
Risk Analyst - DORA
- Amsterdam, Noord-Holland
- Vast
- Voltijds
- Support implementation of the DORA requirements within the Firm, to ensure we are compliant.
- Support the operation and further development of the (Digital) Operational Resilience framework, in particular the Third-Party Risk Management framework.
- Lead the ICT Risk and Control Self Assessments and further development of the (digital) operational risk and control frameworks.
- Engage with Operations Management and Procurement to collate and assess the performance and risk management of our IT and other Third-Party suppliers.
- Engage with the global Third-Party Risk Management, and Vendor Management teams to obtain assurance about the continuity and arrangements of our vendors.
- Produce quarterly (Digital) Operational Resilience Dashboards to the Head of Risk.
- Contribute to EU and Global Policy and procedure developments to ensure we have an internal governance and control framework.
- Oversee the delivery and quality of threat led penetration testing activity, including CBEST, through third-party vendors in a manner consistent with regulatory requirements, including DORA.
- Provide oversight, guidance, and challenge on remediation of issues identified through testing activity.
- Work across business, operations and technology to support digital operational resilience testing activities, document results/lessons learned and track remediation actions to closure
- Experience in risk management, with a significant focus on (IT) Resiliency or Business Continuity.
- A deep understanding of regulatory requirements, industry standards, and best practices related to EU DORA and Operational Resilience.
- Experience implementing and overseeing regulatory change projects.
- Experience collaborating with and influencing colleagues across departments and geographies.
- Bachelor’s degree or more in a related field (relevant industry certifications are desirable).
- Strategic vision with the ability to translate complex regulatory requirements into risk management practices.
- In-depth understanding of digital ecosystems, cyber threats, and the latest trends in technology and cybersecurity.
- Experience in developing risk management policies and procedures.
- Language: high level English is required
- Bonus scheme
- Premium free pension and WIA insurance
- Care & welfare allowance (€45 net per month)
- €50 net on your birthday!
- Internal Wellbeing Programme
- Learning and Development opportunities