The Head of Non-Financial Risk Control (NFRC) Europe is responsible for leading the oversight of non-financial risks across all European entities and ensuring full alignment with Group frameworks and regulatory expectations, including the Digital Operational Resilience Act (DORA). The role simultaneously acts as Head NFRC Luxembourg.
The position ensures that risks related to operational processes, including the internal control framework, technology, cyber security, data, third parties, and resilience are identified, assessed, managed, monitored, and reported in a consistent and forward-looking manner. The Head NFRC Europe drives the shift toward a harmonised NFRC operating model and guarantees that risk appetite, control discipline, and early escalation are applied across all jurisdictions in Europe.
The role requires close coordination with local first-line functions, including COO units, IT, Business Continuity, as well as with Compliance, Legal, Tax, Data Protection, Third Party Risk in Luxembourg, and CRO teams across the European context. The Head NFRC promotes a strong risk culture and ensures that European entities maintain operational resilience, technology and cyber readiness, and documented compliance with DORA requirements for ICT risk, incident management, testing, reporting, and third-party oversight.