Talent.com
Santander
Technology & Operations Risk Manager | S3 | Chief Information & Resilience Office | MultipleSantander • Glasgow
No longer accepting applications
Technology & Operations Risk Manager | S3 | Chief Information & Resilience Office | Multiple

Technology & Operations Risk Manager | S3 | Chief Information & Resilience Office | Multiple

Santander • Glasgow
9 days ago
Job type
  • Full-time
  • Part-time
Job description
Technology & Operations Risk Manager | S | Chief Information & Resilience Office | Multiple LocationsCountry: United Kingdom

IT STARTS HERE

Santander () is evolving from a global, high-impact brand into a technology-driven organisation, and our people are at the heart of this journey. Together, we are driving a customer-centric transformation that values bold thinking, innovation, and the courage to challenge what’s possible.

This is more than a strategic shift. It’s a chance for driven professionals to grow, learn, and make a real difference.

Our mission is to contribute to help more people and businesses prosper. We embrace a strong risk culture and all our professionals at all levels are expected to take a proactive and responsible approach toward risk management.

Santander Digital Services is the team of technology and operations at Santander. We are convinced of the importance of technology that is aligned with the requirements of the business and that out work not only brings value to users, people and communities but also fosters individual creativity. Our team of over , people in countries (Spain, Portugal, Poland, UK, USA, Mexico, Chile and Brazil) develops and/or implements financial solutions across a broad spectrum of technologies (including Blockchain, Big Data and Angular among others) on all kinds of on-premise and cloud-based platforms.

THE DIFFERENCE YOU MAKE

Santander UK is looking for a Technology & Operations Risk Manager based out of Unity Place, Milton Keynes or Glasgow.

This role will provide independent oversight and challenge across technology and cyber risk, ensuring that risks are accurately identified, assessed, and managed within appetite.

This is a technically focused First Line of Defence (LoD) role, requiring strong expertise in cybersecurity, IT risk, and control frameworks, as well as the ability to analyse risk data, challenge control environments, and drive improvements across Technology & Operations (T&O).

You will play a key role in ensuring that risk frameworks are not just followed, but are robust, data-driven, and aligned to regulatory expectations, with clear visibility of risk exposure and control effectiveness.

We’re shaping the way we work through innovation, cutting-edge technology, collaboration and the freedom to explore new ideas. To succeed in this role, you will be responsible for:

  • Providing independent oversight and challenge of Technology & Operations risk, ensuring alignment with Operational Risk Management frameworks.

  • Reviewing and challenging Risk & Control Self-Assessments (RCSA), ensuring completeness, accuracy, and robust control design.

  • Ensuring quality and integrity of Risk & Control Profiles (RCPs), including risk identification, control mapping, and residual risk assessment.

  • Overseeing risk data within tooling (e.g. Heracles), ensuring alignment across risks, issues, events, and risk appetite statements.

  • Monitoring adherence to Risk Appetite Statements (RAS), supporting breach management, root cause analysis, and remediation tracking.

  • Challenging control effectiveness, thematic reviews, and testing outcomes to identify systemic weaknesses.

  • Producing and analysing risk MI and reporting, identifying emerging risks, trends, and control gaps.

  • Driving continuous improvement of governance artefacts, processes, and risk engagement models across T&O.

WHAT YOU’LL BRING

Our people are our greatest strength. Every individual contributes unique perspectives that make us stronger as a team and as an organisation. We’re enabling teams to go beyond by valuing who they are and empowering what they bring.

The following requirements represent the knowledge, skills, and abilities essential for success in this role. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Professional Experience

  • Experience in technology risk, cyber risk, or operational risk within financial services (Required).

  • Experience providing independent oversight, challenge, or audit of control environments (LoD or equivalent) (Required).

  • Experience working with RCSA, risk frameworks, and control assessment methodologies (Required).

  • Experience producing risk reporting and MI for governance forums (Required).

Education

  • Undergraduate degree in Cybersecurity, Information Technology, Risk, or related field (Preferred).

  • Professional certifications such as CISA, CISSP, CISM, or equivalent (Preferred).

Languages

  • English (Required).

Hard Skills

  • Strong knowledge of cybersecurity risk, IT risk, and control frameworks (e.g. NIST, ITIL) (Required).

  • Experience with risk tooling and data management (e.g. Heracles or similar platforms) (Required).

  • Understanding of risk appetite frameworks, RCSA processes, and control testing methodologies (Required).

  • Knowledge of technology architecture, cyber threats, and vulnerability management concepts (Required).

  • Experience analysing risk data, events, and trends to identify control weaknesses (Required).

  • Familiarity with regulatory expectations (FCA/PRA) and operational risk frameworks (Required).

Soft Skills

  • Strong analytical thinking and problem-solving capability (Required).

  • Ability to challenge effectively and influence stakeholders across multiple levels (Required).

  • Strong communication skills, translating technical risk into business impact (Required).

  • High attention to detail and commitment to data accuracy and governance (Required).

  • Ability to work across teams and drive collaboration in complex environments (Required).

WE VALUE YOUR IMPACT

At Santander, your contribution matters. We recognise the difference you make every day, and we make sure you feel valued, supported and rewarded in return.
Here, recognition goes beyond pay. It’s about the pride you feel in your work, the impact you have on customers and communities, and the opportunities you have to grow and thrive — personally and professionally.

  • Salary Range:
    £,. - £,. per annum (depending on experience)

    This salary range represents the expected remuneration for the role. Annual salary is based on a standard -hour working week. Actual salary offered will depend on skills, experience, qualifications and location

  • days’ holiday plus bank holidays, which increases to days after yrs service, with the option to purchase up to contractual days per year

  • £, car allowance per year

  • Company funded individual private medical insurance

  • Protection for you and your family, with company-funded death-in-service benefit and income protection insurance, and the option to take advantage of discounted rates for additional life assurance and critical illness cover.

  • Share in Santander’s success by saving or investing in our share plans.

  • As a Santander UK employee, you are able to request staff versions of our products like our Edge Current Accounts and Credit Cards with no fees, as well as apply to many other deals and discounts in Santander products and services

  • Competitive rewards that reflect the real impact you make and the value you bring.

  • Wellbeing that goes beyond work — we work with a range of wellbeing partners across our pillars of wellbeing (physical, mental, social and financial) to give you access to a suite of apps, discounted gym and fitness access, weekly online classes, flexible healthcare and mental health support.

  • Support for every life stage — from menopause and pregnancy to parenthood and beyond, with enhanced family leave, childcare options and tailored wellbeing support.

  • Time to give back through volunteering opportunities that let you make a difference in the communities we serve.

  • Global growth opportunities to shape your career, learn new skills and explore what’s possible across our international network.

Ready to be recognised? It starts with you.

LOCAL COMPLIANCE

At Santander, we’re proud to be an inclusive organisation that provides equal opportunities for everyone — regardless of age, gender, disability, civil status, race, religion or sexual orientation.


We’re committed to creating a recruitment experience that’s accessible, fair and welcoming for all candidates.

We want our people to thrive — at work and at home — while delivering the best outcomes for our customers and supporting each other to grow.


To make this possible, our roles are site-based with a hybrid working pattern, where colleagues are expected to attend the office at least days per month (pro-rata for part-time roles).

When applying, please consider the travel distance, time and cost to your chosen office location(s).

Right to work in the UK

  • Every individual must have the right to work in the UK to commence employment with Santander either by way of nationality, visa or work permit. If you do require a working visa / permit this will not influence our decision on whether to progress your application. However, if you do not have a right to work, or an application for a working visa / permit is unsuccessful, Santander will not proceed with your application and will withdraw any conditional offer previously made.

We welcome applications on the understanding that, should you be offered this role, there may be no relocation package available. Santander will pay the employer mandatory government fees that are required to pay in connection with visa sponsorship. You may be liable for your own personal employee immigration and relocation costs.

WHAT TO DO NEXT

Create a job alert for this search

Technology & Operations Risk Manager | S3 | Chief Information & Resilience Office | Multiple Locations • Glasgow

Similar jobs

Risk Technology UI & Workflow Platforms Lead - Executive Director

JPMorgan Chase & Co.Glasgow, Scotland, United Kingdom
Full-time

Risk Technology UI & Workflow Platforms Lead - Executive Director.GLASGOW, LANARKSHIRE, United Kingdom.Job Category Software Engineering.Business Unit Corporate Sector.Posting Date 03/17/2026, 09:5... Show more

 • Promoted • New!

Risk Manager

KBR, IncGlasgow, Scotland, United Kingdom
Full-time

Risk Manager page is loaded## Risk Managerlocations: Glasgowtime type: Full timeposted on: Posted Todayjob requisition id: R2116451**Title:**Risk ManagerSimply put, at KBR, we do things tha... Show more

 • Promoted

Risk Manager

KBR, Inc.Glasgow, Scotland, United Kingdom
Full-time

Simply put, at KBR, we do things that matter.Every day, our people work together to deliver solutions that are helping solve the great challenges and opportunities of our time, including climate ch... Show more

 • Promoted

Hybrid Cyber Risk & Resilience Lead (Glasgow)

ScottishPowerGlasgow, Scotland, United Kingdom
Full-time

ScottishPower is seeking a Cyber Manager in Glasgow with a competitive salary of £63-79K plus benefits.The role focuses on managing cyber risks, aligning cyber strategies, and leading initiatives f... Show more

 • Promoted

ODC Site Lead, EMEA – Infrastructure & Risk Director

Morgan StanleyGlasgow, Scotland, GB
Full-time

A leading financial services firm is looking for an experienced ODC Site Manager to oversee day-to-day operations of Offsite Delivery Centers across EMEA.The role involves ensuring compliance with ... Show more

 • Promoted

Director of Cyber Defense & Threat Operations

JazwaresGlasgow, Scotland, United Kingdom
Full-time

A leading toy manufacturing company in Glasgow is seeking a Director of Cyber Security Operations and Threat Management to lead its cybersecurity efforts.This role involves overseeing the security ... Show more

 • Promoted

Cyber Risk & Resilience Manager

Iberdrola Energie Deutschland GmbHGlasgow, Scotland, United Kingdom
Full-time

Iberdrola Energie Deutschland GmbH is seeking a Cyber Manager in Glasgow to lead cyber security initiatives.The role focuses on translating governance frameworks and managing cyber risks while ensu... Show more

 • Promoted

Director, Cybersecurity, Cyber Resilience, TC, UKI

EYGlasgow, Scotland, GB
Full-time

Job Title: Director – Cybersecurity – Cyber Resilience.At EY, we’re all in to shape your future with confidence.We’ll help you succeed in a globally connected powerhouse of diverse teams and take y... Show more

 • Promoted

Credit Risk Analytics Manager

Change RecruitmentGlasgow, SCT, GB
Permanent

Credit Risk Analytics Manager | Permanent | Glasgow Hybrid (3 days office).Senior Analytics leadership role within a well-established financial services environment.Ownership of unsecured credit ri... Show more

 • Promoted • New!

Risk Manager

KBRGlasgow, Scotland, United Kingdom
Full-time

Simply put, at KBR, we do things that matter.Every day, our people work together to deliver solutions that are helping solve the great challenges and opportunities of our time, including climate ch... Show more

 • Promoted

Chief Cyber Security & Resilience Leader

Head ResourcingGlasgow, Scotland, United Kingdom
Full-time

Head Resourcing is recruiting a Head of Cyber Security in Glasgow.This senior leadership role involves shaping and delivering cyber security strategies across multiple organizations.Responsibilitie... Show more

 • Promoted

Cyber Risk & Resilience Manager (Hybrid, Glasgow)

Iberdrola SAGlasgow, Scotland, United Kingdom
Full-time

Iberdrola SA seeks a Cyber Manager in Glasgow with a competitive salary of £63-79K plus bonuses and benefits.The role emphasizes cyber risk management and incident handling, working closely with se... Show more

 • Promoted

Management Consultant – Operational Resilience & Cyber

Cyber UKGlasgow, Scotland, United Kingdom
Permanent

Operational Resilience & Cyber Risk Consultant – all levels.Location: Glasgow & Edinburgh (Hybrid).Practice Area: Financial Crime, Risk, Regulation, Finance Transformation.Build resilience where it... Show more

 • Promoted

Risk Manager

IberdrolaGlasgow, Scotland, United Kingdom
Full-time

PLEASE NOTE THIS ADVERT CLOSES THE DAY BEFORE ANY AUTOMATED DATE SHOWN - PLEASE REFER TO THE CLOSING DATE IN THE BODY OF THE ADVERT.Location: Cambuslang or Edinburgh.Salary from £61,600 to £77,000 ... Show more

 • Promoted

Strategic Infrastructure Risk Manager

First Recruitment GroupScotland, GB
Full-time

A leading recruitment agency is seeking an experienced Risk Manager to oversee risk management in a complex infrastructure programme.The role involves maintaining the risk profile, facilitating ris... Show more

 • Promoted

Chief Cyber Policy & Resilience, Energy Regulation

OfgemGlasgow, Scotland, GB
Full-time

An independent energy regulator in the UK is seeking a Head of Cyber Policy to lead innovative strategies that combat cybersecurity threats to the energy sector.This senior role requires experience... Show more

 • Promoted

Technology Risk Assurance Director — Lead IT Audit & Growth

Adaptive CareersGlasgow, Scotland, United Kingdom
Full-time

Adaptive Careers is seeking a Technology Assurance Director to lead and grow a national Internal IT Audit portfolio in Glasgow or Edinburgh.This role requires over 15 years of IT Audit experience, ... Show more

 • Promoted

Technology Risk Assurance Director | Lead National IT Audit

Adaptive GroupScotland, United Kingdom
Full-time

Adaptive Group is seeking a Technology Assurance Director in the United Kingdom, offering a unique opportunity to shape a growing service line.You will lead an Internal IT Audit portfolio, act as a... Show more