Skip to sign up

Job matched to your search

IT Risk Manager

Selby Jennings · Amsterdam

Amsterdam · On-siteFull-TimePosted Aug 11, 2026

Free · Join 5,000+ job seekers using Qarera

How well do you match this role?

Tap the skills you already have — then see your real match score, what’s missing, and your resume fixed for this job.

↑ tap the skills you have
Loading sign-in…
Free · no credit card · 30 seconds

Job description

We are representing a newly launched trading platform building critical infrastructure for the European fixed-income market.

You will be responsible for evaluating their technology infrastructure, monitoring and auditing critical technology providers, ensuring full compliance with the Digital Operational Resilience Act (DORA), and acting as a constructive, independent partner to the First Line (1LoD) operations team. Over time, this role is explicitly designed to evolve into a whole-of-business Enterprise Risk Management (ERM) mandate.

They operate in a heavily regulated, high-stakes environment. You must bring exceptional flexibility and a proactive, self-starter approach. The team steps in and steps up to solve critical issues, even when they fall outside a formal remit. A "no job too big, no job too small" work ethic is essential. You should be equally comfortable presenting risk strategy to the Senior Management Team as you are diving into the technical detail of a penetration testing report or a vendor SOC audit.

Key Responsibilities

  • Frameworks & Strategy: Review, implement, and monitor the firm's enterprise and IT risk management frameworks, ensuring strict alignment with DORA, ISO 27001, and relevant regulatory standards.
  • 2LoD Vendor & Operational Oversight: Act as the independent 2LoD partner to the Operations & Outsourcing Manager (1LoD), providing constructive challenge, risk reviews, and oversight of critical third-party technology providers.
  • Audits & Risk Assessments: Conduct independent risk assessments, gap analyses, and controls assurance across internal systems, critical IT vendors, and broader business operations.
  • Information Security & Resilience: Oversee information security controls, GDPR compliance, and Identity & Access Management (IAM) frameworks, while evaluating BCP and Disaster Recovery (DR) test outcomes.
  • Reporting & Incident Governance: Track enterprise risk metrics, manage IT incident escalation pathways, and present clear risk reporting directly to the CCO, COO, and CEO.

What We Are Looking For

  • Flexible Experience Profile: We welcome applications across a broad range of experience levels, from high-potential rising specialists to seasoned senior experts. Technical capability, execution mindset, and operational fit are prioritised over rigid tenure thresholds.
  • Risk & Assurance Background: Proven background in IT risk management, information security compliance, IT audit, or technology controls assurance (ideally within financial services, fintech, or critical infrastructure).
  • Regulatory & Framework Mastery: Strong familiarity with European technology regulations (DORA, NIS2) and major security/control frameworks (ISO 27001, NIST, SOC 2).
  • Domain Knowledge: General knowledge of capital markets, market infrastructure, or fixed-income trading is considered a strong plus.
  • AI-Forward Workflow: Practical experience with, or affinity for, using AI tools in a risk/IT context (e.g. threat modelling, control testing automation, or log/policy analysis) to scale lean operations.
  • Communication & Languages: Excellent ability to translate complex technical risks into clear, actionable business insights for leadership. Fluency in English is required.

Don’t just read the job — see if you’ll get it.

Get your match score, a resume tailored to this exact role, and jobs like it — free.

Check my fit for this job
Loading sign-in…
Apply →