Prague, Jihomoravský kraj
Director - ICT Security Reporting
Director, ICT Risk and Security Reporting
Most technology risk reporting roles exist to document what's already happened. This one exists to shape what happens next.
The Opportunity
This is a newly created Director-level position within the Risk function of one of Europe's leading international banks. You'll be joining at the point where the function is being built, not inherited, which means you'll have genuine influence over how ICT risk and security reporting is structured, governed, and matured from the ground up.
The regulatory environment is as complex as it gets right now: DORA is live, EBA ICT guidelines are evolving, and banks are under real scrutiny on operational resilience. You'll be working at the centre of all of it, translating technical and cyber risk into intelligence that drives decisions at board and executive level.
Critically, this isn't a back-seat reporting role. You'll be expected to challenge the first line, push back where data quality or risk transparency falls short, and bring an architectural view of technology risk that goes beyond compliance checklists. The business wants someone with enough credibility and backbone to be genuinely heard.
There is a clear path upward for the right person. This is a role you can grow into a broader leadership position, in a bank that operates at international scale.
The Role
Own and evolve the ICT Risk and Security reporting framework across the bank
Deliver board-level, executive, and risk committee reporting on technology and cyber risk
Translate complex technical and security risk data into clear, actionable business narratives
Develop risk metrics, KRIs, dashboards, and management information across ICT and cyber domains
Identify emerging risks and systemic themes across technology, cyber, resilience, and third-party environments
Challenge the first line on data quality, risk transparency, and governance consistency
Support regulatory and governance obligations including DORA and EBA ICT guidelines
Drive continuous improvement in reporting automation, data visualisation, and risk analytics
Partner with senior stakeholders across Technology, Cyber Security, Risk, Compliance, and Internal Audit
What You'll Need
Significant experience in ICT Risk, Technology Risk, Cyber Risk, or Information Security Governance, ideally within banking or regulated financial services
An architectural view of technology risk, with the ability to identify systemic issues, not just point-in-time findings
Proven experience producing board-facing or executive-level risk reporting
Strong working knowledge of DORA, EBA ICT guidelines, and operational resilience frameworks
The credibility and confidence to challenge senior stakeholders and first-line teams
Exceptional ability to communicate complex risk information clearly to non-technical audiences
Relevant certifications such as CISA, CRISC, CISSP, or CGEIT are advantageous
Fluent English required
What's on Offer
Competitive compensation package commensurate with Director-level seniority
Company pension scheme and comprehensive risk coverage including accident insurance
Car leasing and bike leasing schemes with tax advantages
IT device leasing for personal use
Hybrid working model based in Prague
Clear scope for progression within an international banking group
How to Apply
Apply via the link below. Your CV doesn't need to be perfect, send what you have and we'll take it from there. If you'd prefer a conversation before committing to anything, just give us a call.
Learn More