Technology, Resilience, Security & Risk Manager
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
Role Overview
• Own, chair and shape the future of the Cyber and Resilience Risk committee (CRC) and sub-CRC- monthly forums. The colleague will uphold the CRC terms of reference and ensure reporting against strategy and risk appetite by bringing to life the information with engaging data packs and presentations.
• Hands-on responsibility for the governance lifecycle of TrinityBridge’s TRS policy and standards, monthly risk reporting and KRIs/KPIs, and Risk and Control Registers.
• Develop and maintain TRS risk appetite statements, MI, KPIs and KRIs in conjunction with the Operational Risk team, to ensure TrinityBridge report with clarity on operation within the agreed tolerance.
• Produce full gap analysis reports on areas of improvement and risk, to support risk and cost reduction and strategy delivery, recommending thorough mitigation plans including justification for options considered.
• Independent review of problem management, incident management and KRIs to provide proposals and recommendations on continuous improvement and optimal performance of the enterprise function.
• Ownership of TRS risk assessment of third and fourth parties through the established third-party management team.
• Monitor emerging regulatory requirements and ensure governance frameworks are updated accordingly.
• Work closely with the TRS leadership team to ensure timely and accurate reporting of programme risks.
• Ensure TRS Governance is adhered to throughout business as usual (BAU) operation and business change, utilising the mature operational processes already in place.
• Act as an interface between business change and TRS leadership where deviations to process and risk acceptances may be necessary.
• Responsible for TrinityBridge’s strong cyber and information security culture, acting as an expert on cyber and information security for the business.
• Independently able to produce comprehensive write ups of current risks and threats as they develop, producing expedient updates as situations change and span different threat vectors.
• Proactively report upwards on emerging cyber and data risks and threats, providing a view through a business lens on potential impacts.
• Operate with respect, diversity and inclusion principles as a key tenet of your role.
• Develop a culture of continuous improvement and appraisal as a foundation for excellent organisational performance, including operating within the firm’s people policies and processes.
• Build and develop relationships with organisation-wide peers.
• Ability to demonstrate an understanding of the regulatory framework relevant to the role, whilst practising effective risk management taking account of outcomes for clients.
• Understand, follow and demonstrate compliance with all relevant internal and external rules, regulations and procedures that apply to the conduct of the business. Follow principles and rules of the Financial Conduct Authority (FCA) and the internal requirements set out in the Compliance Manual, local and Group Compliance and Risk policies.
• A genuine passion for creating engaging, professional risk reporting and presentations. The interview process will ask for an assessment of this skill.
• Experience in working in risk management roles with sole responsibility for risk areas.
• Whilst being hands-on technical is not required, a fundamental understanding of Cyber/Information Security, resilience and technical risk is required.
• Pragmatic and able to work collaboratively to find solutions.
• Excellent writing comprehension and ability, with a drive to improve existing documents and processes.
• Excellent verbal communication skills, operating with empathy and psychological safety.
• Able to clearly articulate how stakeholders comply with requirements/expectations set by regulators, auditors, organisational risk appetite, senior management and the board.
• Experience in gathering, analysing and structuring data using Microsoft and AI tools.
• Experience in the development and production of dashboards and reports, including MI, KPIs and KRIs.
• Ability to work independently within a defined remit, managing schedule and multiple objectives.
• Ability to collaborate effectively with colleagues at all organizational levels.
• Working as a cyber security and technology risk manager at a financial services organization
• Possess a working understanding of industry standard frameworks and concepts such ISO27001, SOC Type I & II, ITIL, COBIT, Agile, NIST, DSIT, CMMI, DORA
• CISM or business analysis certification or qualification
Key Skills for This Role
Full Job Posting
Job description
Own, chair and shape the future of the Cyber and Resilience Risk committee (CRC) and sub-CRC- monthly forums. The colleague will uphold the CRC terms of reference and ensure reporting against strategy and risk appetite by bringing to life the information with engaging data packs and presentations.
Hands-on responsibility for the governance lifecycle of TrinityBridge’s TRS policy and standards, monthly risk reporting and KRIs/KPIs, and Risk and Control Registers.
Develop and maintain TRS risk appetite statements, MI, KPIs and KRIs in conjunction with the Operational Risk team, to ensure TrinityBridge report with clarity on operation within the agreed tolerance.
Produce full gap analysis reports on areas of improvement and risk, to support risk and cost reduction and strategy delivery, recommending thorough mitigation plans including justification for options considered.
Independent review of problem management, incident management and KRIs to provide proposals and recommendations on continuous improvement and optimal performance of the enterprise function.
Ownership of TRS risk assessment of third and fourth parties through the established third-party management team.
Monitor emerging regulatory requirements and ensure governance frameworks are updated accordingly.
Work closely with the TRS leadership team to ensure timely and accurate reporting of programme risks.
Ensure TRS Governance is adhered to throughout business as usual (BAU) operation and business change, utilising the mature operational processes already in place.
Act as an interface between business change and TRS leadership where deviations to process and risk acceptances may be necessary.
Responsible for TrinityBridge’s strong cyber and information security culture, acting as an expert on cyber and information security for the business.
Independently able to produce comprehensive write ups of current risks and threats as they develop, producing expedient updates as situations change and span different threat vectors.
Proactively report upwards on emerging cyber and data risks and threats, providing a view through a business lens on potential impacts.
Operate with respect, diversity and inclusion principles as a key tenet of your role.
Develop a culture of continuous improvement and appraisal as a foundation for excellent organisational performance, including operating within the firm’s people policies and processes.
Build and develop relationships with organisation-wide peers.
Ability to demonstrate an understanding of the regulatory framework relevant to the role, whilst practising effective risk management taking account of outcomes for clients.
Understand, follow and demonstrate compliance with all relevant internal and external rules, regulations and procedures that apply to the conduct of the business. Follow principles and rules of the Financial Conduct Authority (FCA) and the internal requirements set out in the Compliance Manual, local and Group Compliance and Risk policies.
A genuine passion for creating engaging, professional risk reporting and presentations. The interview process will ask for an assessment of this skill.
Experience in working in risk management roles with sole responsibility for risk areas.
Whilst being hands-on technical is not required, a fundamental understanding of Cyber/Information Security, resilience and technical risk is required.
Pragmatic and able to work collaboratively to find solutions.
Excellent writing comprehension and ability, with a drive to improve existing documents and processes.
Excellent verbal communication skills, operating with empathy and psychological safety.
Able to clearly articulate how stakeholders comply with requirements/expectations set by regulators, auditors, organisational risk appetite, senior management and the board.
Experience in gathering, analysing and structuring data using Microsoft and AI tools.
Experience in the development and production of dashboards and reports, including MI, KPIs and KRIs.
Ability to work independently within a defined remit, managing schedule and multiple objectives.
Ability to collaborate effectively with colleagues at all organizational levels.
Working as a cyber security and technology risk manager at a financial services organization
Possess a working understanding of industry standard frameworks and concepts such ISO27001, SOC Type I & II, ITIL, COBIT, Agile, NIST, DSIT, CMMI, DORA
CISM or business analysis certification or qualification
About TrinityBridge
The way to financial clarity.
Visit company websiteJobs and hiring trendsApply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at TrinityBridge
Client Data Administrator (12 month FTC)
Northwich, GBR
Senior Digital Product Manager
London, GBR
Service Desk Technician
Birmingham, GBR
Trade Settlements Analyst (6 month FTC)
London, GBR
Business Assurance Analyst
, GBR
Receptionist
London, GBR
Transfers Officer (6 month FTC)
Northwich, GBR
Service Desk Technician
Northwich, GBR
Client Data Administrator (12 month FTC)
Northwich, GBR