It Risk And Governance Manager
CurrentCentral point of contact for technology risk and governance issues within Security & Resilience overseeing audit, compliance and control activities including supporting issue resolution across the bank's technology landscape. In addition, support co-ordination of assurance stakeholders including risk, compliance, internal and external audit, working closely with control and risk owners around the group.• Consult and provide expertise on all facets of technology risk and controls within information technology security and the bank as a whole.• Led the review of the group technology risk management framework and spearheaded the development of new robotic process automation controls and AI controls guidance. • Coordinated control testing activities in line with compliance requirements and annual attestations, reviewing SOC 1 attestation reports and other 3rd party reviews. • Planning and contributing to the Bank technology risk & control self-assessment (RCSA) process and collation of bank technology KRIs for key governance forums. Designing and developing data visualisation dashboards for this using Tableau and Alteryx.• Periodic management reporting including managing relationships with key stakeholders to influence and support the delivery of appropriate security services. • Collaborate with senior leadership to identify key business challenges and opportunities, providing data-driven recommendations and insights. • Facilitate internal and external audit activities, manage risk acceptances and policy exception processes.