Citco GSGS

Bank IT Risk Manager


PayCompetitive
LocationAmsterdam/North Holland
Employment typeFull-Time

This job is now closed

  • Job Description

      Req#: 2611

      As part of Group Risk Management – Technology Team, the Bank IT Risk Manager executes the organization’s comprehensive IT Risk management (ITRM) program and activities with a special focus on Citco Banking Services (CBS). This role will serve as a subject matter expert on IT and IT Security risk-related activities to the Bank division and related legal entities. This role also includes driving the identification, assessment, mitigation, monitoring and reporting of Technology Risks for the legal entities in the CBS division and will ensure legal-entity view of risks is maintained and progressed with the relevant stakeholders.

      Knowledge of financial services with proven analytical capability and related experience will be advantageous to interested candidates. Additionally, candidates should be able to demonstrate a proven record of accomplishment and an ability to influence and develop relationships with senior business leaders.

      Successful candidates will require an ability to effect change by successfully embedding the risk framework and improving risk maturity and awareness within the organization. Additionally, the role requires a strong 'check and challenge' mentality, utilizing the risk toolkit aligned with product knowledge to implement the desired improvements in a controlled manner. In addition, the candidate shall serve as an advisor/consultant to the CBS business lines, engaging with a diverse set of stakeholders to influence and drive effective technology risk mitigating outcomes.

      This role will directly report into Group Risk Management (GRM)– Technology, administratively and functionally, and will also have a dotted reporting line into GRM – CBS to meet multiple bank division legal entity regulatory requirements.

      Qualifications

      • Ideally 6+ years’ experience in Technology Risk Management or Controls-based role in financial services, currently operating at supervisory / management level;
      • Strong experience on Cybersecurity, Technology and Enterprise Risk Management
      • Good knowledge on Bank technology-related regulation (e.g., SOC1, BSI ISO 27001, DORA, EU regulations / those issued by DNB, CBI, CSSF, OSFI, PRA, CIMA)
      • Highly collaborative, innovative, and effective communication skills;
      • Strong analytical ability with high attention to detail, ideally with experience of data analytics tools;
      • Project management skills with proven ability to multi-task and meet target deadlines;
      • Hold a related Bachelor’s degree or comparable education relevant for risk management;
      • Strong interpersonal and communication skills;
      • Comprehensive knowledge of Excel, Word and PowerPoint essential;
      • Prepared to undertake domestic and international travel; and
      • Proven technical / report writing skills advantageous.

      Responsibilities

      Bank Technology Risk Management

      • Support the organization in implementing an effective and efficient IT risk management and control framework in a collaborative manner, with a focus on legal entities in CBS
      • Contribute to the development of Bank Technology Risk Management policies and procedures
      • Support the 1st line (Bank IT) in order to ensure that the Group Risk Management Framework, policies and procedures are adhered to by legal entities in the CBS division
      • Supports the 1st line (Bank IT) and coordinating the risk response with key partners including Group Risk Management, Group Internal Audit, Group Compliance and other Group functions where required
      • Translate IT Risk and IT Security activities that are delivered at a group wide level into CBS legal entity level
      • Be the subject matter expert for IT and IT Security risk-related activities for Bank
      • Foster and promote a risk and controls awareness culture

      Risk Identification, Assessment and Analysis

      • Coordinate all relevant Bank IT Risk activities (e.g., assessment, control testing, monitoring, reporting and remediation activities)
      • Review technology risk from a holistic perspective in line with Citco’s ERM Framework. Create transparency of risk exposure and aid/support in defining and monitoring risk-mitigating solutions.
      • Perform analysis of Bank IT key risk measures (assess need, approach, areas of opportunity)
      • Check and challenge of all Bank IT risk assessments. Ensure all relevant IT/IT Security risks have been identified and appropriately assessed and are mitigated appropriately
      • Assists in the design, monitoring and oversight of, as well as continually review and mature the Key Performance Indicators and Key Risk Indicators (‘KPI’ / ‘KRI’) being monitored by CBS entities.
      • Participates in the review, documentation, analysis and oversight of Risk Events, Action Plans. Monitor completion and validate effectiveness of remediation plans for Bank IT-related action plans
      • Partner with cross-functional teams (Bank Operational Control Management (OCM), Bank GRM, Bank IT) to ensure remediation of identified observations/findings within noted timeframes

      Risk Reporting

      • Collates and validates risk event data, providing analysis of same and using information to complete both internal/external reporting requirements within required timelines. Provide inputs on relevant Bank risk reports
      • Provide Bank Senior Management with detailed analysis of all IT assessments (IT Applications, Themes, Annual Assessments) with inputs relevant to Bank
      • Participate in Bank Risk Committees for IT-related risk activities (that are relevant to Banking Services)
      • Provide support in preparation of Bank Risk and Compliance Committee/Bank IT Risk Committee materials and annual planning and strategy process to include IT-related risk activities

      Risk Consulting

      • Serve as Risk SME to 1st line for IT/IT security risks assessments to explain / relate their relevance to Bank legal entities
      • Provide opinion on subjects like deployment of digital infrastructures and automated business processes and controls to reduce risk exposure in technology operations and ensure robust change management.
      • Provide inputs on the Bank’s perspective for Technology-related deep dive assessments, if needed, such as Internal or External Fraud risk assessments
      • Provide controls and process improvements – for Bank’s processes: identify process and procedural gaps / improvement opportunities, propose innovative and creative solutions, and execute approved strategies to realize efficiencies within realm of responsibility
      • Support projects within Risk Management and the business as Technology Risk SME / Risk Manager in relevant strategic and regulatory projects

      Regulatory Compliance

      • Be able to address all IT-related regulatory requirements / questions such as IT Risk Cyber Questionnaires from DNB, Central Bank of Ireland, OSFI etc.
      • Partner with CTM OCM and Bank OCM in the design and implementation of Bank IT risk analysis and reporting to ensure adherence to all internal, external and regulatory requirements
      • Stay abreast of and advise on technology-related laws and regulatory requirements
  • About the company

      Citco Group of Companies provides a broad range of financial services for hedge funds, administration, private equity, real estate and more...