Posted on: 27/05/2026
Role Summary :
We are seeking a Technology Risk Lead to drive identification, assessment, and mitigation of technology-related risks across the organization. This role will partner closely with IT, Product, Security, and Business teams to ensure robust risk management practices are embedded into systems, processes, and decision-making.
Key Responsibilities :
1. Technology Risk Management :
- Develop and implement the enterprise technology risk management framework
- Identify, assess, and monitor IT risks across applications, infrastructure, and processes
- Maintain risk registers, heatmaps, and risk dashboards
2. Risk Assessment & Controls :
- Conduct risk assessments for new systems, products, and change initiatives
- Define and validate control frameworks (preventive, detective, corrective controls)
- Lead risk reviews for BRD/PRD, system designs, and architecture decisions
3. Governance & Compliance :
- Ensure alignment with regulatory, compliance, and internal audit requirements
- Support audits (internal/external) and manage remediation plans
- Drive adherence to frameworks such as ISO 27001, NIST, COBIT, or similar
4. Incident & Issue Management :
- Analyze technology incidents for root cause and systemic risk implications
- Track and report risk events, near misses, and control failures
- Ensure timely closure of risk issues and action items
5. Stakeholder Management :
- Partner with IT, Engineering, Product, and Business teams to embed risk practices
- Present risk insights and recommendations to senior leadership
- Act as a trusted advisor on risk-related decision making
6. Continuous Improvement :
- Drive automation and tooling for risk assessment and reporting
- Introduce proactive risk identification approaches (e.g., FMEA, scenario analysis)
- Promote a strong risk-aware culture across teams
Required Qualifications :
- Bachelors or Masters degree in Technology, Risk Management, or related field
- 8 to 12+ years of experience in Technology Risk, IT Audit, Information Security, or similar
- Strong understanding of IT systems, SDLC, and enterprise architecture
- Experience with risk frameworks (ISO, NIST, COBIT, FAIR, etc.)
- Proven experience in risk assessments, control design, and governance
Preferred Qualifications :
- Certifications such as CISA, CRISC, CISSP, or equivalent
- Experience in regulated industries (Banking, Fintech, Insurance, etc.)
- Exposure to cloud environments (AWS, Azure, GCP)
- Familiarity with DevOps, Agile, and modern engineering practices
Key Skills :
- Risk assessment & analytical thinking
- Strong stakeholder and communication skills
- Problem-solving and decision-making ability
- Ability to translate technical risks into business impact
- Leadership and influencing skills
Success Metrics :
- Reduction in critical technology risks and incidents
- Timely closure of audit and risk findings
- Improved risk visibility and reporting
- Strong adoption of risk frameworks across teams
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1639560