Job Description
Devex is assisting the Caribbean Development Bank in their search for an IT Governance Manager to be based in St. Michael, Barbados.
Background
The Caribbean Development Bank (CDB or the Bank) is seeking an experienced national from its member countries to fill the position of Information Technology (IT) Governance Manager in the Information Technology Solutions Division (ITSD).
Reporting to CIO, the ideal candidate will be responsible for the overseeing and implementing data governance strategies, ensuring the integrity, availability, and security of the Bank’s data assets. The IT Governance Manager will play a crucial role in managing IT risks, information security, and data privacy, working closely with various stakeholders to establish and maintain effective data governance practices.
Other Considerations:
This role is a full-time position with the successful candidate being contracted on a two-year basis in the first instance, with the possibility of renewal. The salary is competitive and commensurate with qualifications and experience. The benefits package includes a pension plan, life and medical insurances.
You must be a national of one of CDB’s member countries.
Responsibilities:
1. Develop and Implement Data Governance Strategies:
- Design and implement comprehensive data governance frameworks, policies, and procedures.
- Collaborate with cross-functional teams to define data governance objectives and align them with business goals.
- Establish data quality standards, data classification guidelines, and data lifecycle management processes.
- Drive the adoption and compliance of data governance practices throughout the organization.
2. IT Risk Management:
- Assess and mitigate IT risks related to data governance, information security, and data privacy.
- Identify potential vulnerabilities and recommend appropriate controls and safeguards.
- Monitor and evaluate the effectiveness of IT risk management strategies and adjust as needed.
- Stay up to date with emerging IT risks and industry best practices to ensure proactive risk management.
3. Information Security:
- Develop and implement information security policies and procedures to protect data assets.
- Conduct regular security assessments and audits to identify vulnerabilities and recommend remedial actions.
- Collaborate on the implementation and monitoring of data protection measures.
- Provide guidance and support to ensure compliance with relevant security regulations and standards.
4. Data Privacy:
- Develop and maintain data privacy policies and practices in compliance with applicable regulations (e.g., GDPR, CCPA).
- Collaborate with legal and compliance teams to ensure data privacy requirements are met.
- Conduct privacy impact assessments and develop strategies to minimize privacy risks.
- Provide guidance and training to employees regarding data privacy best practices.
5. Stakeholder Collaboration:
- Collaborate with business units, related IT teams, and senior management to promote a culture of data governance and awareness.
- Work closely with data owners, data stewards, and data custodians to establish data governance roles and responsibilities.
- Facilitate cross-functional discussions to resolve data governance-related issues and implement best practices.
- Communicate data governance initiatives, progress, and challenges to stakeholders at all levels of the organization.
Qualifications:
- A Bachelor’s degree in Information Management, Computer Science, Data Governance, Information Security or related field.
- Recognised certification in Information Security such as: Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP) or Certified Security Analyst.
- A minimum of six (6) years’ experience working within an information or data governance function, preferably in an international organisation or multilateral environment with two (2) years’ experience leading a data and/or security governance programme.
- Demonstrated knowledge of data governance practices, business and technology issues related to management of enterprise information assets and approaches related to data protection.
- Sound knowledge of industry-leading data quality and data protection management practices.
- Practical experience in the implementation of IT policies and procedures.
- Experience in the monitoring of IT risk and security controls to ensure compliance and business cyber-resilience.
- Experience liaising with Internal Audit and other oversight units on enforcing compliance with company policies and best practices.
- A good understanding of information management practices including information lifecycle management, data modelling, master data management and the conduct of business audits and requirements gathering.