IKT Risk & IT Governance Manager
GENERALI OSIGURANJE dioničko društvo · Zagreb
Job description
About the role
The IKT Risk & IT Governance Manager will lead the identification, assessment, monitoring and reporting of ICT and cyber risks for Generali Osiguranje. You will shape the risk appetite, control framework and governance model while supporting digital transformation initiatives.
Key responsibilities
- Manage ICT and cyber risk registers, including identification, assessment, monitoring and reporting.
- Define and track risk‑adjusted indicators (KRI), risk appetite frameworks and the effectiveness of IT controls.
- Develop, maintain and align IT governance frameworks, policies, standards, procedures, ICT strategy and road‑maps.
- Coordinate compliance activities for DORA, HANFA, GDPR, ISO and other regulatory requirements, preparing documentation for audits and inspections.
- Prepare reports for senior management, the Group, regulators and control functions, collaborating with process owners on responsibilities, controls and KPI/KRI metrics.
- Participate in internal and external audits and follow up on corrective actions.
- Assess risks related to outsourcing, suppliers, critical ICT service providers, new technologies, cloud services and infrastructure solutions.
- Support strategic IT and business projects, digital transformation and the definition of governance models for new systems and processes.
Required profile
- University degree in technical, computer science, mathematics or economics.
- Minimum 3 years of experience in IT risk management, IT governance, information security, internal audit or regulatory compliance.
- Preferable experience in the financial, insurance or banking sector.
- Strong knowledge of IT governance frameworks (COBIT, ITIL), DORA regulation, operational risk and cyber security.
- Understanding of IT infrastructure, applications, cloud environments and IT operations.
- Experience drafting policies, procedures and standards, and managing audits and regulatory requirements.
- Advanced use of MS Office and fluent English.
- Relevant certifications (CRISC, CISA, CGEIT, ISO 27001 Lead Implementer/Auditor, ITIL Foundation) are a plus.
Required skills
- COBIT
- ITIL
- DORA
- ISO 27001 Lead Implementer
- ISO 27001 Lead Auditor
- CRISC
- CISA
- CGEIT
- MS Office
What we offer
- Permanent employment with a probationary period.
- Flexible sliding working hours and hybrid work model with home‑office subsidy.
- Christmas and Easter bonuses, annual bonus, meal allowance and additional leave for personal events.
- Discounted Multisport card.
- Inclusive culture that promotes work‑life balance, continuous learning and professional development.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in Croatia.
Salaries by job title
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
Published 2 weeks ago
Expires 1 month from now
66 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
GENERALI OSIGURANJE dioničko društvo
Zagreb
Related job offers
-
Data Analyst II/III (ž/m/d)
Erste&Steiermärkische Bank d.d. Zagreb -
Inženjer IT sigurnosti (ž/m/d)
Erste&Steiermärkische Bank d.d. Zagreb -
PHP Developer (m/ž)
ECO MOBILE d.o.o. Zagreb -
Technical Consultant – Randomization & Trial Supply Management
veeva Croatia - Zagreb -
Managed Services Consultant - RTSM
veeva Croatia - Zagreb