IT Risk and Governance Analyst – London – 3 month contract
We are seeking an analytical individual with attention to detail, procedures, and technical skills to help implement and manage a new IT risk management framework. This role supports a Technology Transformation Programme and oversees current operational technology and applications.
Responsibilities include:
- Risk identification and control strategies: Collaborate with teams to develop learning materials, templates, and facilitate workshops.
- Horizon scanning: Monitor regulatory changes with Legal and Compliance teams to identify emerging risks.
- Risk taxonomy management: Update and maintain risk reference libraries for technology risk assessment.
Risk and event analysis
- Review and analyze technology issues and risk events, maintaining a knowledge base for organizational learning.
- Assist in change reviews, Risk Control Self-Assessments, control testing, and deep dives.
- Support vendor risk assessments and compliance attestations alongside the Third Party Risk & Assurance Specialist.
Risk controls and management
- Develop and maintain the technology governance framework, policies, standards, and procedures.
- Manage the IT controls library, review change requests, and analyze control performance.
- Support GRC platform operations, including writing runbooks and implementing improvements.
Risk governance and compliance
- Manage the Technology Service Governance interface, including FAQs, demand management, and metrics analysis.
- Maintain records of governance decisions and track policy exceptions and risk acceptances.
- Assist with audits, certifications, and resolving audit findings.
Reporting & documentation
- Prepare reports on risk and governance performance.
- Maintain documentation for procedures, updates, and client interactions.
- Develop risk visualizations to improve communication.
- Promote learning through awareness campaigns and training.
- Research new technologies and risk models to enhance services.
- Support team development and knowledge sharing.
Qualifications and Skills
- Experience in enterprise technology services/support, ITIL, and asset management.
- Knowledge of enterprise IT environments, cloud, cybersecurity, and applications.
- Experience with IT controls, procedures, and governance frameworks.
- Proficiency in data analysis and reporting tools like PowerBI or Tableau.
- Ability to automate tasks using PowerAutomate, Python, or similar.