At a Glance
- Tasks: Lead technology and cyber risk management for EMEA, ensuring effective oversight and communication.
- Company: Join State Street, a global leader in financial services with a commitment to innovation.
- Benefits: Enjoy flexible work-life support, inclusive development opportunities, and paid volunteer days.
- Other info: Collaborative culture with vibrant employee networks and excellent career growth opportunities.
- Why this job: Make a real impact in shaping technology risk strategies across the EMEA region.
- Qualifications: 10+ years in tech or finance, strong communication skills, and experience with EMEA regulations.
The predicted salary is between 63000 - 77000 £ per year.
Enterprise Technology Risk Management (ETRM) organization is part of the Enterprise Risk Management organization in State Street Corporation (SSC). ETRM as Second Line of Defence (SLOD) is responsible for thought leadership, oversight, monitoring, and advisement around the discovery and remediation of Technology Risk and Cybersecurity Risk.
We seek a seasoned Technology and Cyber Risk Management Leader with over 10 years of experience in the financial services or technology sectors. The role will report to the EMEA Head of Enterprise Technology Risk Management. The ideal candidate will excel in identifying, managing, and monitoring technology and cyber risks through effective risk management processes, frameworks, and policies for the EMEA region. This role will involve communication with all levels of First Line teams, management, and senior executives in IT, Business Units, Enterprise Risk Management (ERM), and other corporate functions at both EMEA and global levels. Exceptional interpersonal and communication skills are essential, along with the ability to convey technology risks to non-technical audiences. Candidates should demonstrate strong initiative, perform well under pressure, and manage multiple diverse assignments. Prior experience with EMEA regulators (e.g., PRA, FCA and ECB) is highly desired. Experience in Cyber and Information Security, Cloud Risk Management (AWS, Azure), and Technology and Operational Resilience is required. This role can be performed in London or Dublin, in a hybrid model (4 days on site, 1 day remote).
The ETRM team is critical to our organization’s success. Our mission is to establish a world-class Technology and Cyber Risk Management Oversight program that aligns business and technology strategies for effective decision-making. As we undergo significant transformations and risk reduction initiatives, you will provide thought leadership and support to both ETRM peers and EMEA stakeholders (business and corporate areas) of the various jurisdictions.
As the ETRM advisor for the EMEA region, you will be responsible for:
- Technology Risk and Cyber Risk Management: Lead and support functions within the ETRM Service Catalogue, including real-time risk oversight, technology targeted risk assessments, Material Risk Identification, Regulatory Audit and Client Engagements, Risk Reporting. Advise and/or support on technology risk and regulatory matters for the EMEA community. Collaborate with ETRM Risk professionals to align with the broader Enterprise / Operational Risk Management Programs and mandates at global level. At regional level, develop and maintain EMEA relationships with Business and IT stakeholders. Partner with EMEA ERM team to assure the firm’s technology risks and non-compliance are proactively identified, prudently managed (monitored and effectively challenged). Develop effective communication channels for measuring and escalating technology risk exposure. Evaluate IT Security risks arising from control inefficiencies in EMEA Legal Entities (LE). Ensure reporting is properly balanced between perspectives of global ETRM opinion and the local Authorities. Participate in due diligence for new clients, vendors and M&A activities. Monitor emerging technology risks and trends in financial services. Deliver assignments and projects independently and on time. Prepare presentations for Management, Risk committees and Board meetings.
- Governance and Oversight: Oversee governance, policy and framework execution across the EMEA region, ensuring alignment with global frameworks. Support the development of technology risk oversight and embed the ETRM and practices. Oversee communication with EMEA regulators in alignment with the ETRM program. Report with appropriate and timely information for the committees/Boards to effectively discharge their responsibilities.
- Risk Excellence and Education/Awareness: Foster a culture of effective challenge throughout the organization. Provide consulting on technology risk management and ongoing guidance aligned with ETRM strategy. Stay informed on regulatory developments and their impacts on State Street in EMEA. Conduct training on technology risk management.
What we value: Collaborative approach to maximize positive impact and synergy. Exceptional communication and interpersonal skills. Ability to influence and implement decisions. Flexibility to accommodate business hours across EMEA and global teams. Strategic mindset to connect various aspects and initiatives for a holistic risk and control environment. Ability to be a strong voice for review and challenge while continuing to maintain positive relationships with stakeholders. Strong multitasking skills and ability to navigate competing priorities. Effective relationships management across diverse cultural groups.
Primary Skills (Must Have): In-depth knowledge of EMEA Technology Regulatory Requirements (e.g., FCA, PRA, ECB); Experience with regulatory exams and responses is strongly desired. Experience in EEA regulations such as DORA, BCBS 239 and the EU AI Act. Experience in IT audits or risk assessments, Information Technology General Controls (ITGC) and cybersecurity controls. Familiarity with Information Security Frameworks (e.g., NIST, ISO 27000, CSA Cloud Control Matrix) and ITIL practices. Experience in AI adoption and AI risk management. Ability to articulate technical issues to non-IT stakeholders and business perspective to IT stakeholders. Strong communication, negotiation, and presentation skills, with cross-cultural competencies.
Education & Preferred Qualifications: Minimum 10 years of experience in the financial and/or technology industries. Strong project management, critical thinking, problem-solving, and decision-making abilities. Experience in IT risk management, compliance or audit, including control framework design & implementation. Professional IT certifications, e.g., CGEIT, CISA, CISM, CISSP, CCSP, COBIT, CRISC and ITIL would be advantageous. Experience with data analytics and GRC tools, including Tableau and Power BI, is a plus. Undergraduate or advanced degree in a technology discipline.
Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success. We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential.
EMEA Enterprise Technology Risk Management, Vice President in London employer: State Street Corporation
State Street is an exceptional employer that prioritises the growth and well-being of its employees, offering a dynamic work culture where innovation thrives. With a commitment to inclusivity, flexible work-life support, and opportunities for professional development, employees are empowered to reach their full potential while contributing to meaningful projects in the financial sector. Located in a vibrant environment, State Street fosters collaboration and creativity, making it an ideal place for those looking to make a significant impact in the world of finance and technology.
StudySmarter Expert Advice🤫
We think this is how you could land EMEA Enterprise Technology Risk Management, Vice President in London
✨Join Compliance Communities
Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!
✨Attend Industry Conferences
Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.
✨Leverage Your University Career Services
If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.
✨Showcase Your Knowledge Online
Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like State Street Corporation looking for candidates who are engaged and informed.
We think you need these skills to ace EMEA Enterprise Technology Risk Management, Vice President in London
Some tips for your application 🫡
Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!
Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.
Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!
Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at State Street Corporation. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!
How to prepare for a job interview at State Street Corporation
✨Master the Regulations
Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!
✨Show Your Analytical Skills
Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!
✨Know Your Tools
Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!
✨Align with Company Culture
Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with State Street Corporation’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!