Search by job, company or skills

Maybank

Executive/ Senior Executive, Assurance, Group Cyber & Technology Risk, Group Risk

new job description bg glownew job description bg glownew job description bg svg
  • Posted 4 hours ago
  • Be among the first 10 applicants
Early Applicant

Job Description

Job Responsibilities:

The role is responsible for executing and supporting technology and cyber risk assurance activities, including coordinating audit and regulatory engagements, and maintaining regulatory control mappings and regulatory libraries.

Coordinate internal, external and regulatory audits & track findings or issues

•Plan and manage end-to-end audit activities

•Facilitate evidence collection, walkthroughs, and clarifications

•Review audit requests before sending to stakeholders

•Maintain a central tracker for findings

•Follow up on remediation progress and validate closure evidence

Map jurisdictional obligations & identify gaps

•Map internal controls to regulatory requirements (BNM, OJK, MAS, NBC, etc.)

•Identify overlaps, gaps, and areas requiring remediation

•Recommend improvements and enhancements based on gaps

Maintain regulatory requirements and control library

•Record and update all obligations and controls

•Conduct periodic reviews for accuracy and completeness

Review and assess security controls

•Perform periodic and ad-hoc assessments on systems and processes

•Document findings, control effectiveness, and compliance gaps for internal stakeholders

Assurance reporting & documentation

•Maintain repository of audit records, evidence, and communications

•Prepare management updates and multi-country compliance dashboards

Conduct assurance awareness & education

•Develop and deliver awareness sessions

•Share common audit findings, gaps, and best practices

Job Requirements:

  • Bachelor's degree / degree equivalent professional qualification in IT programs
  • Experienced as an IT Risk practitioner (second line), Experience as a Technology Audit (third line), IT Security related operations/domain
  • Certificates: Having any of these certifications is a plus (but not mandatory): ISACA's CRISC, CISM or ISC2's CISSP, SSCP, CCSP, CSSLP, CC
  • Ability to work independently on assigned tasks with minimal supervision, demonstrating initiative and a continuous learning mindset.

More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 145704147

Similar Jobs