The IT Risk & Security Manager is a new function as a result of a ING IT Risk Paradigm Shift program - this program focuses on the move from compliance based reporting to risk based reporting, moving responsibility for IT Risk from 2nd line to 1st line. The IT Risk & Security Manager will manage this transition at group level, making sure roles and responsibilities are redefined for the CTO and CRO organizations. Also collaborating with the Head of IT risk to implement, while simultaneously rolling out across the entities.
Key challenges of the role will be to manage this transition successfully, to up/reskill the local risk teams to be able to execute the changed activities and to make sure we stay fully aligned with 2nd line and 2nd line can continue its challenging/confirming role after the change has been implemented.
The team
The IT Risk & Security Manager manages hierarchically a team of IT Risk Experts and has functional reporting lines to all local Tech GRC leads and departments in the entities. The IT Risk & Security Manager will be part of the CISO MT and the NFRC IT Bank.
The IT Risk & Security Manager is responsible for the availability and quality of the IT Risk tooling and the IT Risk metrics dashboards that will be used to manage IT Risk adequately.
The IT Risk & Security Manager is a new position as a result of the IT Risk Paradigm Shift program - this program focuses on the move from compliance based reporting to risk based reporting. This is a change that will affect Tech globally and requires a deep understanding of the current and new landscapes along with maturity to manage the senior stakeholder landscape.
The IT Risk & Security Manager has visibility at global and local board level as being responsible for aggregation of the local CIO IT Risk Opinions towards the CTO of ING
The IT Risk & Security Manager will manage a team that is the link pin between the central IT control delivery organizations (containing the IT Process Owners), 1st line ING entities and domains managing IT environments and IT processes locally, 2nd line IT Risk, 3rd line internal audit and external auditors and regulators. Next to that this team will centrally manage risk tooling and IT Risk metric dashboards.
Towards the central IT control delivery organizations this function will have an advice, consulting, and review role regarding the correctness and completeness of the IT Control Landscape and IT Risk metrics. This team will have an advice and consulting role and will set the reporting standards and guidelines. The local Tech GRC department will use these standards and guidelines to advice the local CIO and report out the local IT Risk posture.
The IT Risk & Security team will be the counterpart of 2nd line IT Risk, 3rd line internal audit and external auditors and regulators.
The IT Risk & Security team will be located in Amsterdam.
Roles and responsibilities
Team management
Global IT Risk Paradigm Shift strategy and execution
Financial
Stakeholder management
IT Control Framework
Managing the IT Control and Metric repository
How to succeedWe hire smart people like you for your potential. Our biggest expectation is that you’ll stay curious. Keep learning. Take on responsibility. In return, we’ll back you to develop into an even more awesome version of yourself.
We are looking for a motivated colleague who has the following characteristics and capabilities:
Rewards and benefitsWe want to make sure that it’s possible for you to strike the right balance between your career and your private life. Find out more about our employment conditions.
The benefits of working with us at ING include:
● 24-27 vacation days depending on contract
● Pension scheme
● 13th month salary
● 8% Holiday payment
● Hybrid working
● Personal growth and challenging work with endless possibilities
● An informal working environment with innovative colleagues
About usCurious about how ING empowers people and businesses to move forward? Discover what we do and what we can offer you.
Questions?Contact the recruiter attached to the advertisement. Want to apply directly? Please upload your CV and motivation letter by clicking the ‘Apply’ button.