CEE Technology Risk & Assurance Officer
CEE Technology Risk & Assurance OfficerWe are Flutter Central & Eastern Europe (CEE).As a proud member of the Flutter family - a global leader in sports betting and iGaming - we are building one of the Group`s most dynamic tech and product hubs in Central and Eastern Europe. We aren`t just here to participate; we`re here to change the game.By uniting local powerhouses like MaxBet, Adjarabet.com, and Adjarabet.am, we combine deep regional expertise with the scale and strength of Flutter`s global platforms. We are setting a new standard for entertainment, responsibility, and innovation — powered by real customer signals that shape everything we build.READY TO CHANGE THE GAME?Join the Flutter Central & Eastern Europe team. This is where bold, ambitious minds build scalable platforms, drive innovation, and shape the future of iGaming in the region.The CEE Technology Risk & Assurance Officer reports directly to the Technology GRC Director and is responsible for implementing and maintaining the Technology Governance, Risk, and Compliance (GRC) framework across Flutter CEE brands and entities, including Adjarabet and MaxBet. The role provides independent second-line oversight by performing technology and cybersecurity risk assessments, control assurance activities, governance reviews, and regulatory compliance assessments. The position evaluates the effectiveness of technology controls, supports alignment with Group standards and regulatory requirements, and provides risk-based recommendations to first-line technology teams. The role contributes to the continuous improvement of GRC processes, governance, and assurance practices, helping strengthen the organization's technology risk management, compliance, and operational resilience.What You'll Do:Provide oversight of technology and cyber risk management activities, ensuring effective implementation and monitoring of technology and cyber controls and processes.Monitor the adequacy of risk management and compliance practices through periodic assessments, control testing in line with assurance plans.Support first-line technology and cyber teams identifying, assessing, and managing technology and cyber risks, ensuring adherence to regulatory requirements and internal policies.Review technology policies, standards, and procedures. Ensure first-line activities are aligned with group minimum standards and best practices.Conduct the organization's assessments in compliance with applicable technology regulations and industry standards (e.g., NIST CSF 2.0, ISO/IEC 27001, COBIT, ITIL, NIS2, PCI DSS) by collecting evidence, performing evaluations, and reporting findings to the Technology GRC DirectorReport to Technology GRC Director on the security and technology risk posture, highlighting key risks, trends, and mitigation strategies.Conduct data maturity assessments to support overall data management practices.What We're Looking For:Minimum of 4 years of professiona...