Overview
Hours:
Permanent
35 hours per week
Hybrid working
Closing Date:
Sun, 4 May 2025
Become a Tech Risk Analyst and help safeguard our digital world!
We're looking for a Technology Risk Analyst to join our team. If you have a drive for identifying and mitigating digital risks, an interest in controls assurance, thrive in a fast-paced and dynamic environment, and possess strong analytical and problem-solving skills, this may be the perfect role for you!
Â
Who Are We?
Â
Not just another building society. Not just another job.
We're the fourth biggest building society in the UK and what makes us different is that we're a mutual organisation. We don't have shareholders; we're owned by our members.
Our colleagues say Skipton's a great place to work, and you could be one of them, bringing new ideas on how we can keep customers at the heart of what we do.
Whatever your background and goals, we'll help you take the next step towards a better future.
As the Technology Risk team, our primary focus is to manage and mitigate technology-related risks within the Society. We work closely with teams under the Technology Transformation and Resilience (TTR) function, including IT, Security, Operati
onal Resilience, Change Delivery, Data Capability, and Engineering, as well as other teams across the Society like Operational Risk, Internal Audit, and Compliance amongst others. Our core role is to ensure the stability and security of our technology infrastructure. Additionally, we engage in various exciting initiatives such as enhancing cybersecurity measures, improving operational resilience, driving technological innovation, and supporting TTR during audits by improving the effectiveness of our controls.
What’s In It For You?
Skipton values work/life balance and we are proud to support hybrid and flexible working, where possible. We have a newly refurbished head office which offers a vibrant and collaborative working space.
We have a range of other benefits available to you including;
- Annual discretionary bonus scheme
- 25 days standard annual leave + bank holidays + rising 1 day per year of service to a maximum of 30 days
- Holiday trading scheme allowing the ability to buy and sell additional annual leave days
- Matching employer pension contribution (up to 10% per annum
- Colleague mortgage (conditions apply)
- Salary sacrifice scheme for hybrid & electric car
- A commitment to training and development
- Private medical insurance for all our colleagues
- 3 paid volunteering days per annum
- Diverse and inclusive colleague networks available for you to join including our Carers and Pride Alliance groups
- We care about your health and wellbeing – we provide a range of benefits that support this including cycle to work initiative and discounted gym membership
Â
What Will You Be Doing?
- You will support the implementation of risk processes in line with the Group Risk Management Framework (GRMF). Your role will involve assisting with Risk Control Self Assessments (RCSAs), tracking issues, risks, and policy non-com
pliances, and maintaining a central repository of technology risks and controls. - You'll liaise with stakeholders to provide updates and collaborate with various teams to develop and implement technology controls assurance programs. Additionally, you'll perform reviews, monitor control maturity levels, identify new controls, and ensure compliance with regulations.
- Your responsibilities will also include supporting annual business continuity and disaster recovery activities, assisting during audits, and producing regular reports and dashboards for continual improvement.
What Do We Need From You?
- Strong report writing, communication, and stakeholder engagement skills are essential. You should have a foundational understanding of technology risk management and controls, making familiarity with IT frameworks like ISO 27001, PCI DSS, or NIST important. Experience in conducting risk assessments, audits, compliance activities, and producing MI reports is beneficial.
Salary: £negotiable plus benefits
Job Refence: VP6FF10126
IMPORTANT: Before applying for this role, please make sure you have the right to work in the country where the role is based. Unless it clearly stipulates within in the job advert above that the hiring company is looking to or able to sponsor applicants it is deemed that the hiring employer will only consider applications from those able to comply with and work in the country where the role is based.