprise risk management (ERM) software platform.
- Apply appropriate methodologies and maintain up-to-date documentation to ensure the Operational Risk team’s responsibilities are met efficiently and effectively.
Experience required:
- 5+ years’ experience within an IT or security risk role.
- Strong IT literacy and proficient in using Microsoft applications
- Financial services experience preferred.
- CRISC, CISSP, CISM or similar
- Relevant tertiary education i.e. BCom/BSc Degree or similar.
- Demonstrates knowledge of operational and other non-financial risk management.
- Keeps up to date with developments in the industry, including emerging risks and regulation.
- Demonstrable effective organisational skills and ability to work well under pressure, with commitment to meet deadlines.
- Good communicator in delivery of management information and reports.
- Effective collaboration skills sharing pertinent information and ideas.
Location: Edinburgh / Glasgow
Salary: £60,000-£70,000 + benefits package
Senior Technology Risk Specialist employer: REV & REGS LIMITED
Contact Detail:
REV & REGS LIMITED Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Technology Risk Specialist
✨Tip Number 1
Network with professionals in the financial services sector, especially those working in IT and security risk roles. Attend industry events or webinars to connect with potential colleagues and learn more about the company culture.
✨Tip Number 2
Stay updated on the latest trends and regulations in technology risk management. Follow relevant blogs, podcasts, and news sources to demonstrate your knowledge during interviews and discussions.
✨Tip Number 3
Prepare to discuss specific examples of how you've handled IT incidents or risk assessments in your previous roles. Use the STAR method (Situation, Task, Action, Result) to structure your responses effectively.
✨Tip Number 4
Familiarise yourself with the enterprise risk management software platforms commonly used in the industry. Being able to speak confidently about these tools can set you apart from other candidates.
We think you need these skills to ace Senior Technology Risk Specialist
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in IT and security risk roles. Emphasise your 5+ years of experience and any specific projects or achievements that align with the responsibilities outlined in the job description.
Craft a Compelling Cover Letter: Write a cover letter that directly addresses the key responsibilities of the role. Discuss your experience with risk management frameworks, incident handling, and collaboration with stakeholders to demonstrate your fit for the position.
Showcase Relevant Qualifications: Mention any certifications such as CRISC, CISSP, or CISM prominently in your application. If you have a relevant degree, ensure it is clearly stated, as this will strengthen your application.
Highlight Communication Skills: Since good communication is essential for this role, provide examples of how you've effectively delivered management information and reports in previous positions. This can set you apart from other candidates.
How to prepare for a job interview at REV & REGS LIMITED
✨Understand the Risk Framework
Make sure you have a solid grasp of IT and security risk frameworks. Be prepared to discuss how you've previously contributed to developing or implementing such frameworks in your past roles.
✨Showcase Your Analytical Skills
Be ready to provide examples of how you've handled IT incidents and conducted root cause analyses. Highlight your ability to identify risks and suggest improvements based on your findings.
✨Communicate Clearly
Since the role involves preparing reports and updates for governance groups, practice articulating complex information clearly and concisely. You might be asked to explain technical concepts to non-technical stakeholders.
✨Demonstrate Collaboration
This position requires working closely with various teams. Prepare examples that showcase your collaboration skills and how you've successfully built relationships across departments to enhance risk management.