Perform technology risk assessments for applications, systems, and technology initiatives in accordance with the approved risk assessment methodology.
Gather and analyse information from business and technology stakeholders to assess technology risks and control effectiveness.
Evaluate technology risks across key domains including access management, data protection, infrastructure, third-party management, business continuity, and security governance.
Identify technology risks, control gaps, and improvement opportunities, and document assessment results.