Audit & Risk Lead – London
About finova
finova is the UK’s largest cloud-based mortgages and savings software provider, supporting over 60 leading lenders, 3000 mortgage brokers and 200 financial institutions. Our suite of award-winning software includes a Core Banking Platform, Broker Platform and finova Connect, a range of solutions that connect lenders, intermediaries and consumers. Fast implementation and open architecture are at the centre of our technology, giving our customers the flexibility to integrate into their existing systems or configure solutions to meet the needs of their business.
GRC, Audit and Security are a large focus for finova as we step into the next level of maturity as an organisation, this role will assist a GRCS function in its infancy to mature our GRCS levels across the business.
Role Overview:
This role is accountable to the Head of Risk & Compliance, and ultimately the COO.
As the Audit & Risk Lead within the R&C function, you will play a crucial role in ensuring the delivery of compliance, security, and governance within our solutions offered to clients' in Azure & AWS cloud-hosted estates.
Responsibilities:
- Assess and implement compliance measures in line with the R&C control framework.
- Audit and review control sets internally of the product in line with our control framework and ISO certification.
- Manage client audits on the products as part of the wider Client Governance Schedule.
- Interlink with the wider R&C framework where there are control remediations as a result of audit findings or risk events.
- Work alongside the wider risk team to implement and further embed risk management.
- Engage with clients to perform their audits, identify gaps and work with stakeholders to provide management responses.
- Support monthly & quarterly reporting on risk and implementation plans relating to risk management as part of the R&C function.
- Collaborate with other senior leaders within finova to integrate compliance and security measures into product development and service delivery.
About you:
- Bachelor’s degree in computer science, Information Security, Business Management, or a related field.
- Extensive experience (5+ years) in managing compliance and governance for fintech software companies in the financial services sector.
- Knowledge of DevOps development cycles and secure development is an advantage.
- In-depth knowledge of SS2/21 material outsourcing, FCA & PRA regulations, NIST, and ISO.
- Experience with Azure/AWS cloud services and Azure DevOps Boards and security practices related to cloud-hosted estates is greatly desired.
- The ability to work with multiple different L1 departments in software development and servicing.
What will you get from joining the finova family?
- 25 days holiday in each calendar year plus bank holidays.
- Flexible hybrid working policy.
- Life Assurance, Group Income Protection and Private Medical Insurance.
- Pension scheme via Salary Exchange.
- Employee Assistance Programme with counselling sessions available.
- Enhanced maternity and paternity pay.
- Cycle to Work Scheme.
- Access to a huge range of benefits & discounts.
- One day's paid volunteering day a year.
Equal Opportunity Statement
Diverse teams really are the best teams, we promote a working environment in which diversity is recognised, valued and encouraged. We are committed to principles of fairness and mutual respect where everyone accepts the concept of individual responsibility.
#J-18808-Ljbffr