Lead IT Risk Manager (f/m/d)
RemoteBerlin, State of Berlin, Germany or Germany
Job Summary
Lead IT Risk Manager responsible for owning and evolving the IT Risk Framework within the second-line risk function. You will provide oversight to the first-line IT GRC team, lead risk assessments across cyber, technology resilience, third-party, and data security, and ensure alignment with the Risk Appetite Framework. You will mature ISMS policies, define baseline controls against ISO/IEC 27001:2022, oversee third-party IT risk and business continuity assessments, drive IT risk assurance reviews, support audits (ITGC and application controls), and lead regulatory alignment for BaFin, EBA, ESMA, ECB, including DORA obligations. Strong communication with multilingual stakeholders and C-suite executives is essential. You will operate with a product engineering and security-focused mindset within a regulated financial services context, and collaborate across hubs in Europe with hybrid/remote options.
Required Qualifications
- University degree in Computer Science, Information Technology, Information Security, or equivalent professional background
- Minimum of 5+ years of experience in IT Governance, Risk, Compliance, and Security (IT GRC / IT Security) within a regulated financial institution, bank, fintech, or fast-scaling B2B platform environment
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.