At a Glance
- Tasks: Oversee technology and operations risk, ensuring robust control and compliance.
- Company: Join Santander UK, a leader in financial services with a focus on innovation.
- Benefits: Competitive salary, 30 days holiday, and opportunities for professional growth.
- Other info: Collaborative culture with excellent career advancement opportunities.
- Why this job: Make a real impact by enhancing risk management in a dynamic environment.
- Qualifications: Experience in technology or operational risk and strong analytical skills required.
The predicted salary is between 64000 - 96000 £ per year.
Santander UK is looking for a Technology & Operations Risk Manager based out of Unity Place, Milton Keynes or Glasgow.
Responsibilities
- Provide independent oversight and challenge of Technology & Operations risk, ensuring alignment with Operational Risk Management frameworks.
- Review and challenge Risk & Control Self-Assessments (RCSA), ensuring completeness, accuracy, and robust control design.
- Ensure quality and integrity of Risk & Control Profiles (RCPs), including risk identification, control mapping, and residual risk assessment.
- Oversee risk data within tooling (e.g., Heracles), ensuring alignment across risks, issues, events, and risk appetite statements.
- Monitor adherence to Risk Appetite Statements (RAS), support breach management, root cause analysis, and remediation tracking.
- Challenge control effectiveness, perform thematic reviews and testing outcomes to identify systemic weaknesses.
- Produce and analyse risk MI and reporting, identifying emerging risks, trends and control gaps.
- Drive continuous improvement of governance artefacts, processes and risk engagement models across T&O.
Qualifications
Professional Experience
- Experience in technology risk, cyber risk or operational risk within financial services (Required).
- Experience providing independent oversight, challenge or audit of control environments (2LoD or equivalent) (Required).
- Experience working with RCSA, risk frameworks and control assessment methodologies (Required).
- Experience producing risk reporting and MI for governance forums (Required).
Education
- Undergraduate degree in Cybersecurity, Information Technology, Risk or related field (Preferred).
- Professional certifications such as CISA, CISSP, CISM or equivalent (Preferred).
Languages
- English (Required).
Hard Skills
- Strong knowledge of cybersecurity risk, IT risk and control frameworks (e.g., NIST, ITIL) (Required).
- Experience with risk tooling and data management (e.g., Heracles or similar platforms) (Required).
- Understanding of risk appetite frameworks, RCSA processes and control testing methodologies (Required).
- Knowledge of technology architecture, cyber threats and vulnerability management concepts (Required).
- Experience analysing risk data, events and trends to identify control weaknesses (Required).
- Familiarity with regulatory expectations (FCA / PRA) and operational risk frameworks (Required).
Soft Skills
- Strong analytical thinking and problem-solving capability (Required).
- Ability to challenge effectively and influence stakeholders across multiple levels (Required).
- Strong communication skills, translating technical risk into business impact (Required).
- High attention to detail and commitment to data accuracy and governance (Required).
- Ability to work across teams and drive collaboration in complex environments (Required).
Benefits
Salary Range: £64,000.00 - £96,000.00 per annum (depending on experience). 30 days’ holiday plus
Technology & Operations Risk Manager | S3 | Chief Information & Resilience Office | Multiple Lo[...] employer: Santander UK
Contact Detail:
Santander UK Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Technology & Operations Risk Manager | S3 | Chief Information & Resilience Office | Multiple Lo[...]
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its culture. Understand their risk management frameworks and be ready to discuss how your experience aligns with their needs. Show them you’re not just another candidate!
✨Tip Number 3
Practice your responses to common interview questions, especially those related to technology and operational risk. Use the STAR method (Situation, Task, Action, Result) to structure your answers and highlight your achievements.
✨Tip Number 4
Don’t forget to follow up after interviews! A quick thank-you email can keep you top of mind and show your enthusiasm for the role. Plus, it’s a great chance to reiterate why you’re the perfect fit for their team.
We think you need these skills to ace Technology & Operations Risk Manager | S3 | Chief Information & Resilience Office | Multiple Lo[...]
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Technology & Operations Risk Manager. Highlight your experience in technology risk and operational risk, and don’t forget to mention any relevant certifications like CISA or CISSP.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re the perfect fit for this role. Mention specific experiences that align with the responsibilities listed in the job description, especially around RCSA and risk reporting.
Showcase Your Analytical Skills: Since this role requires strong analytical thinking, make sure to include examples of how you've used these skills in past positions. Whether it's identifying control weaknesses or producing risk MI, let us see your problem-solving prowess!
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. It’s the best way for us to receive your application and ensure it gets the attention it deserves!
How to prepare for a job interview at Santander UK
✨Know Your Risk Frameworks
Make sure you brush up on your knowledge of operational risk management frameworks, especially those relevant to technology and cyber risk. Be prepared to discuss how you've applied these frameworks in your previous roles, as this will show your understanding and experience in the field.
✨Prepare for Scenario Questions
Expect to face scenario-based questions that assess your ability to challenge control effectiveness and perform root cause analysis. Think of specific examples from your past experiences where you identified risks or weaknesses and how you addressed them. This will demonstrate your analytical thinking and problem-solving skills.
✨Familiarise Yourself with Risk Tools
Since the role involves overseeing risk data within tooling like Heracles, it’s crucial to familiarise yourself with such platforms. If you have experience with similar tools, be ready to discuss how you used them to manage risk data effectively and ensure alignment across various risk profiles.
✨Communicate Clearly and Confidently
Strong communication skills are key for this position, especially when translating technical risk into business impact. Practice articulating complex concepts in a straightforward manner, as this will help you connect with interviewers and showcase your ability to influence stakeholders at all levels.