
Senior Tech & Data Risk Manager
bol
Senior Tech & Data Risk Manager
Bol is seeking a Senior Tech & Data Risk Manager to ensure the security, resilience, and compliance of its retail tech platform. The role involves managing tech, cyber, and data risks, translating regulations like NIS2 and DORA into actionable controls, and acting as a trusted advisor to senior leadership. The ideal candidate is an expert in risk management, agile environments, and regulatory compliance, with strong communication skills.
Senior Tech & Data Risk Manager
Bol is seeking a Senior Tech & Data Risk Manager to ensure the security, resilience, and compliance of its retail tech platform. The role involves managing tech, cyber, and data risks, translating regulations like NIS2 and DORA into actionable controls, and acting as a trusted advisor to senior leadership. The ideal candidate is an expert in risk management, agile environments, and regulatory compliance, with strong communication skills.
Salary
Core Qualifications
Technical (Must-have)
Soft Skills
Key Responsibilities
- Provide data-driven insights into tech, cyber, and data risks to strengthen risk-based decision-making across all tech, data, and product domains.
- Drive a structured risk management cycle to enhance maturity of Tech & Data Risk Management frameworks.
- Enable teams to identify, assess, and mitigate risks proactively.
- Continuously improve and embed risk processes, taxonomies, and reporting into daily operations.
- Act as a trusted advisor to senior stakeholders and leadership teams on Tech & Data Risk Management frameworks.
- Engage closely with senior management to ensure clear visibility of key risks and drive formal risk acceptance processes.
- Provide independent challenge and oversight on risk assessment outcomes and risk acceptance decisions.
- Develop and deliver high-quality risk insights and reports to support senior leadership and governance oversight.
- Translate complex regulations such as NIS2, GDPR, DORA, and the AI Act into actionable controls and policies.
- Ensure the organization maintains constant readiness for regulatory inspections and supervisory expectations.
- Raise the bar for how tech, cyber, and data risks are managed across complex tech and product domains.
- Translate complex regulations into practical, actionable policies that teams can embed into daily operations.
- Guide senior management through formal risk acceptance processes and drive data-driven, risk-based decision-making.