Search by job, company or skills

Manager, Technology Risk Management

  • Posted 16 hours ago
  • Be among the first 10 applicants

Job Description

About The Job

The Manager, Technology Risk Management will manage IT risks identification, mitigation and

monitoring, develop/review Technology related frameworks, policies and guidelines and conduct

related training and awareness programs.

  • Governance and Policy Management

-Assist in development/review of core Technology frameworks, policies and guidelines.

-Proactively identify and incorporate relevant requirements from regulatory guidelines/Acts to ensure compliance.

  • Technology Risk Management

-Facilitate Technology risk management to ensure effective risk identification, mitigation and monitoring

-In particular, to review management of Technology related risk and threats and recommend relevant monitoring and mitigating controls

-Identify emerging Technology trends, risks and threats

  • Reviews and Monitoring

-Perform review of functions to:

o Determine effectiveness and completeness of technology risk identification, mitigation and monitoring

o Assess the implementation and compliance to regulatory guidelines, frameworks and policies. This will include reviews of Outsourced Service Providers (OSPs) and other third party vendors

o Review adequacy and effectiveness of IT contingency and disaster recovery strategies and plans

o Prepare relevant reports and table the same at relevant management or board committee meetings

  • Participation in IT Projects and Group initiatives

-Participate or perform reviews of IT projects to ensure that risks are accurately identified and effectively managed

-Provide advise on technology risks, frameworks, policies and regulatory requirements.

-Involvement in TRM related projects/program and initiatives by IT, BU, Group or regulator.

  • Reporting

-Prepare dashboard reporting on the material technology, information and cyber risk matters, including key risk indicators to the Board and Senior Management.

-Perform oversight over the IT incident management, reporting and testing.

  • Risk Awareness

-Promote security awareness via education and awareness on technology risks, cyber security and data protection for directors, staff, agents and service providers.

  • Review and appraise Department Risk Officers and Department Compliance Officers

-Determine effectiveness of implementation and compliance to laws and regulations and policies.

-Ensure that frameworks, policies and guidelines are reviewed timely.

-Provide guidance and training to DROs/DCOs, vendors and agents on technology-related subjects.

-Promote risk awareness for the company.

-Takes accountability in considering business and regulatory compliance risks and takes appropriate steps to mitigate the risks.

-Maintains awareness of industry trends on regulatory compliance, emerging threats and technologies in order to understand the risk and better safeguard the company.

-Highlights any potential concerns /risks and proactively shares best risk management practices.

We are looking for people who

  • Possess a recognised Degree in Computer Science, Information System or related disciplines
  • Relevant certifications such as CISA, CISM, CRISC
  • Good risk identification and management skills
  • Ability to manage, motivate and lead support personnel
  • Ability to manage multiple projects/tasks with given deadlines
  • Possess strong analytical, problem-solving skills
  • Team player and performs well under pressure
  • Excellent people & project management
  • Excellent verbal and written communications skills
  • Good appreciation of IT infrastructure and systems
  • Minimum 5 years experience in IT related environment including risk, security, audit and control related functions
  • Good IT related knowledge in the following areas;

-Risks management and mitigating controls

-Investigation techniques

-Cyber Security and controls

-Regulatory requirements

-Policies and best IT practices, methodologies and benchmarks

-AI risk & controls

How you succeed

  • Champion and embody our Core Values in everyday tasks and interactions.
  • Demonstrate high level of integrity and accountability.
  • Take initiative to drive improvements and embrace change.
  • Take accountability of business and regulatory compliance risks, implementing measures to mitigate them effectively.
  • Keep abreast with industry trends, regulatory compliance, and emerging threats and technologies to understand and highlight potential concerns/ risks to safeguard our company proactively.

About Great Eastern

Founded in 1908, Great Eastern is a well-established market leader and trusted brand in Singapore and Malaysia. With over S$100 billion in assets and more than 16 million policyholders, including 12.5 million from government schemes, it provides insurance solutions to customers through three successful distribution channels – a tied agency force, bancassurance, and financial advisory firm Great Eastern Financial Advisers. The Group also operates in Indonesia and Brunei.

The Great Eastern Life Assurance Company Limited and Great Eastern General Insurance Limited have been assigned the financial strength and counterparty credit ratings of AA- by S&P Global Ratings since 2010, one of the highest among Asian life insurance companies. Great Eastern's asset management subsidiary, Lion Global Investors Limited, is one of the leading asset management companies in Southeast Asia.

Great Eastern is a subsidiary of OCBC, the longest established Singapore bank, formed in 1932. It is the second largest financial services group in Southeast Asia by assets and one of the world's most highly-rated banks, with an Aa1 rating from Moody's and AA- by both Fitch and S&P. Recognised for its financial strength and stability, OCBC is consistently ranked among the World's Top 50 Safest Banks by Global Finance and has been named Best Managed Bank in Singapore by The Asian Banker.

To all recruitment agencies: Great Eastern does not accept unsolicited agency resumes. Please do not forward resumes to our email or our employees. We will not be responsible for any fees related to unsolicited resumes.

More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 152115587

Similar Jobs

Malaysia, Kuala Lumpur

Skills:

Data Qualitygovernance principlesInternal Controlsno-code low-code toolsEnterprise Riskrisk management frameworksOperational RiskBusiness RiskAuditAI automationrisk reportingRisk Analytics

Malaysia, Kuala Lumpur

Skills:

it risk management CcspIdentity Access ManagementVulnerability ManagementCloud SecurityChange ManagementApplication SecurityCism3rd Party Security RiskData Leakage PreventionCisaSecurity Risk ManagementCisspSecurity Incident ResponseSecurity Monitoring

Malaysia, Kuala Lumpur

Skills:

Quality AssuranceInternal AuditComplianceRegulatory Requirements

Malaysia, Kuala Lumpur

Skills:

privacy compliance Data DictionaryData Quality ManagementAiData CatalogueCisaData OwnershipDAMAAnalyticsPrivacy Impact AssessmentsData Governance FrameworkCIPTcippCDMPCIPMCRISCISO 27701

Malaysia, Kuala Lumpur

Skills:

WindowsItilMicrosoft OfficeIncident HandlingCobitRisk and regulatory requirementsFinancial industry complianceSystems documentationBanking KnowledgeAnalytical ThinkingDecision Making

Beware of Scammers

We don’t charge money for job offers