Interface Recruitment
Technology Risk Officer - Border to Coast Pension Partnership

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Technology Risk Officer
LEEDS | ASSET MANAGEMENT | COMPETITIVE PACKAGE
Border to Coast Pensions Partnership is one of the UK's largest pension pools and the largest asset manager outside London and Edinburgh. Owned by 18 Local Government Pension Scheme partner funds, we manage approximately £120 billion of assets on behalf of more than two million members.
As a customer-owned and customer-focused organisation, our purpose is to make a difference for the Local Government Pension Scheme. Integrity, collaboration and sustainability are at the heart of how we work, and we are continuing to invest in our technology, data and innovation capabilities to support our long-term strategic ambitions.
Our client is an FCA regulated asset manager whose continued growth places an ever greater premium on trust. With an outsourced ICT model and a network of key service providers, the business requires a technology risk and control environment capable of ensuring that we are a sustainable organisation that can deliver for ‘clients’ over the long term.
This first line appointment provides that assurance. You will oversee technology risk across the IT estate, supporting the identification and mitigation of risk in daily operations, and evidencing the organisation's adherence to information security, operational resilience and outsourcing requirements.
What you will be doing
- Provide first line technology risk oversight across IT infrastructure, supporting risk identification, mitigation and control effectiveness
- Act as the bridge to second line risk, compliance and assurance, ensuring technology risks are documented, challenged and reported
- Evidence adherence to information security, operational resilience and outsourcing requirements, including FCA and ISO27001 expectations
- Coordinate internal and external audits, from control design evidence to remediation tracking and management responses
- Assess and report on technology and infrastructure risk, including third party, cloud and service resilience, escalating where required
- Produce clear risk reporting, management information and assurance outputs for management, risk forums and audit committees
- Keep ICT risk and compliance oversight effective, internally and with outsourced partners
- Support senior technology leadership in meeting risk, cyber and assurance standards
- Oversee third and fourth parties so compliance and resilience controls remain robust
- Monitor the cyber and information security controls that protect data assets and satisfy regulatory requirements
- Watch the changing cyber threat landscape and challenge the operating model to keep data resilient
- Contribute to continued ISO27001 accreditation and the security standards set out in the ICT strategy
- Drive cyber due diligence across key service providers, advising contract managers so suppliers operate to agreed levels of security
- Support operational resilience activity wherever technology risk, information security, supplier oversight or ICT controls are involved
- Identify and escalate risk across your area of responsibility
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
What you will need
- A strong understanding of technology and infrastructure risk: information security, cloud, third party and resilience
- Working knowledge of regulatory and audit expectations, including FCA, ISO27001, outsourcing and operational resilience, and how to evidence compliance
- A clear grasp of the three lines of defence model, operating comfortably across first line delivery and second line oversight
- Demonstrable experience in technology risk, information security, ICT governance, audit or assurance within demanding, complex business environments
- A track record of assessing technology controls and tracking remediation through to closure
- Familiarity with internal and external audit, producing the evidence that supports assurance activity
- Practice producing risk reporting, management information or committee level documentation
- An analytical, methodical eye for control design and control gaps
- The confidence to manage stakeholders across IT, risk, compliance, audit and senior management
- Clear, concise writing across risk documentation, management information and audit responses
- Strong planning and organisation under conflicting priorities, with high levels of integrity
- A degree or equivalent experience, with continued development in ICT, technology risk, information security, audit, assurance or operational resilience


Get help with your application
Your very own career expert that helps elevate your application to the next level.
It would also help if you have
- Financial services knowledge
- Experience of electronic document record management systems
- Previous technology risk work within a financially regulated company
- Direct involvement with FCA operational resilience, outsourcing or information security requirements
- Hands on ISO27001 and cyber security
- Day to day contact with outsourced ICT providers or key service providers
- Certification in information security, technology risk, audit, cyber security, ISO27001, IT service management or operational resilience
- Broader corporate awareness spanning health and safety, ICT systems, information management, data protection, procurement and outsourcing oversight
How to apply
Interface Recruitment is handling this appointment on behalf of our client. Every application receives a response, and every shortlisted candidate is qualified by a director before a CV is presented.
Apply here or to info@interfacerecruitment.co.uk or call 0113 299 0570 for a confidential conversation.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location