IT Governance & Risk Executive
Role Overview
We are hiring an IT Governance & Risk Executive to support the day-to-day operations of IT governance, cybersecurity governance, risk management, audit, compliance, and AI governance across the Group.
This is a hands-on coordination role that works closely with the Senior Manager, IT Governance, CTO, Digital & Technology teams, Finance, and Internal Audit. It is ideal for someone with a few years of experience looking to grow their career in IT governance and risk.
Key Responsibilities
IT Governance, Risk & Compliance
- Support the maintenance of IT governance policies, procedures, trackers, and governance calendars.
- Coordinate IT and cybersecurity governance activities, including follow-ups on action items.
- Assist with internal and external IT audits, including ISO/IEC 27001 and Cyber Trust Mark certification activities.
- Maintain the IT risk register and follow up with stakeholders on risk treatment plans.
- Prepare and organise governance documentation, meeting materials, and approval papers.
AI Governance
- Support the administration of the Group's AI Governance framework and AI policies.
- Coordinate AI risk, privacy, and compliance assessments for new AI use cases.
- Track governance approvals and maintain AI governance records.
- Assist in organising AI training sessions, workshops, and awareness programmes.
Budget & Reporting
- Support annual IT CAPEX/OPEX budget planning and expenditure tracking.
- Assist with procurement documentation and budget reconciliation with Finance.
- Prepare monthly governance reports, dashboards, and presentation materials for management.
Department Support
- Coordinate departmental meetings, governance forums, and training programmes.
- Support employee engagement initiatives and departmental events.
- Maintain governance documentation and SharePoint records.
Requirements
Qualifications
- Degree in Information Technology, Information Systems, Cybersecurity, Business, or a related discipline.
- Relevant certifications (e.g. ISO 27001 Foundation, CISA, CRISC) are a plus but not required.
Experience
- 2-4 years of experience in IT Governance, IT Risk, Cybersecurity, IT Audit, Compliance, or a related technology function.
- Exposure to IT audits, ISO 27001, or governance and compliance activities is preferred.
- Experience preparing reports, coordinating stakeholders, and maintaining documentation.
- Interest or exposure to AI governance or Generative AI is advantageous.
Skills
- Good understanding of IT governance and risk management principles.
- Strong organisational and coordination skills with attention to detail.
- Good written and verbal communication skills.
- Proficient in Microsoft Excel, PowerPoint, Teams, and SharePoint.
- Able to manage multiple tasks and work effectively with cross-functional stakeholders.