Technology Risk Associate
Listed on 2026-01-13
-
IT/Tech
Cybersecurity, Data Security, Information Security
Join to apply for the Technology Risk Manager role at Oak North
.
At Oak North, we’re on a mission to empower the UK’s most ambitious businesses. Since 2015, we’ve lent over $18 billion across the UK and US, helped create more than 58,000 new homes and 36,000 new jobs, and supported hundreds of thousands of personal savers — all while fuelling the UK economy.
This is a fantastic opportunity to join a fast‑paced, growing bank with a reputation for doing things differently. We don’t want another cog in the machine, we’re looking for self‑starters and bold thinkers who want to pave their own career. Oak North’s Risk team provides guidance and oversight for technology and cyber related risks across the Oak North Bank plc Group.
In a nutshell, this exciting and high‑performing role will play a pivotal part in ensuring Oak North’s adherence to security related regulatory requirements aligned to global standards and frameworks, and bring enhanced risk visibility, automation, and continuous assurance mechanisms across technology and security domains.
Are you ready to step up to the challenge?
The Role 👋- Advance the Technology and Cyber Risk capability:
The individual will provide oversight, review and challenge of the cyber risk profile and cyber control environment. Contribute towards the development/enhancement of technology risk framework and ensure alignment with evolving regulatory expectations and adoption of newer technologies and architecture patterns. - Perform risk‑based deep dives:
Perform risk based deep dives to identify and understand technology and cyber security related risk drivers and work in partnership with the First Line(s) to identify key programmes/tasks to address these. This is expected across core technology risk domains of resilience and continuity, cloud and third‑party, data governance and protection, generative AI and broader AI adoption, and technology delivery and change. - Cyber risk reporting:
Ensure precise articulation of inherent and residual risks, along with comprehensive evaluation of control effectiveness. Provide oversight of issue management, Key Risk Indicators (KRIs), and adherence to policy requirements. Additionally, review KRIs and other risk telemetry to identify emerging themes, cyber risk trends, and potential control deficiencies. - Proactive risk engagement and early intervention:
Engage early during solution design, procurement, and PoC phases to assess technology and cyber risks. Continuously evolve domain focus areas to reflect changes in the threat landscape and regulatory environment(s) across operating geographies. - Strong focus on automation:
Help in building continuous assurance programmes, automate control testing, and feed results directly into established enterprise risk frameworks to support reporting and regulatory requirements. - Stakeholder Management:
Regular effective stakeholder management is key, this will include teams like Cyber security, Engineering, Product, and Internal Audit.
- 4–6 years, experience in regulated financial or fintech environments, or with technology risk focused consulting firms preferred.
- A deep understanding of IT security and technology risks principles, with specific focus on operating in a cloud‑native and SaaS heavy environment is essential for this role.
- Demonstrated experience with cyber risk frameworks and a solid understanding of best practices within a well‑managed cyber environment.
- Effective communication with both internal and external stakeholders.
- Experience with cloud platforms’ risk management, cloud security, and compliance, including domains of Identity and Access Management, Infrastructure and Data security, Detection and Incident Response, and Governance.
- We embrace difference and know that when we can be ourselves at work, we are happier, more motivated and creative. We want to be able to bring our whole selves to work, have our own perspectives and know that we belong. As such, through your behaviours at work, we expect you to reflect and actively sustain a healthy engineering environment that looks like this:
- A wide range of voices heard to the benefit of all
- Teams…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: