- Location
- London, United Kingdom
- Workplace
- Onsite
- Type
- Full-time
- Department
- IT
- Seniority
- Manager
- Source
- Workday
Description
Job Description for Technology Risk Manager - Regulatory Reporting Solutions Engineering
Job Description
Job Title: Manager, Technology Risk & Controls (Regulatory Reporting Solutions Engineering)
Global Grade: 13
Company / Division: London Stock Exchange Group - Markets & Risk Intelligence Engineering
Location: London
Work Style: Blended (3 days per week in office – St Martins Court PSQ)
Role Type: Individual Contributor
Job Family / Level: Risk (Technology, Cyber & Resilience Risk)
Reports To: Rupert Thomas - Director, Technology Risk & Controls
Role Purpose
The Manager, Technology Risk & Controls is accountable for leading technology risk, control and regulatory compliance activities across Regulatory Reporting Solutions Engineering. The role applies expert knowledge of technology risk, cyber security, operational resilience and regulatory expectations to ensure risks are identified, assessed, controlled and reported in line with LSEG policy, regulatory standards and industry best practice.
The role will coordinate risk and control activity, produce management information, support governance forums, facilitate reviews, track issue remediation, and partner with engineering, product, production management, cyber, cloud, infrastructure, second-line risk, audit, compliance and legal stakeholders.
Key Responsibilities & Accountabilities
Technology Risk & Control Management
Support the identification, assessment, monitoring and mitigation of technology, cyber and resilience risks across products, platforms, services and third-party dependencies.
Coordinate risk and control activities to ensure risks are appropriately recorded, assessed and managed in accordance with internal policies and standards.
Facilitate regular reviews of risk mitigation plans, ensuring actions, issues and control gaps are tracked through to completion.
Contribute to the maintenance and continuous improvement of technology risk frameworks, control standards and supporting processes.
Provide constructive challenge on control effectiveness, evidence quality and risk treatment approaches.
Regulatory Compliance & Oversight
Support implementation of technology, cyber security and operational resilience requirements applicable to Regulatory Reporting Solutions, including DORA obligations and relevant regulatory reporting expectations.
Assist in translating regulatory obligations into practical control requirements and governance processes.
Coordinate evidence gathering and responses for regulatory reviews, ICT risk management assessments, SOC 2 assurance and internal audit activity.
Escalate emerging compliance risks, control weaknesses and potential breaches in a timely manner.
Maintain awareness of relevant regulatory developments and industry best practice.
Operational Resilience
Embed operational resilience requirements within Regulatory Reporting Solutions engineering, technology, production and change activities.
Contribute to resilience assessments, scenario testing, control validation and remediation activities.
Coordinate resilience-related actions, evidence and reporting to demonstrate compliance with internal and external requirements.
Work with engineering, production management, cyber, infrastructure and business stakeholders to strengthen resilience across regulated reporting services and supporting platforms.
Governance, Risk Reporting & MI
Produce and maintain high-quality risk and control management information for governance forums and senior stakeholders.
Support the preparation of committee materials, risk papers, dashboards and reporting packs.
Monitor and report on key risk indicators, control metrics and remediation progress.
Analyse trends and emerging themes to support risk-informed decision making.
Ensure risk data remains accurate, complete and appropriately evidenced.
Risk Assessment, Issue Management & Remediation
Coordinate technology risk assessments, control reviews and thematic risk activities.
Support the identification, recording and assessment of technology, cyber and resilience risks.
Track remediation plans for risk events, audit findings, control deficiencies and regulatory actions.
Provide oversight of action delivery, challenging delays and escalating concerns where required.
Ensure remediation activities are appropriately evidenced and sustainably implemented.
Third-Party & Technology Dependency Risk
Support oversight of technology suppliers, cloud services and other critical dependencies from a risk and control perspective.
Coordinate due diligence, assurance reviews and risk assessments relating to third-party services.
Monitor remediation activity arising from supplier reviews and control assessments.
Promote alignment with enterprise standards relating to cloud, supplier and technology risk management.
Maintain effective stakeholder relationships to support the management of dependency-related risks.
Stakeholder Partnership & Risk Advisory
Act as a trusted partner to engineering, product and technology teams on risk and control matters.
Provide practical guidance to support risk-informed decision making and delivery outcomes.
Build effective relationships across first-line, second-line and assurance functions.
Communicate complex risk and regulatory topics clearly for both technical and non-technical audiences.
Promote a strong risk and control culture through collaboration, coaching and constructive challenge.
Qualifications & Experience
Essential
Degree or equivalent professional experience.
Relevant certifications such as CISM, CISSP, CRISC, ITIL or similar.
Significant experience in technology risk and controls within financial services or other regulated environments.
Proven experience supporting regulatory engagement, audits, and governance forums.
Strong understanding of technology control frameworks, cyber security risk, and operational resilience concepts.
Desirable
Knowledge of regulatory reporting services, including trade repository and approved reporting mechanism environments, is desirable.
Experience working in or supporting regulated reporting services, Financial Market Infrastructure or regulated information services.
Familiarity with cloud, third‑party risk, and data resilience control environments.
Core Skills & Proficiency
· Regulatory risk interpretation and control mapping
· Technology and cyber risk management frameworks
· Operational resilience and business service protection
· Governance, MI and executive-level reporting
· Stakeholder engagement and influencing without authority
· Clear, concise written and verbal communication
Career Stage:
ManagerLondon Stock Exchange Group (LSEG) Information:
Join us and be part of a team that values innovation, quality, and continuous improvement. If you're ready to take your career to the next level and make a significant impact, we'd love to hear from you.
LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.
Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.
Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce.
We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone’s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs.
You will be part of a collaborative and creative culture where we encourage new ideas. We are committed to sustainability across our global business and we are proud to partner with our customers to help them meet their sustainability objectives. Our charity, the LSEG Foundation provides charitable grants to community groups that help people access economic opportunities and build a secure future with financial independence. Colleagues can get involved through fundraising and volunteering.
LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.
Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it’s used for, and how it’s obtained, your rights and how to contact us as a data subject.
If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.