Jobs and Careers
SA

Technology & Operations Risk Manager | S3 | Chief Information & Resilience Office | Multiple Locations

Santander
Milton Keynes, United KingdomRemotefull_timeVerifiedPosted 19 Aug 2026
💰 £96,000/yr(£64,000/yr£96,000/yr)

About the role

Technology & Operations Risk Manager | S3 | Chief Information & Resilience Office | Multiple Locations

Country: United Kingdom

IT STARTS HERE

Santander (www.santander.com) is evolving from a global, high-impact brand into a technology-driven organisation, and our people are at the heart of this journey. Together, we are driving a customer-centric transformation that values bold thinking, innovation, and the courage to challenge what’s possible.

This is more than a strategic shift. It’s a chance for driven professionals to grow, learn, and make a real difference.

Our mission is to contribute to help more people and businesses prosper. We embrace a strong risk culture and all our professionals at all levels are expected to take a proactive and responsible approach toward risk management.

Santander Digital Services is the team of technology and operations at Santander. We are convinced of the importance of technology that is aligned with the requirements of the business and that out work not only brings value to users, people and communities but also fosters individual creativity. Our team of over 7,000 people in 8 countries (Spain, Portugal, Poland, UK, USA, Mexico, Chile and Brazil) develops and/or implements financial solutions across a broad spectrum of technologies (including Blockchain, Big Data and Angular among others) on all kinds of on-premise and cloud-based platforms.

THE DIFFERENCE YOU MAKE

Santander UK is looking for a Technology & Operations Risk Manager based out of Milton Keynes or Glasgow.

This role will provide independent oversight and challenge across technology and cyber risk, ensuring that risks are accurately identified, assessed, and managed within appetite.

This is a technically focused First Line of Defence (1LoD) role, requiring strong expertise in cybersecurity, IT risk, and control frameworks, as well as the ability to analyse risk data, challenge control environments, and drive improvements across Technology & Operations (T&O).

You will play a key role in ensuring that risk frameworks are not just followed, but are robust, data-driven, and aligned to regulatory expectations, with clear visibility of risk exposure and control effectiveness.

We’re shaping the way we work through innovation, cutting-edge technology, collaboration and the freedom to explore new ideas. To succeed in this role, you will be responsible for:

  • Providing independent oversight and challenge of Technology & Operations risk, ensuring alignment with Operational Risk Management frameworks.

  • Reviewing and challenging Risk & Control Self-Assessments (RCSA), ensuring completeness, accuracy, and robust control design.

  • Ensuring quality and integrity of Risk & Control Profiles (RCPs), including risk identification, control mapping, and residual risk assessment.

  • Overseeing risk data within tooling (e.g. Heracles), ensuring alignment across risks, issues, events, and risk appetite statements.

  • Monitoring adherence to Risk Appetite Statements (RAS), supporting breach management, root cause analysis, and remediation tracking.

  • Challenging control effectiveness, thematic reviews, and testing outcomes to identify systemic weaknesses.

  • Producing and analysing risk MI and reporting, identifying emerging risks, trends, and control gaps.

  • Driving continuous improvement of governance artefacts, processes, and risk engagement models across T&O.

WHAT YOU’LL BRING

Our people are our greatest strength. Every individual contributes unique perspectives that make us stronger as a team and as an organisation. We’re enabling teams to go beyond by valuing who they are and empowering what they bring.

The following requirements represent the knowledge, skills, and abilities essential for success in this role. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Professional Experience

  • Experience in technology risk, cyber risk, or operational risk within financial services (Required).

  • Experience providing independent oversight, challenge, or audit of control environments (2LoD or equivalent) (Required).

  • Experience working with RCSA, risk frameworks, and control assessment methodologies (Required).

  • Experience producing risk reporting and MI for governance forums (Required).

Education

    <

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Santander

View company profile →