
Assist the ORM team in maintaining and updating the risk register by identifying risks related to IT systems, cybersecurity, digital banking platforms, APIs, and cloud infrastructure.
Support the team in conducting technology-related risk assessments and documenting potential threats and controls in collaboration with IT and business stakeholders.
Provide technical input in evaluating operational risks arising from digital transformation initiatives, new systems, and change management activities.
Help analyze incidents and near misses with technology implications, supporting root cause analysis and formulation of mitigation strategies.
Contribute to the preparation of risk dashboards and RCSA reports with a focus on technology risks for review by senior risk committees.
Coordinate with IT and Information Security teams to collect and consolidate inputs for risk assessments and monitoring key risk indicators (KRIs) related to technology.
Assist in mapping risks related to technology vendors and third-party services, ensuring their inclusion in risk registers and control assessments.
Operating Environment, Framework and Boundaries, Working Relationships:
Support the ORM team in adhering to regulatory guidelines, internal frameworks, and Mashreq Group standards concerning operational risk and technology risk.
Work under the guidance of senior ORM staff on technology-related queries and tasks.
Problem Solving:
Assist in identifying potential vulnerabilities in IT systems or digital services and propose possible mitigants to the ORM team.
Support in interpreting and documenting complex technical risk areas for integration into the operational risk framework.
Decision Making Authority & Responsibility:
Acts under the supervision of the ORM Team; not a decision-making role but provides technical insight to inform ORM-led decisions and actions.
Skills and Experience:
Experience: 2–4 years in IT risk, information security, audit, or operational risk roles in banking or fintech.
Education: Bachelor’s degree in Information Technology, Computer Science, Engineering, or related field.
Strong understanding of IT infrastructure, cybersecurity principles, cloud computing, and digital systems.
Good analytical and communication skills; ability to explain technical risks in a business context.
Job Type: Full-time
Education:
- Bachelor's (Required)
Work Location: In person
