Information Risk & Business Resilience Manager

Posted Yesterday
Be an Early Applicant
Nairobi, KEN
In-Office
Senior level
Financial Services
The Role
Provide second-line oversight and advisory across information risk, data privacy, business resilience, technology and cyber risk. Localise group frameworks, embed risk appetite, facilitate assessments and scenario analysis, coordinate assurance and remediation, and produce integrated risk insights for management and governance committees.
Summary Generated by Built In
Company Description

Standard Bank Group is a leading Africa-focused financial services group, and an innovative player on the global stage, that offers a variety of career-enhancing opportunities – plus the chance to work alongside some of the sector’s most talented, motivated professionals. Our clients range from individuals, to businesses of all sizes, high net worth families and large multinational corporates and institutions. We’re passionate about creating growth in Africa. Bringing true, meaningful value to our clients and the communities we serve and creating a real sense of purpose for you.

Job Description

To provide independent second-line oversight, advisory, challenge and monitoring across the overlapping risk domains of Information Risk, Data Privacy, Business Resilience, Technology Risk and Cyber Risk. The role will support the Head of Non-Financial Risk by localising Group frameworks and standards, embedding risk appetite, facilitating risk assessments and scenario analysis, coordinating assurance and remediation, and producing integrated risk insights for management and governance committees. The role is not the first-line owner of risk execution; it enables, challenges and monitors business and technology risk owners to ensure risks are identified, assessed, treated, reported and escalated within appetite

This is a strategic second-line risk position for an experienced professional with the ability to translate complex and interconnected risk themes into actionable insights and governance outcomes. The role requires a strong balance of technical credibility, business pragmatism, and stakeholder influence to support growth ambitions while maintaining robust protection of clients, information assets, technology infrastructure, critical services, and regulatory confidence.

Qualifications

Type of Qualification: First Degree
Field of Study: Information Technology, Computer Science, Information Risk Management, Information Security, Business, Commerce, Law, Finance, Audit or related discipline.

Professional / Technical Certifications: At least one relevant certification is preferred

Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Security Professional (CISSP), ITIL, ISO 22301, ISO 27001, Certified Data Protection Officer or equivalent


Experience Required
7-8 years

  • Strong understanding of Non-Financial Risk as a second-line function and clear appreciation that business and technology remain accountable for first-line execution and control remediation.
  • Demonstrable experience in at least three of the following domains: Information Risk, Data Privacy, Business Resilience, Technology Risk, Cyber Risk, Operational Risk, IT Audit, Technology Governance or Business Continuity.
  • Ability to interpret Group standards and regulatory expectations and translate them into practical country implementation actions.
  • Strong governance writing capability: must be able to prepare committee-ready risk commentary, issue escalation notes and executive summaries.
  • Strong analytical capability and attention to detail, including comfort working with dashboards, risk registers, incident data, audit findings and action trackers.
  • Ability to influence senior stakeholders and provide constructive challenge without compromising relationship management.
  • High integrity, confidentiality, independence, professional scepticism and sound judgement when handling sensitive incidents, breaches, regulatory matters and risk acceptance decisions.
  • Working knowledge of risk systems and collaboration tools, including Risk Market Place or equivalent governance, risk and compliance platforms, Microsoft Excel, PowerPoint, Word and Teams.

Additional Information

Behavioural Competencies:

  • Articulating Information
  • Developing Expertise
  • Documenting Facts
  • Examining Information
  • Following Procedures
  • Interacting with People
  • Managing Tasks

Technical Competencies:

  • Evaluating Risk Management Effectiveness
  • Information Security
  • Information Security Management
  • Cyber and Technology Risk Oversight
  • Analytical Skills
  • Risk Response Strategy

Skills Required

  • First degree in IT, Computer Science, Information Risk Management, Information Security, Business, Commerce, Law, Finance, Audit or related discipline.
  • 7-8 years relevant experience in risk, resilience, technology risk, cyber risk, IT audit or related domains.
  • Demonstrable experience in at least three of: Information Risk, Data Privacy, Business Resilience, Technology Risk, Cyber Risk, Operational Risk, IT Audit, Technology Governance or Business Continuity.
  • Ability to interpret group standards and regulatory expectations and translate into practical country implementation actions.
  • Strong governance writing capability: committee-ready risk commentary, escalation notes and executive summaries.
  • Strong analytical capability and attention to detail, comfortable with dashboards, risk registers, incident data, audit findings and action trackers.
  • Ability to influence senior stakeholders and provide constructive challenge while maintaining relationships.
  • High integrity, confidentiality, independence, professional scepticism and sound judgement handling sensitive incidents, breaches and regulatory matters.
  • Working knowledge of risk systems and collaboration tools, including Risk Market Place or equivalent GRC platforms, Microsoft Excel, PowerPoint, Word and Teams.
  • At least one relevant professional/technical certification (CISA, CISM, CRISC, CISSP, ITIL, ISO 22301, ISO 27001, Certified Data Protection Officer or equivalent).

Standard Bank Group Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Standard Bank Group and has not been reviewed or approved by Standard Bank Group.

  • Leave & Time Off Breadth Leave options span vacation, study, parental, compassionate/family responsibility, sick/short‑term incapacity, sabbatical, recognition and optional unpaid leave, subject to country practices. This breadth provides flexibility to manage family, study, health, and rest needs.
  • Healthcare Strength Core protection includes medical cover and death/incapacity insurance, with many markets offering permanent health insurance and optional life/funeral or gap‑cover add‑ons. Wellness and counselling programs further strengthen day‑to‑day health support.
  • Fair & Transparent Compensation Formal remuneration materials emphasize equal pay for work of equal value, structured market alignment, and pay‑equity analyses alongside clawback/forfeiture provisions. This governance signals predictable, fairness‑oriented pay practices.

Standard Bank Group Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Johannesburg
63,856 Employees
Year Founded: 1862

What We Do

As a brand with a legacy of 161 years in Africa, we have a deep understanding and belief in the boundless opportunities that this continent presents. Our vision extends beyond mere geography; it encompasses a profound recognition of the potential for growth that resonates within our people, customers, entrepreneurs, and all who share our unwavering commitment and passion for investing in Africa. With a presence in 20 countries across sub-Saharan Africa, we have cultivated a diverse community of the most skilled, innovative, and creative minds in the industry. Our purpose is to drive Africa's growth, acting as a catalyst for inclusive and sustainable economic development in the regions we serve. We strive to improve the lives of our fellow Africans by conducting business in an ethical and responsible manner. As a trusted partner, we consistently set higher standards and aspire to become better with each endeavour. We are more than just a banking institution; we are a driving force behind Africa's growth. Join us on this transformative journey. Together, we have the collective power to propel Africa into the future, making tangible progress for all who proudly call Africa home.

Similar Jobs

Ericsson Logo Ericsson

Financial Analysis Graduate

Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
In-Office or Remote
2 Locations
88000 Employees

M-KOPA Logo M-KOPA

Telesales Representatives - eMobility

Fintech • Payments • Financial Services
Remote or Hybrid
3 Locations
2507 Employees

Virtual Pay International Limited Logo Virtual Pay International Limited

Head of Sales

Fintech • Information Technology • Payments • Financial Services
In-Office
Nairobi, KEN
63 Employees
Remote or Hybrid
Nairobi, KEN
26 Employees

Similar Companies Hiring

Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account