CrawlJobs Logo

Technology Risk and Control Analyst

United Kingdom, London · Job Posted June 30, 2026
Apply Position
Job Link Share

Job Responsibility

  • Supporting the Retail 2LoD IT & IS Risk team in embedding technology policies, standards, and controls consistently across the Group, ensuring effective risk mitigation through accurate, timely metrics and reporting
  • Delivering data-driven deep dives and targeted assurance reviews to assess the design and effectiveness of key technology controls, in collaboration with 1LoD and 1.5LoD teams
  • Providing subject matter expertise on technology risk governance, framework application, and policy interpretation, while promoting a strong culture of security and risk awareness
  • Analysing risk and control data from systems such as OneSumX, ServiceNow, and Prevalent to generate actionable insights and monitor risk exposure against defined tolerances
  • Supporting assurance activities for high-risk technology change programmes, ensuring key risks are identified, understood, and effectively managed throughout delivery
  • Assessing technology-related risk events and control weaknesses, identifying root causes and evaluating remediation actions to drive continuous improvement
  • Producing high-quality risk reporting by collating and synthesising IT and Information Security data for governance forums and committees
  • Collaborating with 1LoD and 1.5LoD stakeholders to gather, validate, and refine inputs, ensuring accurate and impactful risk reporting and informed decision-making

Requirements

  • Degree-level education or equivalent relevant professional experience is desirable
  • Professional certifications in technology risk or information security (e.g., CRISC, CISA, CISSP) are advantageous but not essential
  • Strong understanding of technology risk management and control practices
  • Familiarity with recognised technology and security control frameworks (e.g., ISO 27001, COBIT, NIST) is beneficial
  • Experience using data analysis and analytics to produce meaningful insights and reporting
  • Practical experience in risk management across first, second, or third line of defence functions
  • Solid understanding of IT information risk principles, including confidentiality, integrity, availability, and authenticity
  • Demonstrated ability to take ownership of deliverables, collaborate effectively, and influence stakeholders through strong communication and presentation skills

What we offer

  • The opportunity to participate in our annual, performance -related bonus plan and valuable share schemes
  • Generous pension contribution
  • Life assurance
  • Healthcare Plan (permanent employees only)
  • At least 25 days holiday, plus public holidays, 26 days after 2 years’ service. There’s also the option to buy and sell holiday
  • Competitive family leave
  • Participate in our electric car scheme, which offers employees the option to hire a brand-new electric car through tax efficient salary sacrifice (permanent employees only)
  • There are many discounts we offer – both for our own products and at a range of high street stores and online

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Technology Risk and Control Analyst

8 matching positions

Markets Data Analytics Risk and Control Lead Analyst

This role is part of the Markets Data Risk Execution team, focusing on improving...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years in Data Analytics within Banking (Markets)
  • Strong grasp of financial products, operational intricacies, and various Markets asset classes (Fixed Income, Equities, Derivatives, FX)
  • Comprehensive understanding of data's role in business decision-making
  • Knowledge of typical data quality issues at process touchpoints in complex technology environments
  • Strong data mining skills with advanced SQL
  • Advanced Tableau for data analysis and visualization
  • Advanced Python/Jupyter for data analysis
  • Proficiency with Excel and PowerPoint
  • Ability to manage tasks in issue management tools (e.g., JIRA, DCRM)
  • Experience in data governance or data quality issue management (IM) using glossary, lineage, and DQ tools
Job Responsibility
Job Responsibility
  • Manage data quality (DQ) issue management processes and support DQ governance in various forums
  • Engage in DQ issue triage, prioritize business needs, and provide proactive guidance to partners
  • Implement processes for effective internal data quality controls, monitor DQ reports, metrics, and drive continuous improvement to reduce inherent risks
  • Implement data quality reporting by defining and implementing business, data, and system-related control and issue remediation frameworks
  • Work closely with business partners on findings, make recommendations, and coordinate with stakeholders to drive change and issue resolution
  • Understand and ensure compliance with relevant policies (e.g., Citi Data Governance Policy), identify new requirements applicable to markets, and remediate gaps
  • Appropriately assess risk in business decisions, ensure compliance, and escalate/manage control issues transparently
  • Act as a Subject Matter Expert (SME) to senior stakeholders and operate with a limited level of direct supervision
  • Fulltime
Read More
Arrow Right

Senior Technology Risk Analyst

The role will effectively manage and oversee compliance across the IT and Data p...
Location
Location
United Kingdom , Birmingham
Salary
Salary:
Not provided
socialvalueportal.com Logo
Social Value Portal Ltd
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Extensive experience in governance roles, such as risk and controls, audit or compliance
  • Extensive experience in technology roles with excellent analytical and problem-solving abilities
  • Strong stakeholder engagement skills across all organisational levels
  • Extensive experience (10+ years) in technology compliance, risk management, controls, and governance within a regulated environment
  • Experience within a financial industry desired
  • BA/BS degree, and/or relevant industry experience
  • Experience in Technology governance, risk, and compliance
  • Strong stakeholder management at all levels
  • Providing guidance on Technology governance, risk, and compliance matters
  • Ability to identify and evaluate Technology risks and controls and provide practical and effective recommendations
Job Responsibility
Job Responsibility
  • Manage all first line risk and controls activities within the IT and Data functions to maintain consistency, support a strong risk culture, and ensure alignment with organisational risk framework & appetite and governance expectations
  • Oversee risk identification, assessments, acceptances, and mitigation strategies within technology functions, ensuring appropriate controls are in place
  • Effective management of all risks, controls and incidents activities that fall under the IT and Data remit, liaising and ensuring alignment and collaboration with Group Risk management in maintaining and communicating up to date risk information
  • Partner with relevant teams and SME's to co-manage the existing controls to include alignment on priorities and performance expectations
  • Manage controls annual assessment and improvement plan for controls
  • Manage all IT and Data actions related to risk, assurance, controls
  • Enhance and manage the IT risk management process and IT/Data risk registers, and where applicable, alignment with functional and group risk management frameworks
  • Develop, implement, and monitor KPIs and KRIs for technology controls and risk exposure, supporting reporting for governance forums and senior management
  • Where risks fall outside of appetite/tolerance, work with relevant stakeholders in developing and tracking a mitigation plan within reasonable timelines
  • Support the identification of issues, issue management and remediation and provide reporting on risk/controls/KRIs to the relevant stakeholders
  • Fulltime
Read More
Arrow Right

Security Control Analyst - Risk & Controls Specialist

FinXL by Randstad Digital focuses on developing client's Networking, Digital and...
Location
Location
Australia , North Sydney
Salary
Salary:
Not provided
finxl.com.au Logo
FinXL
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience translating NIST 800-53 controls into business-friendly language and practical control requirements
  • Experience defining control requirements, control parameters and implementation guidance
  • Policy, standards, and control documentation writing experience
  • Experience running stakeholder workshops, gathering requirements and working directly with control owners
  • Control assurance, controls testing, evidence collection, and attestation experience
  • Experience in Group Risk, Operational Risk, Technology Risk, Controls Assurance or Compliance
  • Experience & understanding of how security controls operate in practice
  • ServiceNow experience, particularly CAM
Read More
Arrow Right

Technology Risk Analyst

The role will effectively support management and oversight of compliance across ...
Location
Location
United Kingdom , Birmingham
Salary
Salary:
Not provided
socialvalueportal.com Logo
Social Value Portal Ltd
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Extensive experience in governance roles, such as risk and controls, audit or compliance
  • Extensive experience in technology roles with excellent analytical and problem-solving abilities
  • Strong stakeholder engagement skills across all organisational levels
  • Extensive experience in technology compliance, risk management, controls, and governance within a regulated environment
  • Experience within a financial industry desired
  • BA/BS degree, and/or relevant industry experience
  • Experience in Technology governance, risk, and compliance
  • Strong stakeholder management at all levels
  • Providing guidance on Technology governance, risk, and compliance matters
  • Ability to identify and evaluate Technology risks and controls and provide practical and effective recommendations
Job Responsibility
Job Responsibility
  • Support oversight risk identification, assessments, acceptances, and mitigation strategies within technology functions, ensuring appropriate controls are in place
  • Support management of all risks, controls and incidents activities that fall under the IT and Data remit, liaising and ensuring alignment and collaboration with Group Risk management in maintaining and communicating up to date risk information
  • Partner with relevant teams and SME's to co-manage the existing controls to include alignment on priorities and performance expectations
  • Support controls annual assessment and improvement plan for controls
  • Support management of all IT and Data actions related to risk, assurance, controls
  • Support the enhancement and management of the IT risk management process and IT/Data risk registers, and where applicable, alignment with functional and group risk management frameworks
  • Support and monitor KPIs and KRIs for technology controls and risk exposure, supporting reporting for governance forums and senior management
  • Where risks fall outside of appetite/tolerance, work with relevant stakeholders in developing and tracking a mitigation plan within reasonable timelines
  • Support the identification of issues, issue management and remediation and provide reporting on risk/controls/KRIs to the relevant stakeholders
  • Challenging business on risk and control matters (e.g., incidents, issues, and actions) and the overall management of control environment
  • Fulltime
Read More
Arrow Right

Senior Technology Risk Analyst

The Commercial & New Payment Flows Technology Risk team is seeking a Technology ...
Location
Location
Ireland , Dublin 18
Salary
Salary:
Not provided
mastercard.com Logo
Mastercard
Expiration Date
October 10, 2026
Flip Icon
Requirements
Requirements
  • Experience: Ideal experience working within digital and technology functions, preferably in a compliance role
  • Reasonable understanding of security and quality management frameworks such as ISO 27001/27002, ISO 9001, ISO 27701, and PCI
  • Bachelor’s degree or equivalent combination of education and experience, or a Bachelor’s degree in computer science, information technology, or a related field is preferred
  • One or more professional certifications like CISA or CISSP (desirable)
  • Professional certifications ISO 27001, ISO 9001 Lead Auditor, and Implementer
  • Reasonable understanding of information security domains and possesses a well-rounded technical background
  • Basic knowledge of infrastructure and application security would be desirable
  • Experience working on GRC tools like Archer would be a significant advantage
  • Excellent communication and problem-solving skills and able to collaborate across global team
  • Demonstrated experience in managing complex projects related to information security
Job Responsibility
Job Responsibility
  • Provide consultancy and central coordination for security and compliance activities, encompassing the implementation of ISO 27001, ISO 9001, and ISO 27701, as well as PCI standards within the organisation
  • Identify potential security risks and issues through control assessments and ensure their resolution within specified timelines
  • Establish and monitor remediation efforts both internally and externally until resolution, while simultaneously enhancing the design and operational efficiency of controls
  • Document the outcomes of assessments and prepare assessment reports for key stakeholders
  • Prepare compliance status reports and dashboards for key initiatives, plans, and audit tracking of current processes in accordance with management requirements
  • Data Aggregation & reporting for various risk & compliance activities in support of the larger risk management practices
  • Fulltime
Read More
Arrow Right

Senior Technology Risk Analyst

The AI DPE Risk Management team is looking for a Senior Technology Risk Analyst ...
Location
Location
United States of America , O Fallon
Salary
Salary:
88000.00 - 141000.00 USD / Year
mastercard.com Logo
Mastercard
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Hands-on experience with audit and regulatory frameworks such as PCI, SOX, SOC 2, GDPR, and ISO 27000/27001, including participation in both internal and external audits
  • Holds at least one relevant professional certification, such as CIA, CISA, CISM, CFE, or a similar credential
  • Ability to translate control and compliance requirements into clear, actionable guidance and documentation for engineering and product teams
  • Experience designing, implementing, and maturing controls while partnering with first-line teams to achieve compliance, ensure consistent control application, and address key risks and issues
  • Strong communication skills with the ability to collaborate effectively across Data Science, Engineering, Product, and regulatory stakeholders
  • Proven ability to manage multiple priorities and projects simultaneously, maintaining momentum and delivering results in a fast-paced environment
Job Responsibility
Job Responsibility
  • Partner with engineering, product, and architecture teams to provide control, compliance, and regulatory guidance while identifying control gaps and driving remediation efforts to reduce risk
  • Support the design, implementation, and continuous improvement of preventive and detective controls within the first-line environment to strengthen the organization's overall risk posture
  • Facilitate risk assessments, control gap analyses, and scope/impact reviews to ensure new features, product updates, and initiatives align with internal standards, regulatory requirements, and industry best practices
  • Collaborate with risk, compliance, and governance teams to track and maintain regulatory controls, while working with delivery teams to address issues and lower the severity of identified risks through effective remediation and compensating controls
  • Serve as a subject matter expert during internal and external audits, supporting evidence collection, documentation, and remediation planning while helping teams prepare for successful audit outcomes
  • Bring a proactive, curious mindset with a strong willingness to learn, enabling effective navigation of complex technical ecosystems and continuous improvement of control readiness
What we offer
What we offer
  • insurance (including medical, prescription drug, dental, vision, disability, life insurance)
  • flexible spending account and health savings account
  • paid leaves (including 16 weeks of new parent leave and up to 20 days of bereavement leave)
  • 80 hours of Paid Sick and Safe Time
  • 25 days of vacation time and 5 personal days
  • 10 annual paid U.S. observed holidays
  • 401k with a best-in-class company match
  • deferred compensation for eligible roles
  • fitness reimbursement or on-site fitness facilities
  • eligibility for tuition reimbursement
  • Fulltime
Read More
Arrow Right

Risk and Control Specialist

The position focuses on executing and supporting risk and control initiatives, p...
Location
Location
Colombia , Bogotá
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3-5 years of experience working with a variety of financial platforms
  • adherence to risk & controls, protocols and process whilst maintaining a client oriented approach
  • fluent in English - both verbal and written
  • leadership capabilities and negotiation skills
  • ability to communicate and coordinate with team members and stakeholders effectively both verbally and in writing
Job Responsibility
Job Responsibility
  • lead risk and control activities for LATAM to support cross-disciplinary goals
  • address strategic issues on an ad hoc basis
  • manage multiple medium to large projects regional in nature throughout the project analyst life cycle
  • communicate and coordinate verbally and in writing to project team members and key stakeholders
  • lead conference calls and produce meeting agendas, materials, and minutes
  • create project plans, track progress, identify issues, and facilitate solutions
  • facilitate development of new or enhanced cross-functional process flows and procedures and ensure minimum markets controls
  • establish and utilize leadership capabilities and negotiation skills
  • act as a liaison between technology and operations teams
  • develop or assist in scheduling system or process training
What we offer
What we offer
  • support for well-being, growth and work-life balance
  • Fulltime
Read More
Arrow Right

Credit Portfolio Analyst - Risk Systems and Execution - Production Monitoring

The Credit Portfolio Analyst II is an intermediate-level position responsible fo...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in information technology, Business, Risk Management, or a related field
  • 2+ years of experience in risk management, technology operations, or production monitoring in corporate banking/ financial institutions
  • Knowledge of corporate finance, financial modelling, credit and banking products, credit analytics, risk assessment, and transaction execution
  • Basic understanding of credit risk management, technology platforms, and operational risk controls
  • Familiarity with modern monitoring tools, risk management frameworks, and production systems used to assess technology performance in real-time (SAS/ Tableau/ AI/ Oracle) supported by relevant programming skills
  • Statistical knowledge – familiar with key statistic metrics/ concepts
  • Knowledge of regulatory requirements related to credit risk, data management, and customer-facing platforms
  • Strong strategic thinker with the ability to anticipate production challenges and operational risks
  • Experience in problem-solving complex operational issues
  • Strong analytical skills in conducting analysis using bureau/ application/ customer data to identify anomalies and adverse trends
Job Responsibility
Job Responsibility
  • Perform the validation of all customer-facing credit risk platforms post-deployment
  • Development and execution of post-implementation validation frameworks
  • Partner with risk management, IT, and operations teams to assess potential vulnerabilities
  • Establish and manage a robust framework for ongoing production monitoring of credit risk platforms
  • Implement real-time and batch monitoring processes that assess credit risk platforms’ operational performance, data integrity, and customer impact
  • Ensure timely resolution of production issues
  • Ensure all customer-facing credit risk platforms perform reliably in production
  • Support initiatives to continuously improve platform stability
  • Engage with business stakeholders to understand customer needs and expectations
  • Ensure all post-implementation validation and production monitoring activities meet regulatory and compliance requirements
  • Fulltime
Read More
Arrow Right