IT Governance, Risk & Compliance Manager (all genders)
fulltime_permanent mid_level 55176.52- EUR/yearJob Overview
Erste Group was founded in 1819 as the first Austrian savings bank and today it is one of the largest banking groups in Central and Eastern Europe (CEE). As an attractive employer, Erste Group offers interesting career opportunities in an international environment.
The “IT Strategy and Transformation” department is a strategic IT governance and steering function within the bank’s IT organization, ensuring technology services and change initiatives are delivered securely, efficiently, and in full compliance with regulatory requirements. Acting as the CIO’s control and coordination hub, the team oversees outsourcing governance, IT risk and compliance, IT portfolio management, and performance reporting. It provides transparency, enforces standards, and drives continuous improvement across a captive delivery model and select vendors, enabling the bank to achieve its digital and operational goals.
As IT Governance, Risk & Compliance Manager, you will be a key enabler of the CIO Office’s mission to deliver secure, compliant, and resilient IT services. Your work ensures that outsourcing arrangements meet regulatory standards, risks are identified and mitigated, and controls are consistently applied. By safeguarding compliance and operational integrity, you help the organization maintain trust with regulators and customers while supporting strategic transformation goals.
We are seeking a seasoned professional to join our “IT Strategy and Transformation” department in the CIO division of ERSTE Group. This role focuses on IT regulatory adherence, risk mitigation, and operational resilience across technology and outsourced IT services.
Responsibilities
Ensure compliance with EBA Outsourcing Guidelines, DORA, and GDPR
Coordinate audits and regulatory inspections, prepare required IT compliance and performance materials
Define and drive technology resilience standards adoption throughout ERSTE group
Oversee resilience testing and incident governance
Maintain IT policies, controls, and KPI/KRI reporting
Collaborate with Security, Risk, Compliance, and the captive provider
Make Your Resume Now