Head of IT Governance

Company: Zurich
Apply for the Head of IT Governance
Location: Greater London
Job Description:

Working hours: This role is available on a part‑time, job‑share or full‑time basis.

Salary: Competitive salary packagedependent on experience plus an excellent benefits package.

Location: Swindon, London or Fareham.

Closing date for applications: 22nd April 2026.

Overview

This is a high‑impact role with real influence across the Technology organisation. As Technology Risk and Controls Lead you will shape and strengthen the end‑to‑end technology risk and control environment, acting as the single point of first‑line accountability for technology risk.

You will define and continuously evolve how operational, cyber, resilience and change‑related risks are identified, assessed and managed, ensuring controls are effective, proportionate and aligned to regulatory expectations. Working closely with senior technology and business leaders, you will provide clear oversight of risk posture and enable confident, risk‑based decision making.

This role offers the opportunity to protect and future‑proof the technology estate while supporting innovation, delivery and a strong, proactive risk culture.

What will you be doing?

As Technology Risk and Controls Lead you will own and lead the technology risk management framework, ensuring strong alignment with business unit risk, internal policy and regulatory expectations.

You will provide authoritative oversight of technology risk, shape and continuously improve the Technology Control Framework to ensure risks across operational, cyber, resilience and change domains are effectively identified, assessed and managed. A core part of the role is driving uplift in control maturity through effective testing, monitoring and sustainable remediation of key risk exposures.

You will ensure ongoing compliance with technology risk requirements, including risk appetite, resilience obligations and relevant regulation, working closely with second‑line risk teams to maintain consistency and assurance. Partnering with Operational Resilience teams, you will align technology risks and controls to important business services, validating dependencies and resilience expectations with business stakeholders.

You will work closely with senior leaders across Technology, Risk, Cyber, Operations and Change to embed a strong risk culture and ensure risk considerations are central to decision making and delivery. The role also provides expert risk input into significant change initiatives, supports the proactive identification of emerging technology risks, and delivers high‑quality, data‑driven risk reporting for senior leadership, risk committees and audit. You will act as the primary point of contact for technology risk‑related audit activity, overseeing clear responses and timely, sustainable remediation.

What are we looking for?

You bring extensive experience in technology risk, controls and assurance, with a strong track record of designing, implementing and governing effective risk and control frameworks in complex technology environments. You have a solid understanding of modern technology landscapes, including infrastructure, cloud, applications, service management and cyber operations, and are comfortable operating across both legacy and evolving platforms.

Professional qualifications in risk or security, such as CIRM, CRISC, CISA, CISM or CISSP, would be advantageous, but practical experience and credibility in the field matter most.

You are skilled at identifying opportunities to uplift control maturity, driving effective testing, monitoring and remediation to achieve sustainable risk reduction rather than short‑term fixes. Highly analytical, you are confident working with complex risk data and able to translate it into clear, insightful reporting that supports confident decision making at senior levels.

You have a strong grasp of regulatory and policy expectations, including operational resilience, technology risk frameworks and relevant industry standards, and understand how to apply them in a pragmatic, proportionate way.

Just as important, you are an excellent collaborator who builds trusted relationships across Technology, Risk and the wider business. You communicate with clarity and influence, and are passionate about embedding a consistent, risk‑aware culture that supports both resilience and delivery.

What will you get in return?

We offer a wide range of employee benefits so our people can choose what fits them and their life. Our benefits include a 12% defined non‑contributory pension scheme, an annual company bonus, private medical insurance and the option to buy up to an additional 20 days or sell some of your holiday.

Equal Opportunity Employer

We’re inclusive and we want all candidates to feel comfortable and be able to perform at their best. We treat all applicants fairly and with respect, irrespective of background, disability or any protected characteristic. We are committed to continuous improvement and supporting the wellbeing of our people.

Your application will be considered on merit, with no discrimination on any ground covered by law.

#J-18808-Ljbffr…

Posted: April 17th, 2026