Senior Risk Manager: Data Risk
Johannesburg, ZA

Requisition Details & Talent Acquisition Contact
Requisition nr: 143689
Talent Acquisition Specialist: Tshego Semenya
Location: 135 Rivonia Road, Sandown
Closing date: 29 January 2025
Cluster
Personal and Private Banking
Career Stream
Leadership Pipeline
Position
Why join the team!
Join a dynamic PPB Risk team operating at the intersection of IT, cyber, data and privacy risk across a fast‑paced and complex environment. This role provides a rare opportunity to build and lead PPB’s first dedicated Data & Privacy Risk capability — a highly specialised function that relies on your deep data expertise, technical understanding and strategic thinking to shape how the cluster manages one of its most critical risk domains. Unlike traditional leadership roles, this is a specialist role without direct reports, giving you the freedom to focus on high‑impact thought leadership, technical depth and strategic influence rather than people management.
You will partner closely with senior stakeholders across the business, including CIA Data Leadership, Data Management Officers, Internal Audit, PPB Executives and Group Risk. Your work will place you at the forefront of emerging technologies such as cloud, automation, AI and advanced data engineering, giving you the opportunity to influence key decisions and strengthen risk practices that impact millions of clients.
You’ll be joining a team that values collaboration, trust, autonomy and a strong sense of purpose. The culture is supportive and growth‑oriented, with specialists who share knowledge openly and work together across multiple risk disciplines. With a leader who values maturity, independence and expertise over hierarchy, you'll have visibility in senior governance forums, the freedom to build a function from a blank canvas, and the opportunity to work alongside some of the bank’s most highly skilled technical and risk professionals. This role offers exceptional career growth potential within PPB Risk and the broader organisation.
Job Purpose
Job Responsibilities
Core Risk Management
- Embed and operationalise the Group Risk, Data Risk, Cyber Security Risk and Privacy Frameworks across PPB by integrating risk standards into business processes and governance routines.
- Identify, assess, document and monitor data‑related risks across business units, ensuring appropriate controls, mitigation plans and remediation timelines are established.
- Lead investigations into data breaches, privacy incidents, compliance findings and other data‑related risk events, including root‑cause analysis and tracking of corrective actions.
- Maintain and oversee the PPB Data Risk Register, ensuring all risks, controls and remediation items are accurately recorded, monitored and updated.
- Analyse complex data ecosystems — including data pipelines, engineering approaches, cloud environments and automation tools — to identify vulnerabilities and emerging risks.
- Prepare, facilitate and present comprehensive data and privacy risk reporting at senior governance committees such as EXCO, ERCO, BUCC and OPCOM.
Data & Privacy Expertise
- Provide specialised expertise on data engineering concepts such as SQL, ETL processes, data warehousing, data modelling and end‑to‑end data lifecycle management.
- Challenge technical decisions and proposed solutions from operational and data engineering teams to ensure data integrity, privacy and risk considerations are fully addressed.
- Collaborate with CIA, Data Management Officers, privacy teams and business units to ensure compliance with regulatory requirements including POPIA, GDPR and internal data governance policies.
- Monitor and assess emerging data risks, regulatory updates, industry trends and technology changes that may impact PPB’s risk posture.
- Support AI‑related risk assessments, model validation processes, and governance relating to machine learning, automated decisioning and algorithmic transparency.
Stakeholder Engagement
- Build and maintain strong partnerships with CIA Data teams, Data Management Officers, Internal Audit, Group Risk and PPB Executives to align on data and privacy risk expectations.
- Engage with cross‑functional teams to provide expert advice, influence risk decisions and support implementation of effective data‑related controls.
- Drive data and privacy risk awareness through targeted communication, training initiatives and capability‑building efforts across PPB.
Leadership & Culture
- Operate as a senior specialist who provides independent thought leadership, strategic insight and strong decision‑making within the data and privacy risk domain.
- Contribute to a culture of accountability, compliance, transformation and continuous improvement through proactive risk engagement and professional excellence.
- Promote collaboration, shared learning and professional curiosity across the risk ecosystem by guiding peers and supporting cluster‑wide risk initiatives.
Essential Qualifications - NQF Level
- Advanced Diplomas/National 1st Degrees
Preferred Qualification
- Bachelor’s degree in Information Technology, Data Science, Engineering, Computer Science, Risk Management or a related field.
Preferred Certifications
- CRISC
- CISM
- Data Governance Certifications (DAMA, DCAM etc.)
Minimum Experience Level
- 4+ years of hands‑on experience in data‑related roles, including work in data engineering, data management, analytics, or data governance.
- Practical exposure to SQL, ETL processes, data pipelines, data warehousing, or data modelling, demonstrating an ability to understand data structures and technical environments.
- Experience working within complex data ecosystems and contributing to data quality, data controls, or data‑related processes.
Preferred Experience
- 5+ years’ experience in data and privacy risk, digital risk, technology assurance, or internal audit with a focus on data‑driven or technology‑driven environments.
- Experience conducting risk assessments, control evaluations, or data/privacy audits, particularly in regulated environments.
- Strong working knowledge of POPIA, GDPR, and formal data governance frameworks.
- Exposure to emerging technologies such as AI, machine learning, automated decisioning or model governance.
- Experience engaging senior stakeholders and presenting in governance forums such as EXCO, ERCO, BUCC, or OPCOM.
Technical / Professional Knowledge
- Banking knowledge
- Business Acumen
- Data analysis
- Governance, Risk and Controls
- Industry trends
- Principles of project management
- Relevant regulatory knowledge
- Business writing skills
Disclaimer
Preference will be given to candidates from the underrepresented groups
Please contact the Nedbank Recruiting Team at +27 860 555 566

---------------------------------------------------------------------------------------
Please contact the Nedbank Recruiting Team at +27 860 555 566