First VP, Business Information and Cyber Security Manager

2 weeks ago


Singapore United Overseas Bank Full time
First VP, Business Information and Cyber Security Manager
First VP, Business Information and Cyber Security Manager

First VP, Business Information and Cyber Security Manager

Posting Date: 4 Jun 2024

Location:
Alexandra (City Area), Singapore, SG, 048624

Company:
United Overseas Bank Ltd

About UOB


United Overseas Bank Limited (UOB) is a leading bank in Asia with a global network of more than 500 branches and offices in 19 countries and territories in Asia Pacific, Europe and North America.

In Asia, we operate through our head office in Singapore and banking subsidiaries in China, Indonesia, Malaysia and Thailand, as well as branches and offices.

Our history spans more than 80 years. Over this time, we have been guided by our values - Honorable, Enterprising, United and Committed.

This means we always strive to do what is right, build for the future, work as one team and pursue long-term success.

It is how we work, consistently, be it towards the company, our colleagues or our customers.

About the Department

Group Technology and Operations (GTO) provides software and system development, information technology support services and banking operations.


We have centralized and standardized the technology components into Singapore, creating a global footprint which can be utilized for supporting our regional subsidiaries and the branches around the world.

We operate and support 19 countries with this architecture to provide a secure and flexible banking infrastructure.


Our Operations divisions provide transactional customer services for our businesses while also focusing on cost efficiency through process improvements, automation and straight through processing.

Job Responsibilities


Business Information and Cyber Security Manager involved in performing IT Security Risk Assessment, Information Security Due diligence on Third Party, review of Tech Obsolescence Risk and supporting the businesses as the subject matter expert on all IT Security matters, to ensure risks are highlighted for business evaluation and decision making on a timely manner.

Job Description

  • Plan and conduct IT Security Risk Assessment on bank's systems throughout the lifecycle covering different layers of technology architecture to identify possible security risks, advise and evaluate the mitigation controls and measure the residual risk.
  • Manage third party IS Due diligence on bank's service suppliers, including on-site assessments when required.
  • Involve in Tech Obsolescence Risk program and identify security risks resulted from obsolescence.
  • Lead the targeted workstreams and support ad-hoc assignments as requested
  • Collaborate closely with technology and business stakeholders to ensure security risks are identified, communicated, understood therefore an informed decision on risk can be made.
  • As a trusted partner and subject matter expert, provide security advisory to technology and business teams.
  • As the HQ function, guide and support IS teams of subsidiaries to ensure oversight and consistency on IT security risk management.
  • Support the IT Security risk committees to ensure robust IT Security risk governance.
  • Develop, maintain, and enhance the IT Security checklists and guidelines.
  • Continuously focus, strategise and implement process improvements e.g. automation, workflow design and digitization for an effective and efficient IT Security risk management.
  • Provide reporting and tracking of work deliverables.
  • Keep up-to-date awareness of security trends covering both new threats and technologies in order to understand the evolving risk and better safeguard the organization.
Job Requirements

  • Bachelor's degree in Computer science, Information Technology, or a related field is required.
  • At least 12 years of experience in Information Security and risk related work preferable in large organization especially banking environment.
  • Deep understanding of threat modeling and risk management principles and best practices, and able to explain it in a structured and easy-to-understand manner.
  • Strong understanding of the Banking industry IS policy and standards, regulatory and industry trends, good practices in providing practical and appropriate recommendation, resolution and remediation options to the businesses.
  • Strong relationship building, stakeholder management, communication, presentation and influencing skills with both technical and non-technical staff
  • Experience in managing senior business stakeholders
  • Demonstrate the strong motivation and capabilities to drive initiatives and changes
  • Proactive and strong team leader and player with minimal supervision
  • Excellent analytical and problem-solving skills. Ability to simplify complex issues such as risk matters, workflows and business processes, and develops effective solutions.
  • Experience in industry standards and requirements such as ISO 27001, MAS TRM, NIST, CCM
  • Industry certifications issued by organizations such as ISC2, ISACA, SANS, Microsoft, CISCO, AWS, etc.
Be a part of UOB Family

UOB is an equal opportunity employer.

UOB does not discriminate on the basis of a candidate's age, race, gender, color, religion, sexual orientation, physical or mental disability, or other non-merit factors.

All employment decisions at UOB are based on business needs, job requirements and qualifications.

If you require any assistance or accommodations to be made for the recruitment process, please inform us when you submit your online application.

Apply now and make a difference.

Competencies

  • Strategise
  • Engage
  • Execute
  • Develop
  • Skills
  • Experience

United Overseas Bank Limited (UOB) is a leading bank in Asia with a global network of more than 500 branches and offices in 19 countries and territori...

Boost your career Find thousands of job opportunities by signing up to eFinancialCareers today. #J-18808-Ljbffr

  • Singapore Eames Consulting Full time

    Our client, an established financial institution, is currently looking for a VP, Cyber Security Risk Manager to join their team.As a VP, Cyber Security Risk Manager, you will be responsible for: Working as part of the first line Cyber Security Risk team Working closely with technology and business stakeholders on Cyber Security Risk issues Performing project...


  • Singapore LMA Asia Full time

    Sector:LMA Asia TechnologyContact: Jodie LeeClient:LMALocation: SingaporeSalary: S$ S$ per annumExpiry Date: 30 July 2023Job Ref: BBBH421023_ First VP, Security ArchitectResponsibilities:Job Role & Responsibilities Drive the security design in the Group. Develop security reference architecture and design patterns that can be adopted as part of the enterprise...


  • Singapore Prestige Headhunters Full time

    N- Posted by Nevin Khoo Partner Technology & Quants Our clients are an international bank who are looking to scale up their cyber security function in Asia. This is a chance for a technical security architect to pivot into a more functional role working across various teams both business and technology.VP Cyber Security ArchitectThe role is focused on,...


  • Singapore AMBITION GROUP SINGAPORE PTE. LTD. Full time

    Roles & ResponsibilitiesVP, Security Architect for a leading Payment Solutions ProviderLeading Payment Solutions Provider Dynamic and collaborative work environment Opportunity to design secure system architectures and implement security solutionsOur client is a leading payment company in Singapore, overseeing the national clearing and payment...


  • Singapore TENTEN Partners Pte. Ltd. Full time

    Our client is a leading international bank with a global presence and multiple business units.Job PurposeInformation Security Risk Managers are responsible for managing information and cyber security risk and instrumental in ensuring our clients organisation-wide Cyber Resilience.This role will serve as a second line of defence accountable for ensuring the...


  • Singapore SINGAPORE AEROSPACE MANUFACTURING PTE LTD Full time

    SAM is looking to fill the position of Information Security Manager . This is a regional role and is overall in-charge of all the entities under SAM. He/She will report to the CEO.Responsibilites To develop and implement a longterm Information Security & Cyber Security strategies and roadmap to protect corporate information and IT assets. Set up Cyber...


  • Singapore TRINITY CONSULTING SERVICES PTE. LTD. Full time

    Roles & Responsibilities• Years of experience: 8-14 years• Must be able to operate an intrusion detection system and identify any suspicious traffic or activity on the network.• Need to know best practices for identity and access management.• Must be able to handle the complete threat spectrum and compliance of the organization's security policies or...


  • Singapore TRINITY CONSULTING SERVICES PTE. LTD. Full time

    Roles & Responsibilities• Years of experience: 8-14 years• Must be able to operate an intrusion detection system and identify any suspicious traffic or activity on the network.• Need to know best practices for identity and access management.• Must be able to handle the complete threat spectrum and compliance of the organization's security policies or...


  • Singapore Eames Consulting Full time

    Job Details:Sector: Cyber-Location: Singapore-Job Type: Permanent-Salary: Competitive-Contact: Elmer TanAre you an experienced Cloud Security professional looking for your next challenge in the banking industry? If so, our client, a regional bank, is looking for Cloud Security professionals to join their cloud division, focusing on Cloud Security Risk. The...


  • Singapore MUFG Full time

    Do you want to have your voice heard and your actions valued?Uncover your opportunity with Mitsubishi UFJ Financial Group (MUFG), the 6th largest financial group globally. Around the world, we are a team of 160,000 colleagues, dedicated to making a positive impact for each customer, organization, and community we serve.We are committed to our principles,...


  • Singapore DART CONSULTING AND TRAINING PTE. LTD. Full time

    Roles & ResponsibilitiesCyber Security Instructor - will be responsible for developing and delivering comprehensive cybersecurity training programs to various audiences, including corporate clients, employees, and individuals seeking to enhance their cybersecurity knowledge. You will leverage your expertise to design engaging and practical training sessions...


  • Singapore KPMG - Singapore Full time

    At KPMG, your long-term future is every bit as important to us as it is to you. That's why our aim is to give you experiences that will stay with you for a lifetime. Whether it's great training and development, working across functional sectors, mobility opportunities or corporate responsibility volunteering activities - you'll gain a wealth of experiences...

  • Cyber Security Sales

    2 weeks ago


    Singapore ENGAGE GROUP PTE. LTD. Full time

    Cyber Security Sales (Senior Sales) - Enterprise Cybersecurity Software Solutions and ServicesA leading Cyber Security firm is seeking for a Senior Sales Associate to be a part of their strong team in an expanding market. With a substantial increase in the need for their Cyber Security products and services across diverse business sectors, they are seeking...


  • Singapore SERVITA PRIVATE LIMITED Full time

    About the role:We are seeking a highly skilled and experienced Cyber Security Manager to join our Global Transformation Company. As the Cyber Security Manager, you will be responsible for developing and implementing comprehensive security strategies to safeguard our client's digital assets and information systems. In this role, you will lead a team of...


  • Singapore SINGAPORE AIRLINES LIMITED Full time

    Roles & ResponsibilitiesJob DescriptionYou will be a member of the Group Information Security Team responsible for ensuring that IT solutions are developed and designed with security inbuilt.Key Responsibilities• Provide security consultancy, technical guidance, expertise, solutions, and education for the enterprise.• Advise IT application and...


  • Singapore SINGAPORE AIRLINES LIMITED Full time

    Roles & ResponsibilitiesJob DescriptionYou will be a member of the Group Information Security Team responsible for ensuring that IT solutions are developed and designed with security inbuilt.Key Responsibilities• Provide security consultancy, technical guidance, expertise, solutions, and education for the enterprise.• Advise IT application and...


  • Singapore TRINITY CONSULTING SERVICES PTE. LTD. Full time

    Roles & Responsibilities• Years of experience: More than 15+ years• Ability to perform analysis of log files from a variety of sources within the Network Environment or DMZ (including host logs, network traffic logs, firewall logs and IDS system logs)• Strong program management background• Background in IT Security & Risk Management• Product...


  • Singapore TRINITY CONSULTING SERVICES PTE. LTD. Full time

    Roles & Responsibilities• Years of experience: More than 15+ years• Ability to perform analysis of log files from a variety of sources within the Network Environment or DMZ (including host logs, network traffic logs, firewall logs and IDS system logs)• Strong program management background• Background in IT Security & Risk Management• Product...


  • Singapore Citi Full time

    About Citi:As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients' best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech...


  • Singapore Career Edge Asia Pte Ltd Full time

    Salary Range : $8K - $10KIndustry:IT Assess current technological architecture for vulnerabilities, weaknesses and for possible upgrades or improvements to identify any weak points that might make information systems vulnerable to attacks Develop and manage security strategies, develop policies that encourage secure working and protection of data Take...