This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Vocalink Security team is looking for a Principal, Technology Risk Management to drive maturity of internal cybersecurity governance processes. This includes supporting business decisioning through robust risk management practices, including management of cybersecurity policies, standards and controls across the Vocalink business and helping drive timely response to, and remediation of, control weaknesses and deviations to policies.
Job Responsibility:
Lead on the creation and maintenance of all Vocalink cybersecurity policies and standards
Support control owners with the management of controls to address cybersecurity risk
Ensure policies and standards are appropriately communicated across the business
Oversee deviations to policies and standards
Identify, assess, monitor and manage cybersecurity risks across the business
Perform risk assessments to support prioritisation of key cybersecurity initiatives
Track management action plans to address control issues and deliver associated management reporting
Support the enhancement of Security Governance, Risk and Compliance (GRC) reporting
Respond to customer due diligence queries and questionnaires
Supports leadership, leveraging a solid understanding of industry audit and compliance standards
Manage cross-functional initiatives to deliver on risk and framework goals, policies and procedures
Requirements:
Understanding of Security GRC roles and responsibilities
Experience of creating, developing and enhancing security policies
Understanding of a broad range of industry frameworks and standards including ISO 27001, PCI DSS and Cyber Risk Institute Profile / NIST requirements
Robust experience of implementing security risk management best practices and methods
Experience of working with internal and external audit teams
Experience in using IBM Openpages and RSA Archer GRC solutions desirable
Security-focused analytical skills
Ability to work autonomously
Ability to work as part of a team
Ability to influence and motivate others
Good communication skills, in written and verbal form
Diligent and thorough approach to problem solving
Ability to resolve varied and complex compliance issues
Experience delivering presentations and engaging with senior leadership
Experience growing and motivating a team and coaching members through career milestones and progression
Nice to have:
Experience in using IBM Openpages and RSA Archer GRC solutions