Technology Risk Associate - CIO | SCIB at Santander

London, England, United Kingdom

Santander Logo
Not SpecifiedCompensation
Junior (1 to 2 years), Mid-level (3 to 4 years)Experience Level
Full TimeJob Type
UnknownVisa
Banking, Financial ServicesIndustries

Requirements

  • Experience in cloud risk management, data protection, or cybersecurity governance
  • Professional certifications such as CISA, CRISC, CISSP, ITIL, or COBIT
  • Experience in technology risk, IT audit, or operational risk management within a large financial institution
  • Strong understanding of IT governance and control frameworks (e.g., COBIT, ISO 27001, NIST, ITIL)
  • Familiarity with regulatory frameworks applicable to EU/UK banking (e.g., EBA ICT Guidelines, PRA/FCA expectations, DORA, GDPR)
  • Excellent communication and stakeholder management skills with the ability to influence and challenge effectively

Responsibilities

  • Lead the identification, assessment, and ongoing monitoring of technology risks across infrastructure, applications, and digital platforms
  • Support the implementation of the CIB Technology Risk Framework in alignment with Santander Group’s global Non-Financial Risk (NFR) policies
  • Maintain the technology risk register, ensuring that risks are accurately documented, assessed, and escalated in line with governance processes
  • Prepare and deliver risk reporting and insights to Technology Risk Committees, senior management, and global control forums
  • Evaluate the design and effectiveness of IT controls, including access management, change management, system security, and data integrity
  • Partner with second- and third-line teams to support internal and external audits, ensuring findings are addressed with sustainable remediation plans
  • Conduct thematic reviews and deep dives into key risk areas
  • Monitor adherence to Santander Group’s IT Control Standards
  • Collaborate with the CISO and Operational Resilience teams to ensure technology resilience, continuity, and incident response capabilities are robust
  • Contribute to scenario testing, crisis simulations, and lessons-learned exercises
  • Support compliance with regulatory expectations including EBA ICT Guidelines, DORA, and Bank of England’s Operational Resilience Framework (where applicable)
  • Provide risk advisory input for technology projects and new initiatives, ensuring that risk assessments and control design reviews are conducted early in the delivery lifecycle
  • Support the adoption of emerging technologies (e.g., cloud, AI, data analytics) in a controlled and compliant manner
  • Foster a strong risk culture within Santander CIB London Branch through awareness sessions, training, and stakeholder engagement
  • Produce periodic dashboards and risk trend analyses for CIB senior management, highlighting emerging risks, control gaps, and remediation progress
  • Define and maintain key risk indicators (KRIs) and performance metrics to track risk appetite adherence and technology control maturity

Skills

Key technologies and capabilities for this role

Technology RiskRisk GovernanceIT ControlsAccess ManagementChange ManagementCybersecurityRisk AssessmentRisk RegisterNon-Financial RiskAudit SupportRegulatory Compliance

Questions & Answers

Common questions about this position

What is the location for this Technology Risk Associate role?

The role is based at Santander CIB London Branch in the United Kingdom.

Is the salary specified for this position?

This information is not specified in the job description.

What key skills or experiences are needed for this Technology Risk Associate position?

The role requires expertise in technology risk identification, assessment, and monitoring, knowledge of IT controls including access management and change management, and familiarity with cybersecurity, operational resilience, and regulations like EBA ICT Guidelines and DORA.

What is the team structure or work environment like for this role?

The role involves working closely with IT, cybersecurity, operations, and the Non-Financial Risk (NFR) function, as well as partnering with second- and third-line teams, CISO, and Operational Resilience teams within Santander CIB London Branch.

What makes a strong candidate for the Technology Risk Associate role?

Strong candidates will have experience in risk governance, control frameworks, cybersecurity, and regulatory compliance, with the ability to provide advisory input on technology projects and foster a strong risk culture.

Santander

Provides banking, investment, and insurance services

About Santander

Santander Bank provides a variety of financial services to individuals, small businesses, and large corporations in the United States. Its offerings include savings and checking accounts, loans, credit cards, and investment products. The bank also has specialized services through Santander Investment Services and insurance products via Santander Securities LLC. Santander stands out from its competitors by focusing on community growth, committing $13.6 billion to support initiatives like the 'Cultivate Small Business' program, which aids early-stage entrepreneurs, especially from underrepresented groups. The bank generates revenue through interest on loans, service fees, and commissions, while promoting responsible banking practices and financial education. Santander's goal is to empower individuals and businesses, enhance community prosperity, and provide comprehensive financial solutions.

Boston, MassachusettsHeadquarters
1902Year Founded
$75MTotal Funding
POST_IPO_DEBTCompany Stage
Fintech, Financial ServicesIndustries
10,001+Employees

Benefits

Health, dental, & vision
401k
Flexible PTO
Parental & sick leave
Discounts: technology, travel, auto, fitness, & tuition

Risks

ISO 20022 transition may challenge smaller business partners.
'Quishing' attacks pose a growing threat to consumer security.
Openbank faces competition in the U.S. high-yield savings market.

Differentiation

Santander's Openbank offers a 5.00% APY high-yield savings account nationwide.
The bank's Inclusive Communities Plan pledges $13.6 billion for community initiatives.
Santander's ISO 20022 adoption enhances operational efficiency and data management.

Upsides

Openbank's high-yield savings account attracts more U.S. customers.
Santander's renewable energy financing highlights commitment to sustainable investments.
Proactive cybersecurity measures enhance customer trust and protect digital assets.

Land your dream remote job 3x faster with AI