Back to board
Early applicant
mattioliwoods·1 day ago

Senior Risk Manager

HybridHybridMid · 5-8 yearsH1B likely

About this role

Mattioli Woods is at an important moment. Following significant growth and acquisition activity, we are building the infrastructure, governance and risk frameworks that will define how the combined group operates for years to come. This role sits at the centre of that.

We are looking for a Senior Risk Manager to join our Business Assurance function - a senior practitioner who combines genuine hands-on expertise across operational resilience, third-party risk and technology risk. This is not an oversight role. It is a role for someone who knows these disciplines deeply and wants to do the work, as well as lead it.

The opportunity

This is a role with real scope. You will be joining at a point where frameworks are being actively shaped across a multi-entity group. Assurance here is expected to drive meaningful outcomes, not just process compliance.

Reporting to the Head of Business Assurance, you will have direct access to senior stakeholders, genuine ownership of critical risk disciplines, and the opportunity to leave a lasting mark on how the group manages some of its most important risks.

What this role requires

  • Demonstrable, firsthand experience in operational resilience and/or business continuity management, with a track record of designing, testing and maintaining BCP frameworks

  • Working knowledge of PRA SS1/21 and FCA SYSC15A operational resilience requirements

  • Practical experience in third-party and supplier risk management, including control testing and due diligence in an outsourcing context

  • Experience in technology risk and/or information security risk management from a first line or risk function perspective

  • Experience managing or developing colleagues, with the ability to provide clear direction and support performance

  • A background in financial services or another regulated sector would be an advantage, as would familiarity with AI governance or cyber security frameworks such as NIST or ISO 27001

What you'll be doing

  • Leading the design, maintenance and testing of Business Continuity Agenda and the Group's operational resilience framework, ensuring compliance with PRA SS1/21 and FCA SYSC15A

  • Overseeing the Group's third-party and supplier risk management, from due diligence on new relationships through to control testing and issue escalation

  • Providing first line oversight of the Group's technology risk profile, including information security, cyber threats and IT resilience

  • Contributing to the Business Assurance control testing and monitoring plan, producing clear management information and risk reporting for senior audiences

  • Developing first line team members, providing coaching, direction and performance oversight across a geographically dispersed function

The right person

You are likely operating at a senior level in a risk or assurance function and looking for a role with broader scope - to own a specialism, build something and influence how it develops. You are comfortable with complexity, take pride in the quality of your work, and care about getting it right for clients as much as for the business.

What's in it for you:

  • competitive salary and performance-linked incentive structure

  • hybrid working model combining home and Leicester office-based collaboration

  • the opportunity to shape and scale a strategically important national growth initiative

  • access to a highly experienced leadership team and strong internal infrastructure

  • 34.5-hour working week

  • 25 days’ holiday plus statutory holidays, increasing with service

  • pension scheme with 5% employer contribution

  • health cash plan, life assurance and group income protection

  • ongoing training, development and long-term career opportunities within a supportive and ambitious culture