
Third-Party Security Risk Management, Consultant
3 weeks ago
At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone.
As pioneering innovators for over 100 years, we're now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier, Longer, Better Lives.
To get there, we need people with tech/digital/analytics expertise and passion to help develop positive, sustainable change through digitally enhanced experiences that will impact the lives of millions of people and create a healthier future for everyone.
If you believe in developing a better tomorrow, read on.
About the Role
This position is responsible for overseeing the Third-Party Security Risk Management domain, providing consultation, professional advice on information security and key technology risk matters relating to the mentioned geographical responsibilities, thereby adding value to building a strong information security risk culture centered on people, processes and technology. The role will require good understanding of security requirements in the financial industry, technology risk management methodology and the ability to work cohesively with internal and external stakeholders to maintain the highest standard of security.
WHAT YOU'LL BE DOING
Third-Party Security Risk Management
- Manage the process of assessing and evaluating the security postures of third- party vendors and partners. The includes monitoring of third-party security assessment renewal, assigning the renewal reviews within the team and working closely with outsourced assessors on the status of Third-Party Security Assessments (TPSAs).
- Perform due diligence and risk assessments on third party vendors, ensure their compliance to regulatory requirements as well as Group and Local policy and standards.
- Third Party Uplift Initiatives to improve the customer experiences.
- Client Security Agreement – review clients' contracts clauses to ensure alignment with company's security policies and practices.
- Audit and Regulatory Management - support and responding to audit queries and to be involved in control assessment related to Risk Management.
- May be assigned to drive or support other initiative like security assessment services.
Specialized Areas Governance
- The role may be called upon to lead or be involved in ensuring governance of specialized areas under information security, such as cloud security, application security, etc.
- Work closely with stakeholders including Technology risk management, Risk and Compliance, Legal, Business as well as other departments within Technology.
The role is an important support to the Senior Manager of Technology Vendor Management.
WHAT YOU SHOULD HAVE
- University degree in one of the following or related disciplines (Computer Science, Computer Engineering, Information Systems, Cyber Security)
- Preferably a holder of one or more of the following information security and audit qualifications: CISSP, CISA, CRISC, CCSP
- At least 8-12 years of IT experience, audit, risk management roles, with good expertise and knowledge of governance reporting of technology risk issues and cyber security
- Rich working experience from financial industry is preferred
- Experience and exposure in MAS TRMG and relevant notices, information security standards and audits such as ISO27001, NIST standard, SOC2 and OSPAR will be an advantage
- Strong knowledge of KRIs and metrics development for security and risk management reporting
- Project Management experience is an advantage
- Good Communication, Coordination and Interpersonal Skills
- Mature-thinking, meticulous, strong problem-solving and analytical traits
- High drive, energy and good attitude over teamwork
- Ability to work independently, with high levels of professional integrity
- Eagerness to learn and develop one's knowledge in information security and risk management
Build a career with us as we help our customers and the community live Healthier, Longer, Better Lives.
You must provide all requested information, including Personal Data, to be considered for this career opportunity. Failure to provide such information may influence the processing and outcome of your application. You are responsible for ensuring that the information you submit is accurate and up-to-date.
Tell employers what skills you haveBrokerage
Application Security
Due Diligence
Commercial Real Estate
Wholesale Banking
Equity Research
Escrow
Interpersonal Skills
Customer Information
Risk Management
Capital Raising
Strategy Implementation
Middle Market
CISA
Excess
Regulatory Requirements
-
Singapore AIA Full timeAt AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone. - As pioneering innovators for over 100 years, we’re now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live...
-
Third Party Risk Manager
1 week ago
Singapore UBS Full timeSingapore - Outsourcing / Offshoring, Process, project and program management - Group Functions **Job Reference #** - 273464BR **City** - Singapore **Job Type** - Full Time **Your role** - The Third Party Risk Management (TPRM) function is responsible for providing oversight of the third party risk (inc. outsourcing) within Singapore. - The...
-
Third Party Risk Manager
5 days ago
Singapore UBS Full timeSingapore - Outsourcing / Offshoring, Process, project and program management - Group Functions **Job Reference #** - 266829BR **City** - Singapore **Job Type** - Full Time **Your role** - The Third Party Risk Management (TPRM) function is responsible for providing oversight of the third party risk (inc. outsourcing) within Singapore. - The...
-
Singapore Bank of America Full time**Your background** - Previous information technology/security audit/assessment experience preferred. - Ability to leverage attention to detail and analytical skills. - Ability to multi-task and work both independently as well as part of an assessment team - Ability to plan, execute and document assessment and remediation activities following established...
-
Third Party Security Engineer
7 days ago
Singapore TikTok Full timeResponsibilities TikTok is the leading destination for short-form mobile video. At TikTok, our mission is to inspire creativity and bring joy. TikTok's global headquarters are in Los Angeles and Singapore, and its offices include New York, London, Dublin, Paris, Berlin, Dubai, Jakarta, Seoul, and Tokyo. Why Join Us Creation is the core of TikTok's purpose....
-
Third Party Risk Manager
1 day ago
Singapore beBeeRisk Full time $100,000 - $150,000Job OpportunityOur team is seeking an experienced professional to lead our Third Party Risk management efforts. This role will be responsible for operationalizing a third party risk management framework and exercising oversight of all third party risk management activities.Design, determine and establish key risk indicators (KRIs), implement risk control...
-
Third Party Security Management Specialist
7 days ago
Singapore TikTok Full timeResponsibilities TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. TikTok has global offices including Los Angeles, New York, London, Paris, Berlin, Dubai, Singapore, Jakarta, Seoul and Tokyo. Why Join Us At TikTok, our people are humble, intelligent, compassionate and creative. We create to...
-
Third Party Risk Manager
2 days ago
Singapore beBeeRisk Full time $2,000,000 - $2,500,000Job Title:">We are seeking a highly skilled Third Party Risk Manager to join our team. The successful candidate will be responsible for reviewing and assessing third-party arrangements, ensuring compliance with regulatory standards.">Key Responsibilities:">">Reviewing and assessing third-party arrangements, including conducting business assessments and due...
-
Third-party Risk Manager
5 days ago
Singapore The Edge Asia Full timeOur client is looking for a highly motivated and experienced Vendor Manager to join their team. In this role, you will be responsible for managing and supporting the third-party risk management processes and compliance with governance standards, in addition to collaborating with various teams across the organization. EA License Number: 16S8131 Recruiter...
-
Risk Specialist
2 weeks ago
Singapore Bank of Singapore Full timeAt Bank of Singapore, we are constantly on the lookout for exceptional individuals to join our team. We promote a culture of openness, teamwork and fairness. Most importantly, we invest in our people through our programmes that develop them on both professional and personal levels. Besides attractive remuneration packages, we offer non-financial benefits and...