IT Risk and Governance Analyst – Chesterfield – 3 month contract
We are seeking an analytical mind, with an eye for detail, procedures, and technical acumen, to help the business implement and run a new IT risk management framework. This is a multifaceted role supporting both a Technology Transformation Programme and maintaining oversight over current operational technology and applications.
Responsibilities include:
- Assist in implementing risk identification control strategies, working with multiple teams to create learning material, templates, and facilitate workshops;
- Support horizon scanning exercises to identify emerging risks, working with Legal and Compliance teams to monitor regulatory changes;
- Manage changes to risk taxonomy and reference library for technology risk assessment;
- Review and analyse internal and external technology issues and risk events, updating a knowledge base;
- Assist in change reviews, Risk Control Self-Assessment exercises, control testing, and deep dives;
- Support vendor risk assessments, controls assurance, and compliance attestations;
- Develop and maintain the technology governance framework, policies, standards, and procedures;
- Manage the IT controls library, reviewing change requests and analyzing control performance;
- Support GRC platform operations, including writing runbooks and process improvements;
- Manage service interface for Technology Service Governance, including FAQs and metrics analysis;
- Ensure accurate record-keeping of governance decisions and support audits and certifications;
- Prepare reports on technology risk and governance performance;
- Maintain documentation for governance procedures and project updates;
- Develop technology risk visualisations to enhance communication;
- Promote learning and awareness campaigns related to technology risk and governance;
- Research and develop new risk modelling techniques;
- Support learning and development within the team.
Qualifications, Knowledge, Skills, and Experience:
- Experience with enterprise technology services, including support or administration, ITIL, and asset management;
- Understanding of enterprise IT environments, cloud computing, cybersecurity, and applications;
- Experience deploying and operating IT controls and procedures;
- Knowledge of IT Governance, Risk, and Compliance frameworks;
- Proficiency in data analysis and report creation with PowerBI, Tableau, or similar tools;
- Ability to automate tasks using PowerAutomate, Python, or similar scripting languages.