Express an interest

If you are interested & require further information, we will email you a copy of the programme brochure.

An error has occurred

Data Protection Notice


DATA PROTECTION NOTICE - UPDATED 15 September 2024

The Institute of Bankers in Ireland (trading as IOB) takes privacy and the protection of our customer, affiliate, member, student and designate data very seriously. In this notice, we explain how we collect your personal information, how we use it and how you can interact with us about it.

Who are we?

When we talk about “IOB”, or “us” or “we” in this notice, we are talking about IOB.

Data Protection Officer

Our Data Protection Officer oversees how we collect, use, share and protect your information to ensure your rights are fulfilled. You may contact our Data Protection Officer at [email protected] or by writing to: Data Protection Officer, IOB, 47-49 Pearse Street, Dublin 2.

How we collect information about you

We collect personal information from you, for example when you become a member; or a customer in order to create an account on IOB Learn; register to an educational programme; apply for information on our products and services; apply for a designation/CPD scheme or express an interest in one of our programmes or a programme offered in association with one of our educational partners. We also collect information through our websites, web-conferencing, social media, the IOB Learn application, CCTV footage and through communication between you and IOB by telephone, email and chat (for example, when you call to make enquiries about a course or when you are raising concerns or queries). We will sometimes record phone conversations and we will always let you know when we do this.   We may also obtain your personal data from third parties, for example:  

  • Information provided by your employer or representative acting on your behalf 

  • Information from or required from a funding body (e.g. Springboard, IFS Skillnet) 

  • Information about you provided by referees you have nominated 

  • Issuing authorities of documents you have submitted as proof of qualifications (e.g. verification of your degree by your previous university) 

Some of our educational partners are "joint" data controllers with IOB (e.g. UCD, the Compliance Institute, the Central Bank of Ireland) in the delivery of specific educational and designation services which we provide to you. This means that IOB, together with these "joint" controllers, make decisions in respect of the information about you which we process.   Our websites use ‘cookie’ technology. A cookie is a little piece of text that our server places on your device when you visit any of our websites or applications. They help us make the sites work better for you. When you apply to us for products and services and during the time you avail of these, we may verify your identity. We may do this by sending and receiving information about you, to and from third parties including your employer.

Cookie technology is also used on the Chat & Help Centre application by Intercom, which operates the Chat & Help Centre application on our behalf. Intercom is responsible for cookies on Chat & Help Centre and you may consult the cookies policy on www.intercom.com for further details.

Information we collect about you 

IOB collects personal data relating to you in order to provide our services to you. 

The types of personal data processed by IOB may include (depending on the context of the service being provided to you) but are not limited to: 

  • Customer number – generated when an IOB account is created for you 

  • Unique personal identifiers and biographical Information, such as student number, name, title, date of birth, country of birth, nationality 

  • Your contact details including residential and employer addresses, mobile phone number, email address(es) 

  • PPS number 

  • Employer details 

  • Details of previous examination results and qualifications awarded 

  • Schools/colleges attendance records 

  • Bank details, including IBAN, BIC, Name of bank/building society 

  • Credit card details (processed by our payment provider) 

  • Information to provide student support services such as career guidance, where applicable 

  • Image in digital photograph for ID cards 

  • Image as part of online examination/assessment processes as part of online invigilation  

IOB may in some cases process “special category data”, for example, health data, where relevant to applications for support, extenuating circumstances relating to examinations or pro-rata adjustments relating to designations, disability information (for example, where needed for the provision of student support services). 

How we keep your information safe

We use technical and organisational measures to protect your personal information from unauthorised access, to maintain data accuracy and to help ensure the appropriate use of your personal information. These security measures include encryption of your personal information, firewalls, intrusion detection systems, 24/7 physical protection of facilities where your personal information is stored, background checks for personnel that access physical facilities, and strong security procedures across all service operations. We use strong encryption algorithms for the transmission and storage of your information. When you contact us to ask about your information, we may ask you to identify yourself. This is to help protect your information.

How long we keep your information for

How long we hold your information depends on the nature of the information and the purposes for which it is processed. We determine appropriate retention periods which meet our academic, legal and regulatory obligations. We hold your information while you are a member, affiliate member, customer, student or designate and for a period of time after that. We do not hold it for longer than necessary. If the purpose for which the information was obtained has ceased and the personal information is no longer required, the personal data will be deleted or anonymised (i.e. all identifying characteristics are removed).

Meeting our academic, legal and regulatory obligations

To meet our academic, regulatory and legal obligations, we collect some of your personal information, verify it, keep it up-to-date through regular checks, and delete it once we no longer have to keep it. We may also gather information about you from third parties to help us meet our obligations. If you do not provide the information we need, or help us keep it up-to-date, we may not be able to provide you with our products and services.

To use your information lawfully, we rely on one or more of the following legal bases:

  • your consent;

  • necessary for the performance of a contract with you;

  • necessary for compliance with a legal obligation (e.g. "Minimum Competency Code", "Fitness & Probity", Universities Act 1997);

  • necessary to protect the vital interests of you or others;

  • necessary for the performance of a task carried out in the public interest; or

  • necessary for the purposes of our legitimate interests, including to pursue our goals and promote our services, or the legitimate interests of a third party (e.g. your employer). We will not process your personal data for these purposes if to do so would constitute an unwarranted interference with your own interests, rights and freedoms.

Consent

Sometimes we need your explicit consent to use your personal information. When we use sensitive personal information about you, such as health data, for example when you request a maternity leave pro-rata adjustment, we may ask for your consent. Before you give your consent, we tell you what information we collect and what we use it for. You can withdraw your consent at any time by contacting us.

Direct Marketing

We would like to make you aware of products and services which may be of interest to you. We may do this by phone, post, email, text or through other digital media. You can decide how much direct marketing you want to accept when you apply for new products and services. You can make changes to your marketing preferences at any time via "Quick Links > My Details" section on IOB Learn or by contacting us directly at: Phone: + 353 1 6116500, Email: [email protected]

How we use your information

We use information about you to:

  • process and administer your membership, programme registrations and designations/CPD;

  • create your account on IOB Learn, add you to channels we think will be of interest to you, send you notifications via IOB Learn (if notifications are enabled) and otherwise facilitate your use of IOB Learn in accordance with our Terms and Conditions (available here: https://iob.ie/terms);

  • organise events, conferences and webinars;

  • track your professional development in respect of your stated professional goals;

  • give you access to on-going learning and networking opportunities including career support;

  • ensure we provide you with the best service possible, including customer support for any technical issues you may experience accessing our websites or IOB Learn;

  • manage your fees;

  • administer the relationship with any of your funders or sponsors; 

  • administer assessment processes , specifically online processes;  

  • provide other operational supports;

  • provide and promote information on our membership, education, designation and continuing professional development services;

  • safeguard and promote the welfare of members;

  • carry out surveys and statistical analysis;

  • respond to your enquiries or complaints;

  • confirm details relating to you to your employer, where they have a legitimate interest in providing or receiving those details;

  • confirming details relating to you to other professional education partners or professional standards bodies (e.g. European Financial Planning Association (EFPA)), where there is a legitimate interest in sending those details;

  • provide reference requests subject to your consent;

  • tailor communications to make them relevant to any preferences that you have demonstrated;

  • prevent unauthorised access to your information;

  • meet our legal and regulatory obligations;

  • establishing, exercising or defending legal claims; and

  • identify ways we can improve our products and services to you.

To provide our products and services under the terms and conditions we agree between us, we need to collect and use personal information about you. If you do not provide this personal information, we may not be able to provide you with our products and services.

Your information and third parties

Sometimes we process and share your information with trusted third parties. For example, we share information with:

  • service providers (e.g. assessment facilitators, printers, auditors, legal advisors and other professional advisors);

  • educational and funding partners (e.g. UCD, Higher Education Authority (HEA), IFS Skillnet, The Central Bank of Ireland) or professional standards bodies (e.g. EFPA);

  • employers (e.g. to confirm details regarding designations, CPD schemes or programme participation, or to inform your employer where a designation is removed including due to membership default or resignation);

  • other legal and regulatory bodies (e.g. The Central Bank of Ireland);

  • Information and Communications Technology (ICT) and information security providers.

We may also share information with third parties to meet any applicable law, regulation or lawful request, including with law enforcement agencies, which may be either in or outside Ireland or to deal with any claim or dispute that may arise.

We expect these third parties to have the same levels of information protection that we have. In some cases we share information via systems that we control and where we do this, we require the third party recipients to comply with appropriate terms and conditions that govern access to those systems.

Your personal information rights

When your personal information is handled by IOB in relation to a product or service, you are entitled to rely on a number of rights. These rights allow you to exercise control over the way in which your personal information is processed, subject to applicable exemptions.

For example, we may help you in:

Accessing your personal information: You can ask us for a copy of the personal information we hold about you.

Correcting and Updating your personal information: If you believe that any personal information we hold about you is inaccurate or out of date, you can look for the information to be corrected at any time.

Withdrawing consent: You can change your mind wherever you give us your consent, such as for direct marketing, or using your sensitive information, such as medical or biometric data.

Restricting our use of your personal information: You have the right to restrict our use of your personal information in certain circumstances, such as where our use of it is not compliant with applicable law.

Objecting to our use of your personal information: You have the right to object to us using your personal information, where we are doing so based on this being necessary for the performance of a task carried out in the public interest or for the purposes of a legitimate interest. Where you exercise this right to object, we will be obliged to stop using your personal information in that way, unless there are compelling legitimate grounds for us to continue to do so, despite your objection.

Not to be subject to automated decision making: You have a right (subject to limited exceptions) not to be subject to a decision based solely on automated processing of information, including profiling, which produced significant legal effects concerning you or otherwise significantly affects you.

Deleting your information (your right to be forgotten): You may ask us to delete your personal information.

Moving your information in electronic form (your right to Portability): You may request (in certain cases) that your personal information is transferred to you or another organisation in digital form.

How to exercise your rights

You may execute any of these rights free of charge. You may do so by contacting us:

Phone: + 353 1 6116500 Email: [email protected]

When you contact us to ask about your information, we may ask you to identify yourself. This is to help protect your information. Once we are satisfied that we have effectively verified your identity, we will respond to the majority of requests without undue delay and within a one month period (i.e. 30 calendar days) of receipt of the request. IOB will action your request to have your personal information corrected within 10 calendar days. These periods may be extended in exceptional circumstances and we will inform you where the extended period applies to you along with an explanation of the reasons for the extension.

International transfers of data

We sometimes need to share your information with organisations which are located or who undertake processing outside the European Economic Area (EEA) to help us provide you with our products and services. Some educational programmes/partners, for example, are provided/located outside the EEA. This may mean that some personal information may be processed in countries such as India, Singapore or the United States. We expect the same standard of data protection is applied outside of the EEA to these transfers and the use of the information, to ensure your rights are protected and will only transfer personal information to a country or territory outside of the EEA: (a) if that country provides an adequate level of protection for personal information as set down by the European Commission or (b) where the transfer is made under a legally binding agreement which covers the EU requirements for the transfer of personal information to recipients outside of the EEA, such as the model contractual clauses approved for this purpose by the European Commission, or (c) where there is an alternative basis for engaging in the transfer that is compliant with applicable laws. For more information about the European Commission’s decisions on the adequacy of the protection of personal information in countries outside the EEA, please visit: ec.europa.eu/info/law/lawtopic/data-protection_en

For more information about IOB’s arrangement regarding transfers of personal information outside EEA you can contact us by phone or email via the details set out below.  

Making a complaint

If you have a complaint about the use of your personal information, please let a member of staff know, giving them the opportunity to correct things as quickly as possible. If you wish to make a complaint you may do so in writing and by email [email protected]. Please be assured that all complaints received will be fully investigated. We ask that you supply as much information as possible to help our staff resolve your complaint quickly.

You may also contact the Data Protection Commission in Ireland to lodge a complaint (details below).

Data Protection Commission 21 Fitzwilliam South, Dublin 2, D02 RD28 Web: dataprotection.ie

Data Protection Policy

IOB, as a provider of Professional Education, CPD (Continuing Professional Development) and Membership Services to the financial services sector in Ireland and beyond, processes personal data for a variety of purposes relating to its members, employees, service providers and other third-parties involved with the organisation. IOB is therefore a data controller, and in some cases a data processor, and is subject to data protection legislation and regulation. IOB's Data Protection policy (available here) sets out data protection requirements which must be complied with by anyone who processes personal data for or on behalf of IOB.

Updates to this notice and policy

We keep this notice and policy under regular review and will make changes from time-to-time, particularly when we change how we use your information, and change our technology and products or services. We will inform you of material changes to the contents of this Data Protection Notice, through a notification posted on our website or through other communication channels.

Before you continue...

As you are not registered with us, you will need to upload proof you can enrol to this programme.

I know, let’s sign upI have an account, let me sign in first
Professional Diploma

Advanced Operational Risk Management in Financial Services

Apply now
Express an interest
  • Duration
  • Varies
  • Programme
  • 3 modules
  • Study
  • Online
  • Fees
  • €4,785
  • Level
  • NFQ 9, 30 ECTS
  • At a glance

    Developed in conjunction with UCD College of Business the Professional Diploma in Advanced Operational Risk Management in Financial Services showcases extensive academic thinking and rigor as well as unique, real-world insights from our partners Bank of Ireland, Citi and Deloitte.

    Awarding Body

    University College Dublin

    Who is it for?

    • The Professional Diploma in Advanced Operational Risk Management in Financial Services has been designed in conjunction with operational risk management professionals, working in financial services and leading academics in operational risk management.

    • It will equip participants with a deep, practical understanding of operational risk management frameworks and measurement methodologies in financial institutions. This qualification is the benchmark operational risk qualification recognised in the Irish financial services industry sectors of the financial services industry.

    PRMIA

    PRMIA Partnership - Global Associate PRM (aPRM)

    We are delighted to expand our partnership with PRMIA to our Level 9 Risk offerings.

    PRMIA is a global brand in risk management education with more than 50,000 members worldwide. Over 2,400 companies employ PRMIA designates, demonstrating that employers around the world realise that PRMIA’s education programmes equip participants with the specialised knowledge and skills necessary to succeed in the dynamic banking industry. PRMIA is active in nearly every major financial centre worldwide with members in over 65 countries.

    ‘’The Professional Risk Managers' International Association (PRMIA) is proud to announce its continuing partnership with the IOB. PRMIA are already partnered with IOB on their level 8 Professional Certificate in Conduct Risk Culture and Operational Risk Management. Those that earn this Professional Certificate at level 8 also receive the PRMIA Operational Risk Management Certificate, allowing a global PRMIA Certificate to be added to this already outstanding IOB offering. Additionally, in relation to our Associate PRM (aPRM), another PRMIA global Certificate, we are delighted to extend this partnership to IOB's postgraduate offerings, specifically the Professional Diploma in Advanced Banking Risk Management and Professional Diploma in Advanced Operational Risk Management in Financial Services programmes.’’

    Justin C McCarthy, CEO, PRMIA


    Who is it for?

    The programme is relevant to all risk related roles in financial services firms including credit unions, fintechs, payments firms and to those who wish to develop a career in operational risk management.

    Specific job titles may include

    • Heads of Operational Risk

    • Enterprise Risk Managers

    • Operational Risk Managers

    • Financial controllers

    • Technology Managers

    • Operations Managers

    • Internal Auditors

    • Compliance Officers

    • Legal Officers

    • Consultants

    • Regulators.


    How you will benefit

    This specialist programme will provide you with;

    • A deep and practical understanding of the requirements and responsibilities of operational risk management

    • Global best practice tools for the identification, assessment, measurement and management of operational risks

    • Insights into latest academic thinking in areas such AI applications to operational risk management and emerging machine learning models

    • A thorough understanding of the key practical and relevant operational risks facing financial services professionals in Ireland today including inter alia: financial crime prevention/AML/CFT, KYC, external and internal fraud, information security, IT resilience, cybercrime, outsourcing, business continuity planning, data quality, data protection, impact on capital and other practical areas

    • Knowledge and skills to capture, report and investigate operational risk events, how to produce meaningful risk MI including Key Risk Indicator (KRI) data and trend analysis, and how to implement operational risk appetite

    • Tools to identify, measure and mitigate risks and thereby improve business performance

    • Enhanced business judgement, critical analysis and problem-solving skills.

    Continuous Professional Development

    If you hold an IOB designation or a designation managed by IOB, CPD hours may be awarded on successful completion of this programme.

    IFS Skillnet logo

    • This programme has IFS Skillnet funding available for certain companies. You should check if your company has IFS Skillnet approval.

    • Tax relief may be available to candidates who are paying fees in a personal capacity. Further information is available from www.revenue.ie

    • Funding it subject to availability

    Pro Diploma in Advanced Operational Risk Management in Financial Services IFS Skillnet form

    View the IFS Skillnet Checklist

    Note: Students without IFS Skillnet funding should apply using the Apply now button above.

    Fees

    • 01. Risk Governance, Culture, Business and Enterprise Risk Management (10 ECTS) €1,595

    • 02. Operational Risk, Capital Markets and AI (10 ECTS) €1,595

    • 03. Strategic Operational Conduct and Reputational Risk Management (10 ECTS) €1,595

    Fees for IFS Skillnet member 

    • 01. Risk Governance, Culture, Business and Enterprise Risk Management (10 ECTS) €1,196

    • 02. Operational Risk, Capital Markets and AI (10 ECTS) €1,196

    • 03. Strategic Operational Conduct and Reputational Risk Management (10 ECTS) €1,196

    Duration & delivery

    • Delivery is online.

    • Each 10 ECTS module comprises of up to 30 delivery hours per trimester (i.e. up to 10 evenings).

    Award

    • Professional Diploma in Advanced Operational Risk Management in Financial Services from UCD.

    • This is a level 9 qualification on the National Framework of Qualifications and carries 30 ECTS.

    Progression

    This award is on the Pathway to MSc in Financial Services. Those wishing to continue their studies and achieve the MSc will receive the higher award only. To find out more, please visit iob.ie/programme/msc-financial-services

    PRMIA and their Associate Professional Risk Manager (APRM) global certificate

    Graduates can then apply directly to PRMIA to be awarded the globally recognised PRMIA Associate Professional Risk Manager (APRM) global certificate. Completing this programme will allow you to stand out among your peers, providing you with a competitive advantage with colleagues, clients, and prospective employers by developing the necessary skills and experience needed to succeed in today’s dynamic work environment.

    Assessment

    • Assessment is a combination of continuous assessment and end of trimester exams. 

    IOB programmes are largely delivered and assessed online. Students should ensure they have appropriate equipment (laptop), and that appropriate software (including MSOffice: Office and Word) is available to them to participate in the programme and related assessments (continuous assessments and exams).

    Next intake

    • Spring Trimester 2025 - (Assessment in May 2025)

    Trimester start date

    • 4 February 2025

    Closing date

    • 24 January 2025

    This programme enrols three times a year. Please see other enrolment dates in the 2024-25 academic year, please click on Key Dates.

    Contact

    • For more information please contact the Programme Manager, Calum Conneely at [email protected]

    Brochure

    Click here to download

    Modules and learning outcomes

    Risk Governance, Culture, Business and Enterprise Risk Management

    (NFQ level 9, 10 ECTS)

    At the end of this module, you will be able to:

    • Discuss the theory and practice of enterprise risk management in the financial services sector

    • Describe and explain the theories of corporate governance and their evolution

    • Develop and propose to senior management an appropriate risk appetite framework for implementation in a financial services provider. Justify your proposal(s)

    • Evaluate selected international corporate governance models

    • Critically assess the cultural, leadership and behavioural aspects of corporate governance and the challenges facing boards in embedding a strong risk culture into financial service providers’ risk management, policies and processes

    • Develop the skills to independently identify, monitor and research resources on advances in ERM and corporate governance best practice.

    Operational Risk, Capital Markets and AI

    (NFQ level 9, 10 ECTS)

    At the end of this module, you will be able to:

    Demonstrate what an AI informed alert model is and how one can deploy it to better mitigate fraud and misconduct

    Critically evaluate AI algorithms, whether proprietorial or not, to elicit information from data to counter financial regulatory risk

    Discuss critically the interaction between the capital markets and instances of misconduct in financial services

    Critically appraise the role of organisational culture in determining misconduct in financial services

    Critically evaluate ethical consequences of the use of AI in financial services.

    Strategic Operational Conduct and Reputational Risk Management

    (NFQ level 9, 10 ECTS)

    At the end of this module, you will be able to:

    Explain the best practice principles of non-financial risk management, covering Operational, Strategic, Reputational and Conduct Risks

    Outline to senior management and staff colleagues the bespoke frameworks for the management of key risks within the operational risk family, (to include Business Continuity, IT and Cyber Risk, Fraud, Data Aggregation, Outsourcing, AML) advising them of the rationale for the key differences between each risk framework

    Adapt the principles from current best practice in non-financial risk management and develop appropriate strategies for the management of emerging risks (such as those arising from Climate and Fintech)

    Apply an operational risk methodology to identify, appraise, and mitigate operational risks in a financial services provider’s business model

    Advise senior management on the relationship between operational risks, regulatory capital and risk-based pricing in banking and the wider financial services sector and the rational for, and application of, operational risk capital calculation methodologies

    Demonstrate the learning skills to support continuous self-directed personal and professional development.

    Key dates

    Level 9 key dates 2024/2025


    This programme enrols three times a year.

    Next intake

    • Spring Trimester 2025 - (Assessment in May 2025)

    Trimester start date

    • 4 February 2025

    Closing date

    • 24 January 2025

    Requirements

    The minimum entry requirements to the Professional Diploma in Advanced Operational Risk Management in Financial Services are as follows:

    • An Honours degree (min. 2.2 L8 NFQ)

    or

    • Admission may also be considered for experienced professionals who do not meet the admission requirements as set out above, where they can demonstrate knowledge through their work i.e. they have more than 5 years’ experience in a management role.


    Professional body membership

    You must be a current member of IOB, or become a member, to undertake this programme.

    For more information on the membership fee and the benefits of being an IOB member, please click here.

    Your lifelong learning partner

    Join the IOB Community

    Begin your journey with IOB today and unlock exclusive member content, events and insights!

    Join IOB