CrawlJobs Logo

Specialist – Governance, Risk & Control

vodafone.com Logo

Vodafone

Location Icon

Location:
Lesotho

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

To manage and lead the Technology Security Governance, Risk, Compliance and Assurance needs across Vodacom. To further provide security assurance, guidance and support to high profile projects according to company defined policies and requirements, best practice and local/international standards (PCI, SOX, ISO27001, GDPR, POPIA and Cyber Crime Bill, Data Protection Act 2011 of Lesotho) relevant to the technology security area.

Job Responsibility:

  • Direct, develop, implement and maintain a comprehensive Vodacom-wide information security governance, risk and compliance strategy
  • Ensure security is embedded in IT System and Network Infrastructure (Mobile, IS and Enterprise) across the Vodacom
  • Ensure timely delivery of technology security assurance and support for projects
  • Provide accurate and timely reporting of technology security risks identified during project engagement and propose remediation and mitigation options
  • Monitor information security governance, risk, and compliance by Vodacom BIT, Mobile and Enterprise Business domains
  • Ensure alignment of information security governance with the Vodacom’s business objectives, the information security strategy, plans and controls
  • Ensure compliance with the applicable legislative and regulatory interpretation and corporate risk appetite
  • With the assistance of Head: Technology Governance, Lead, develop, manage and maintain the Vodacom-wide information security governance deliverables lifecycle including compliance measurement, deviations and exemptions
  • Engage with the stakeholders on compliance to control effectiveness and deficiencies in the design and operating effectiveness of information security controls, design and recommend opportunities for continuous improvement
  • Develop, manage and implement the Vodacom information security audit and assurance plans and schedules, including any specific business needs and requirements (including PCI, ISO27001, GDPR, Data Protection Act of Lesotho, Cyber Crime Bill)
  • Design appropriate remedial actions for identified risks, drive remediation of findings and management of risks and exemptions
  • Participate in IT general controls and compliance testing activities and/or audits

Requirements:

  • Degree or equivalent in IT/Engineering or relevant tertiary qualification
  • Knowledge of legal, regulatory and privacy requirements, such as Personally Identifiable Information (PII), GDPR, etc.
  • Proven experience managing and operating multiple security programs, projects, and initiatives
  • Ability to write reports for different security stakeholders
  • Proficient in preparation of reports, dashboards and documentation
  • Knowledge of and experience with GDPR
  • Web Application security and best practises
  • Business Analysis skills
  • High competence in Programming skills
  • Risk assessment skills
  • Knowledge of policy / procedure design and development
  • Excellent Interpersonal skills
  • Negotiation and collaboration skills
  • Analytical skills

Additional Information:

Job Posted:
April 05, 2026

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Specialist – Governance, Risk & Control

Data and Credit Bureau Attributes Specialist Consumer Credit Risk

The Data & Credit Bureau Attributes Specialist (AVP) - Consumer Credit Risk is r...
Location
Location
India , Mumbai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in a relevant field (e.g., finance, risk management, information technology)
  • Experience in designing and implementing data governance frameworks that align with regulatory standards
  • Experience with data controls, summarization, and transformation in a credit risk context
  • Experience with modern data integration tools, cloud platforms, and emerging AI technologies
  • Experience in SAS, SAS/Stat, SQL
  • Strong financial management skills with experience managing large-scale data projects
Job Responsibility
Job Responsibility
  • Develop and enforce a governance framework that ensures the accuracy, security, and quality of data throughout its lifecycle
  • Oversee the transformation of raw and disparate data sets into actionable insights that support strategic and tactical decision-making within credit risk frameworks
  • Lead the end-to-end delivery process for building, testing, and deploying data pipelines
  • Ensure that all data driving regulatory reporting is accurate, timely, and adheres to compliance standards
  • Engage with senior stakeholders across Risk, IT, Compliance, and Business units
  • Lead innovation efforts that enhance the automation, scalability, and efficiency of data integration and controls
  • Fulltime
Read More
Arrow Right

Quality Assurance, Monitoring & Testing Specialist 5

The Central Testing function is primarily based out of Citi Service Centers in I...
Location
Location
India , Pune; Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2-3 years of relevant work experience
  • Excellent written and verbal communication skills
  • Ability to perform under pressure
  • Ability to manage multiple tasks and priorities
  • Ability to function independently
  • Proficient in MS Office Word, Excel and PowerPoint applications
  • Bachelor’s/University degree
Job Responsibility
Job Responsibility
  • Have a good understanding of the Risk & control framework and the underlying concepts on Risk Management
  • Assist in performing the Quality check on the monitoring reviews that are defined per ARCM (Activity, Risk, Control & Monitoring)
  • Document the quality fails, any learnings or issues that may arise and pass the feedback to the Supervisor
  • Monitor the compliance of control as appropriate to the regulatory requirement
  • Provide inputs during the Control & Monitoring Design Assessment (CMDA) to draft and define the procedures
  • Involved in the assessment of the timeliness, accuracy and completeness of the MCA (Manager Control Assessment) through controls
  • Coordinate the adherence to the MCA Standard through controls after the execution of a process
  • Collaborating with onshore and offshore teams understanding the process changes if any and participate in trainings, meetings & etc.. Escalate any control failures
  • Complete the quality check within a timely manner to complement the results submission timeline in the Risk & Control system
  • Assisting in the creation and maintenance of reports for control tracking and analysis
What we offer
What we offer
  • Access to telehealth options, health advocates, confidential counseling
  • Expanded Paid Parental Leave Policy
  • Resources to manage financial well-being
  • Access to learning and development resources
  • Generous paid time off packages
  • Resources and tools to volunteer in the communities
  • Fulltime
Read More
Arrow Right

Pricing and Valuations Data Workstream Lead

Citi Markets Transformation is looking for Pricing and Valuations Data Workstrea...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10-15 years of experience in relevant fields of Market Risk Management, Product Control or product valuation specialist with First Line and/or Second Line experience or in an associated consulting role
  • Excellent oral and written communications skills
  • must be articulate and persuasive with the judgement and authority to provide insightful commentary to senior stakeholders
  • Ability to drive change to business practices by working effectively across a global organization
  • Ability to handle complexity, ambiguity and a fast changing, often demanding work environment
  • Self-starting with the ability to multitask and prioritize
  • Good knowledge of data used in Price Risk processes (trade, market data, reference data), data governance and lineage – experience in operationalizing golden sources of data
  • Experience in post-trade risk and valuation infrastructure
  • Ability to analyse large data sets and recommend ways to improve quality, controls, and efficiency
  • Must be proficient with Excel - Use of Python, SQL, Digital tools would be a significant plus
Job Responsibility
Job Responsibility
  • Support the Price Risk Program Initiative lead(s) to drive execution of strategic deliverables aligned to Data, Data Controls and Architecture changes
  • Lead or participate in working groups, workshops and stakeholders to understand data and business requirements, define project plans and manage timelines
  • Understand the data quality issues aligned with that data set including end to end data flows and controls and ensure these are addressed in the defined target state solution with robust controls
  • Work with relevant Citi leadership as well as outside experts to design a target-state control-framework for Price Risk, which meets regulatory expectations
  • Define a strategy to execute against the designed target-state control-framework for Price Risk, including business analysis, data analysis, practical testing and implementation
  • Oversee a project management/SME team to design required actions to implement the target state and track completion of the actions in line with Citi change methodology
  • Identify issues and collaborate with stakeholders to generate solutions
  • Work with Control and Internal Audit stakeholders to ensure credible challenge throughout the remediation process and validation of results in line with Citi’s Internal Audit requirements
  • Present on status of the program to senior stakeholders within Citi
What we offer
What we offer
  • Generous holiday allowance starting at 27 days plus bank holidays
  • increasing with tenure
  • A discretional annual performance related bonus
  • Private medical insurance packages to suit your personal circumstances
  • Employee Assistance Program
  • Pension Plan
  • Paid Parental Leave
  • Special discounts for employees, family, and friends
  • Access to an array of learning and development resources
  • Fulltime
Read More
Arrow Right

Cyber Security Specialist (GRC)

As a Cyber Security Specialist, you will be integrated into the Portugal Cyber S...
Location
Location
Portugal , Lisboa
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree, professional qualification or relevant experience in Technology Security
  • Experience in cyber security risk management, governance and control frameworks
  • Experience supporting risk registers, control assessments, audits or assurance activities
  • Knowledge of information security and risk management standards (ex: ISO/IEC 27001, NIST, COBIT)
  • Strong understanding of cyber security threats and ability to assess business and operational impact
  • Experience working with policies, standards, controls and compliance requirements
  • Strong communication skills, with the ability to explain cyber risks and control gaps in clear business language
  • Ability to work effectively across technical and non‑technical stakeholders, balancing security, risk and business needs
  • Fluency in the English language
Job Responsibility
Job Responsibility
  • Integrated into the Portugal Cyber Security Governance, Risk & Control function, with responsibility for ensuring that cyber security risks are identified, assessed, governed and managed within Vodafone’s risk tolerance
  • Contributing to the three main areas: Cyber Risk Management, Security Governance and Control Assurance
  • Act as a Cyber GRC Subject Matter Expert to enable technical and business teams to operate Vodafone products and services in a secure and compliant manner, with strong focus on cyber risk, policy adherence and control effectiveness
  • Ensuring that cyber security risks are properly identified, assessed, governed and managed, that security controls are effectively implemented and evidenced, and that all governance processes supporting those controls are in place, in line with Vodafone Group cyber security strategy and local market technology and business priorities
  • Follow up on risks, controls and remediation actions throughout their lifecycle, ensuring proper understanding of cyber security requirements, analysing, classifying and prioritising cyber risks according to business context, and supporting informed risk decisions
  • Report to the Cyber Security GRC Team Lead in Portugal and be an active part of the local market Cyber Security team, supporting effective collaboration with local structures such as Network, Digital & IT, Secure by Design, Cyber Defence, Corporate Security, Privacy, Legal, Risk and Compliance, among others
What we offer
What we offer
  • Hybrid Work Model - Flexible hybrid work model with 8-10 in-office days per month, managed by team leaders
  • Vodafone Products and Services - Employees get a mobile phone, free communication plan, data card, and various discounts on services and products
  • Recognition - Recognition programs for innovative, creative, high-potential employees and exemplary behaviors
  • Health and Well-being - Well-being Program offers nutrition and psychological consultations, webinars, workshops, and discounts on various services and products
  • Learning - Access to Communities of Practice and a customizable digital training platform with high-quality content (namely Harvard Business Publishing and Skillsoft)
  • Local and International Mobility - Internal recruitment with local and international rotation opportunities across departments and roles
Read More
Arrow Right
New

Risk & Governance Specialist

This role is pivotal in safeguarding BT’s commercial integrity and ensuring that...
Location
Location
United Kingdom , Cheltenham; Ipswich; London; Manchester
Salary
Salary:
Not provided
plus.net Logo
Plusnet
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of commercial risk, contract governance, and internal control frameworks
  • Experience managing risk registers, RAID logs, and compliance reporting in a commercial or operational environment
  • Familiarity with regulatory and contractual compliance requirements in telecoms or similar sectors
  • Proven ability to lead and deliver risk and governance initiatives in a fast-paced, transformation-focused environment
  • Risk Management
  • Data Analysis
  • Contract Management
  • Relationship Building
  • Change Management
  • Must have lived in UK for 10+ years to obtain clearance
Job Responsibility
Job Responsibility
  • Proactively identify, assess, and monitor risks across major contracts, frameworks, and commercial programmes, ensuring alignment with BT’s risk appetite and strategic goals
  • Implement and maintain governance frameworks that ensure compliance with BT’s internal policies, regulatory requirements, and contractual obligations
  • Act as a subject matter expert on BT’s commercial governance policies, including Delegation of Authority (DoA), contract governance, and risk escalation protocols
  • Produce regular risk and governance reports for senior leadership, highlighting emerging risks, control effectiveness, and compliance trends
  • Collaborate with Client Partners, Commercial Operations, Legal, Finance, and Delivery teams to embed governance and risk awareness into day-to-day operations
What we offer
What we offer
  • 10% on target bonus (Depending on country based)
  • BT Pension scheme, minimum 5% Employee contribution, BT contribution 10%
  • On-call allowance (Depending on role requirements)
  • 25 days annual leave (not including bank holidays), increasing with service
  • Huge range of flexible benefits including cycle to work, healthcare, season ticket loan
  • World-class training and development opportunities
  • From January 2025, equal family leave: receive 18 weeks at full pay, 8 weeks at half pay and 26 weeks at the statutory rate. It’s for all parents, no matter how your family is made up
  • Enhanced women’s health support: including help with menopause symptoms, cancer screenings, period care and more
  • 24/7 private virtual GP appointments for UK colleagues
  • 2 weeks paid carer’s leave
  • Fulltime
Read More
Arrow Right

Security Vetting Specialist

We are seeking a Security Vetting Specialist to support and process Bulgarian Go...
Location
Location
Bulgaria , Sofia
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Prior knowledge and experience with Bulgarian government security vetting
  • at least 1 year in a similar role is an advantage
  • Understanding of EU GDPR and the Personal Data Protection Act (PDPA)
  • Background in roles requiring strict confidentiality and secure handling of sensitive information
  • University degree preferred
  • Ability to develop effective working relationships with colleagues, partners, and authorities
  • Professionalism in handling adversarial or sensitive situations
  • Strong risk identification and evaluation skills, with capacity for proportionate action
  • Ability to interpret and apply regulations and guidance to specific activities
  • Skilled in the use of IT packages, systems, and databases
Job Responsibility
Job Responsibility
  • Provide support and process all types of security vetting required by the Bulgarian Government, EU, and NATO (new applications, transfers, extensions, renewals)
  • Liaise with the Bulgarian Government, particularly the State Commission on Information Security (SCIS), and other security authorities as appropriate
  • Support the business with advice and guidance in coordination with Government Security Services (GSS)
  • Maintain physical and electronic vetting records, ensuring timely renewals
  • Manage record keeping and control of Aftercare Incident Reporting
  • Attend internal and external stakeholder meetings
  • Assist applicants and act as SME in collating required documentation for the clearance process, including questionnaires, consents, diplomas, certificates, official notes, medical documentation, and notarized declarations, as mandated by Bulgarian law.
What we offer
What we offer
  • Comprehensive suite of benefits that supports physical, financial, and emotional wellbeing
  • Specific programs for personal and professional development
  • Flexibility to manage work and personal needs
  • Inclusive culture that celebrates individual uniqueness.
  • Fulltime
Read More
Arrow Right

In-business Risk Specialist

An individual in Enterprise Risk Management plays a critical role in managing th...
Location
Location
United States , O'Fallon
Salary
Salary:
46600.00 - 60800.00 USD / Year
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2-4 years relevant experience
  • Comprehensive understanding of governance frameworks, control principles and risk methodologies
  • Thorough understanding of the firm's Code of Conduct, Plan of Supervision, and relevant policies
  • Strong understanding of audit processes, compliance, and regulations
  • Advanced knowledge of control processes
  • able to develop and implement effective monitoring for exceptions/breaches
  • In-depth understanding of risk assessment methodologies
  • able to conduct assessments and develop mitigation strategies
  • Actively monitors regulatory changes and updates knowledge/skills
  • Able to independently apply compliance policies and communicate effectively across levels
Job Responsibility
Job Responsibility
  • Independently performs risk and control assessments, developing and implementing risk mitigation recommendations with minimal supervision
  • Takes ownership in addressing audit, compliance, and regulatory findings
  • Leads remediation efforts and the quarterly audit process, driving procedural implementation and change management within the team
  • Spearheads the enhancement and automation of control processes, proactively monitoring for exceptions and breaches, and independently escalating issues to senior management
  • Champions strong governance, controls, and a culture of responsible finance within the team, leading the implementation and enforcement of the Control Framework
  • Evaluates risks within the team's scope, ensuring rigorous compliance with regulations, promptly reporting control issues, thoroughly identifying root causes, and developing and implementing effective corrective actions
  • Proactively stays updated on risk and control assessment practices, acting as a subject matter expert and sharing knowledge and insights with team members to elevate overall understanding and performance
  • Leads innovative risk analysis initiatives, ensures timely and accurate risk reporting, develops comprehensive communication materials, and leads risk management training efforts, focusing on risks pertinent to team activities
  • Drives governance coordination, facilitates MCA risk assessments, ensures strict adherence to policy guidelines, independently manages responses to risk events, and fully integrates risk and control responsibilities within business units
  • Leads efforts to enhance control capabilities, develops and implements interim tools, designs and implements comprehensive monitoring solutions, and applies deep business insights to support the implementation of robust control processes, collaborating with stakeholders for firm protection and continuous process improvements
What we offer
What we offer
  • medical, dental & vision coverage
  • 401(k)
  • life, accident, and disability insurance
  • wellness programs
  • paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays
  • discretionary and formulaic incentive and retention awards
  • Fulltime
Read More
Arrow Right

Assistant Vice President – Third Party Risk Oversight specialist - TPRO - Consumer Credit Risk

The AVP – Third party risk oversight role is responsible for owning and enhancin...
Location
Location
India , Mumbai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of experience in Risk management, third-party risk, vendor risk/management or credit risk with a large financial institution
  • US banking regulatory expectations
  • Prior experience operating with consumer credit risk or closely related risk domains
  • Extensive background in managing critical suppliers and regulated third-party relationships
  • Experience active as a risk/process oversight owner or leading risk platforms, frameworks, or governance models
  • Bachelor’s degree in related fields
  • Working knowledge of Vendor relationship management / Vendor risk management/ TPRO
  • Growth mindset with ability to balance risk, compliance and business enablement
  • Excellent stakeholder management and executive communication skills
  • Ability to challenge vendors and internal partners constructively
Job Responsibility
Job Responsibility
  • Product ownership and strategy: Own the end-to-end product vision for third-party risk oversight tools, processes, and controls within consumer credit risk
  • Own the TPRO vision, roadmap, and backlog, ensuring alignment with Citi risk policies and enterprise standards
  • Translate regulatory guidance, Citi policies, and risk requirements into User stories, controls, and functional requirements into scalable risk oversight solutions
  • Prioritize initiatives based on risk severity, regulatory commitments and business impact
  • Third-party Risk oversight: Oversee risk assessment lifecycle for third-party vendors, including: Inherent risk assessments, Due diligence (financial, operations, cyber, data privacy, model risk), Ongoing monitoring and periodic reviews
  • Ensure critical and high- risk vendors undergo enhanced oversight and governance
  • Maintain a risk-tiered vendor inventory aligned with consumer credit risk exposure
  • Supplier and contract management: Ensure supplier contracts meet regulatory, risk and control standard, including: SLAs, KPI, audit and access rights, data protection, information security, confidentiality, BCP/DR (business continuity planning/ Disaster recover), subcontractor and fourth-party controls
  • Track contract milestones, renewals, terminations and renegotiations
  • Proactively identify contracts nearing expirations and drive timely renewals or exit strategies
  • Fulltime
Read More
Arrow Right