Lead IT Risk Manager (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Lead IT Risk Manager (Fintech): Owning and evolving the IT Risk and Business Continuity Management Framework within the second-line risk function with an accent on technical governance, independent challenge, and strategic stakeholder management. Focus on leading comprehensive risk assessments, ensuring alignment with the Risk Appetite Framework, and managing DORA obligations.
Location: Hybrid (Berlin, London, Tallinn) or remote across Europe
Company
is a fintech company empowering businesses to offer a wide range of investment products via an easy-to-integrate Investment API.
What you will do
- Own and evolve the IT Risk and Business Continuity Management Framework within the second line.
- Provide independent second-line oversight and challenge to the first-line IT GRC team.
- Lead IT risk identification and mitigation across cyber, technology resilience, third-party, and data security.
- Mature the ISMS by guiding policies and running maturity assessments against ISO/IEC 27001:2022.
- Drive second-line assurance reviews, deep-dives, and support internal and external audits (ITGC).
- Lead DORA obligations and translate regulatory requirements from BaFin, EBA, ESMA, and ECB into actionable guidance.
Requirements
- University degree in Computer Science, IT, Information Security, or equivalent professional background.
- Minimum 5+ years of professional experience in IT GRC/IT Security within a regulated financial institution, bank, or fintech.
- Deep operational understanding of ISO 27001, BaFin BAIT/MaRisk, and DORA.
- Exceptional verbal and written English articulation skills (C1+).
- Strong product engineering and security-focused mindset with commercial pragmatism.
Culture & Benefits
- Annual budget of €20,000 for best-in-class AI tools.
- 30 days of annual leave and a one-month fully paid sabbatical every 4 years.
- Flexible work: remote across Europe or hybrid in hubs (Berlin, London, Tallinn), with the ability to work abroad for up to 183 days a year.
- Competitive above-market salary and participation in an employee equity program.
- Personal development budget and professional coaching access.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →