Senior Associate /Manager – Technology Risk and Assurance at WTW | GB | Rezi

Senior Associate /Manager – Technology Risk and Assurance at WTW

Senior Associate /Manager – Technology Risk and Assurance

WTW · GB

Yesterday

Senior Associate /Manager – Technology Risk and Assurance

WTW · GB

a day ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Senior Associate /Manager – Technology Risk and Assurance role.

Rezi rewrites your resume against WTW's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Senior Associate /Manager – Technology Risk and Assurance posting at WTW — free, in seconds.

About the Role

As a Senior Associate / Manager – Technology Risk and Assurance, you will support the Governance Risk and Compliance (GRC) team in delivering technology and cyber regulatory engagements. You will collaborate with various GRC teams and subject matter experts across WTW, including Technology, Cyber Security, Business Operations, Internal Audit, Compliance, Risk, Privacy, and Legal. Your role will involve supporting and monitoring remediation activities for identified gaps in Information and Cyber Security and IT regulatory requirements across multiple regulated environments. Familiarity with industry standards and best practices for GRC-related IT and Cyber Security risk is essential. Strong communication, resourcefulness, independence, and adaptability are key attributes for this role.

Responsibilities

  • Execute regulatory deliverables, Request for Information (RFIs), Audits, and Regulatory questionnaire submissions focusing on GRC, ICS & Technology Risk within specified timelines.
  • Define communications, including planning, scoping, and issue management, for engagements with stakeholders (regulators, control owners, senior management) related to regulatory deliverables, RFIs, audits, and Regulatory questionnaire submissions.
  • Collaborate with the ICS Policies and Standard team to align ICS and Technology standards with regulatory requirements.
  • Coordinate and develop high-quality, timely responses to information requests, ensuring consistency and leveraging evidence.
  • Engage with the GRC controls testing team for application controls testing and support/monitor identified issues and gaps.
  • Support, manage, and monitor the identification and remediation of issues and gaps in line with WTW controls and regulatory requirements.
  • Engage with the GRC Risk Team to ensure identified risks are reported and managed according to risk processes.
  • Support management reporting on engagement status and issue management.
  • Support the wider team throughout regulatory engagements.
  • Contribute to the creation and delivery of presentations and briefings for key stakeholders.
  • Generate reports for technical and non-technical stakeholders, including documentation creation.
  • Understand wider GRC, IT, and ICS functions and their roles/responsibilities to support delivery.
  • Collaborate with other regulatory compliance functions (e.g., Audit, Compliance, Privacy, tech partners) to track organizational compliance and share expertise on complex regulatory requirements.
  • Work with business units to ensure controls are effective and appropriately address relevant regulatory requirements.
  • Facilitate attestation and demonstration of compliance with authorities, regulators, and auditors during compliance assessments and audits.
  • Collaborate in developing and shaping the Regulatory engagement operating model and standard processes.
  • Devise and maintain templates and tools for implementing GRC Regulatory Engagement programs and reporting.
  • Support the implementation, alignment, maintenance, and monitoring of controls following Information Security standards and frameworks.

Requirements

  • Extensive experience in GRC, Information Security, or Information Technology, with a proven ability to lead and deliver security, risk, and compliance initiatives.
  • Experience in identifying and managing Risk and compensating Controls.
  • Demonstrable experience in analyzing and applying regulatory requirements to security practices.
  • Demonstrable experience in supporting the business to implement controls to meet and maintain compliance in a highly complex global organization.
  • Strong Project Management skills and experience.
  • Excellent writing, presentation, and communication skills.
  • Experience working with a high degree of autonomy, managing own workload and delivering under tight timescales.
  • Familiarity with other technology, cybersecurity, and privacy regulations is beneficial.
  • Excellent analytical problem-solving skills.
  • General knowledge of IT operations.
  • Holistic understanding of risk processes and functions.
  • Good communication skills.
  • Global team player with good interpersonal and influencing skills.
  • Customer focus and relationship management.
  • Good analytical skills - ability to review and challenge materials produced by colleagues.
  • Delivery focused, possessing high levels of resilience and determination.
  • Ability to manage multiple, and changing, priorities.
  • Strong desire to continue to learn.

Skills

  • Governance Risk and Compliance (GRC)
  • Information Security
  • Information Technology
  • Technology Risk
  • Cyber Security
  • Regulatory Engagements
  • Risk Management
  • Compliance
  • Project Management
  • Communication
  • Analytical Skills
  • Problem-Solving
  • Stakeholder Management
  • Reporting

Location

  • London
  • Ipswich

Work Type

  • Hybrid working model

Experience Level

  • Senior Associate / Manager

Education Level

  • Ideally qualified to degree level, in IT or GRC related subject.
  • Information security certifications (e.g. CISSP, CCSP, CISA, CRISC, CISM, ISO 27001 LA) are preferable.
  • Project Management certification (e.g. PMP) is also preferable.

Benefits

  • 25 days of annual leave plus an extra WTW day
  • Private healthcare
  • Life insurance
  • Group income protection
  • Regular health assessments
  • Defined contribution pension scheme with matched contributions up to 10%
  • Hybrid working options
  • Employee assistance programme
  • Fully paid volunteer day
  • Electric vehicle car scheme
  • Share scheme
  • Cycle-to-work programme
  • Dental and optical cover
  • Critical illness protection

Equal Opportunity

  • Committed to equal employment opportunity.
  • Provide application, interview and workplace adjustments and accommodations to all applicants.
  • Contact candidatehelpdesk@wtwco.com for any foreseen barriers.