The IT Risk and Compliance Management Specialist will play a critical role in designing implementing and managing the IT Risk and Compliance framework within the organization. With at least 10 years of experience the ideal candidate will ensure that IT risk and compliance practices are integrated seamlessly with Enterprise Risk Management aligning with organizational goals and regulatory requirements.
This is a 6 month contract with potential for extension.
Key Responsibilities:
- Framework Development and Implementation:
- Design and implement the IT Risk and Compliance Management framework including associated processes tools and policies.
- Establish clear standards and controls across all divisions.
- Training and Awareness:
- Develop and deliver training programs for IT executives leaders and business stakeholders to promote understanding and adherence to IT risk and compliance processes.
- Risk Assessment and Mitigation:
- Conduct comprehensive IT risk assessments with IT and business leaders.
- Identify analyze and mitigate risks to maintain acceptable risk levels.
- Reporting and Analysis:
- Establish formal IT Risk and Compliance reporting mechanisms at both enterprise and business unit levels.
- Publish annual IT Risk Reports and present findings to the IT Executive team.
- Independent Assessments:
- Perform independent evaluations of IT risks compliance and controls as requested by IT leadership.
- Policy and Standards Development:
- Create and implement IT policies standards and control frameworks to ensure consistency and compliance across the organization.
- Other Duties:
- Support other business analysis initiatives and responsibilities as required.
Required Qualifications and Skills:
- Educational Background:
- Bachelors Degree in Computer Engineering Computer Science Commerce or a related field.
- Experience:
- Minimum of 10 years of experience as an IT Risk and Compliance Management Specialist.
- At least 5 years of experience leading an IT Risk and Compliance function.
- Technical and Framework Expertise:
- Strong knowledge of IT frameworks such as COBIT ISO 27002 ITIL and TOGAF.
- Proficiency in business impact analysis and IT process evaluations.
- Core Competencies:
- Exceptional organizational interpersonal and written communication skills.
- Ability to handle highly confidential information with discretion.
- Strong analytical and investigative skills for complex issues.
- Critical thinking and decisionmaking expertise.
- Proven ability to manage multiple priorities under strict deadlines.
- Training and Collaboration:
- Demonstrated ability to develop and deliver IT security training.
- Track record of building and maintaining collaborative partnerships across diverse technical competencies.