IT and Cyber Risk Control Lead

2 weeks ago


Singapore GXS Bank Full time
The day-to-day activities:
  • Maintain and update the Bank's technology and cyber risk frameworks, policies and standards based on prevailing regulatory requirements and industry best practices.
  • Drive proactive adherence with Bank's security policies and standards, and regulatory requirements across the region.
  • Build a comprehensive controls library to support technology and cyber risk management activities of the GXS.
  • Assess the effectiveness of controls and determine the residual risks of any control failures and remediation actions are required.
  • Maintain a risk register of all residual risk acceptances with implication of technology and cyber risks.
  • Proactively track and monitor implementation of risk mitigation measures and perform effectiveness review where needed to ensure implemented measures are effective in reducing risks to acceptable levels..
  • Support technology and cyber KRI reporting activities and to ensure adherence with the Bank's risk appetite.
  • Participate in technology and cyber risk governance working groups and/or committees where needed.
  • Facilitate internal and external audits, as well as regulatory examinations/inspections as a Person In-Charge (PIC) for TRGC function.
The must-haves:
  • Degree in Computer Science / Technology-related field.
  • Minimum 10 years experience in a similar role with another financial institution or regulated institution (e.g. Telco).
  • Excellent presentation and communication skills with proficiency in English (both verbal and written).
  • Excellent stakeholder management skills.
  • Professional information security certification (e.g. CISSP, CISA, CISM, etc) is strongly recommended.
  • Possess excellent communication, sharp analytical abilities with proven design skills, able to think critically of the current system in terms of growth and stability.
  • Prior knowledge and exposure of technology and cyber risk management in the banking industry.
  • Familiarity with other principle risk types such as fraud risks and liquidity risks.


  • Singapore ASTEK SINGAPORE INNOVATION TECHNOLOGY PTE. LTD. Full time

    Roles & Responsibilities Overall 6 years experience of performing Information security risk assessment Experience and knowledge of Cybersecurity risk and control framework Be a senior security consultant responsible for review of BAU projects, ensuring security by design using the Secure Project Lifecycle process. Provide updates on the Project Register...


  • Singapore Astek Singapore Innovation Technology Pte. Ltd. Full time

    Overall 6 years experience of performing Information security risk assessmentExperience and knowledge of Cybersecurity risk and control frameworkBe a senior security consultant responsible for review of BAU projects, ensuring security by design using the Secure Project Lifecycle process.Provide updates on the Project Register portfolio, giving management...


  • Singapore Ntt Singapore Pte. Ltd. Full time

    Summary:Support Risk and Control function for Information and Technology Cyber Risk Management operations.Contract Duration - 12 Months renewable Possess a degree in Computer Science/Information Technology or related fields.3 to 8 years of experience in IT cyber security risk management and implementation.Proficient with professional industry knowledge and...


  • Singapore NTT SINGAPORE PTE. LTD. Full time

    Roles & ResponsibilitiesSummary:Support Risk and Control function for Information and Technology Cyber Risk Management operations.Contract Duration - 12 Months renewable Possess a degree in Computer Science/Information Technology or related fields. 3 to 8 years of experience in IT cyber security risk management and implementation. Proficient with...


  • Singapore Singapore Airlines Limited Full time

    Job DescriptionYou will be a member of the Group Information Security Team responsible for ensuring corporate applications, systems, networks, and digital assets are adequately protected and mitigated against cyber threats and risks. You will help drive cybersecurity and risk management efforts and user awareness and education within the Singapore Airlines...

  • Assistant Director

    1 week ago


    Singapore SYNAPXE PTE. LTD. Full time

    Roles & Responsibilities•Be the integrator and additional lead point of contact for cyber security policies development, implementation and adherence while facilitating engagement and collaboration with various stakeholders in public healthcare sector.•Be the voice for the team from a cyber security perspective when evaluating stakeholders’...


  • Singapore SINGAPORE AIRLINES LIMITED Full time

    Roles & ResponsibilitiesJob DescriptionYou will be a member of the Group Information Security Team responsible for ensuring corporate applications, systems, networks, and digital assets are adequately protected and mitigated against cyber threats and risks. You will help drive cybersecurity and risk management efforts and user awareness and education within...

  • Assistant Director

    6 days ago


    Singapore Synapses Pte. Ltd. Full time

    . Be the integrator and additional lead point of contact for cyber security policies development, implementation and adherence while facilitating engagement and collaboration with various stakeholders in public healthcare sector.. Be the voice for the team from a cyber security perspective when evaluating stakeholders' requirements, expectation, and...


  • Singapore Zenith Infotech (s) Pte Ltd. Full time

    Presently we have a Job Opening for a Cyber Risk Specialist position-Relevant web application experienceIdentify app security lapses in a system and mitigation methodsFamiliar with technologies like SAST, DAST or IASTFamiliar with security testing tools like Burp, ZAP, Nessus, Fortify SCA,CheckMarx, etc.Define app security practices for one or multiple...


  • Singapore Ca Search Pte. Ltd. Full time

    THE ROLECLIENT: Energy trading firm COVERAGE: RegionalSUMMARY Oversee the control activities across the region and to ensure that our control framework is governing our business operation in a safe and compliant manner. Identify weaknesses within the organization's IT processes and infrastructures and ensure that proper measures are implemented to minimize...

  • Senior GRV Analyst

    3 weeks ago


    Singapore Marinabay sands Full time

    Summary of the roleThe primary responsibility of the Governance Analyst is to perform duties in one or more of the following areas: vulnerability management, cyber data governance, risk and verification, cyber policy/standards/standard operating procedures development, and penetration testing and red teaming.All duties are to be performed in accordance with...

  • Senior GRV Analyst

    3 weeks ago


    Singapore Marina Bay Sands Pte Ltd Full time

    Job Description :Summary of the roleThe primary responsibility of the Governance Analyst is to perform duties in one or more of the following areas: vulnerability management, cyber data governance, risk and verification, cyber policy/standards/standard operating procedures development, and penetration testing and red teaming.All duties are to be performed in...


  • Singapore ZENITH INFOTECH (S) PTE LTD. Full time

    Roles & ResponsibilitiesPresently we have a Job Opening for a Cyber Risk Specialist position- Relevant web application experience Identify app security lapses in a system and mitigation methods Familiar with technologies like SAST, DAST or IAST Familiar with security testing tools like Burp, ZAP, Nessus, Fortify SCA,CheckMarx, etc. Define app security...


  • Singapore DELOITTE & TOUCHE ENTERPRISE RISK SERVICES PTE LTD Full time

    Roles & ResponsibilitiesWe help clients protect the software applications that support these initiatives by assisting companies against data security breaches, data leakage, and cyber threats.You will be part of a technical team that analyse, design, monitor, and manage risk litigations and exceptions to ensure adequate monitoring capability is incorporated...


  • Singapore Societe Generale Full time

    Department DescriptionReporting within the Global Business Service Unit (GBSU) to the IT Risk And Production Management (RPM) department, the Data & Cybersecurity (DCS) team is responsible for securing and steering Information Security and Cybersecurity related risks falling under Global Banking & Investor Solutions' (GBIS) remit.Responsibilities:The...


  • Singapore CA SEARCH PTE. LTD. Full time

    Roles & ResponsibilitiesTHE ROLECLIENT: Energy trading firmCOVERAGE: RegionalSUMMARYOversee the control activities across the region and to ensure that our control framework is governing our business operation in a safe and compliant manner.Identify weaknesses within the organization's IT processes and infrastructures and ensure that proper measures are...


  • Singapore SOCIETE GENERALE Full time

    Roles & ResponsibilitiesDepartment DescriptionReporting within the Global Business Service Unit (GBSU) to the IT Risk And Production Management (RPM) department, the Data & Cybersecurity (DCS) team is responsible for securing and steering Information Security and Cybersecurity related risks falling under Global Banking & Investor Solutions' (GBIS)...


  • Singapore MUFG BANK, LTD. SINGAPORE BRANCH Full time

    Roles & ResponsibilitiesIRMD is a regional first line of defence function supporting MUFG Bank’s branches in Asia Pacific region. This role is a team lead and is a subject matter expert in the principles, processes and technical aspects of domains related to IT Governance, Risk and Compliance (ITGRC), and is responsible for establishing and maintaining...


  • Singapore Deloitte & Touche Enterprise Risk Services Pte Ltd Full time

    We help clients protect the software applications that support these initiatives by assisting companies against data security breaches, data leakage, and cyber threats. You will be part of a technical team that analyse, design, monitor, and manage risk litigations and exceptions to ensure adequate monitoring capability is incorporated into solutions. The...

  • Vice President, Risk

    2 weeks ago


    Singapore Mizuho Bank Full time

    Company Profile MIZUHO BANK, LTD. IS A SUBSIDIARY OF THE JAPAN-BASED MIZUHO FINANCIAL GROUP, INC. (LISTED ON THE TOKYO STOCK EXCHANGE AND NYSE) AND IS ONE OF THE LARGEST FINANCIAL SERVICES COMPANIES IN THE WORLD. MIZUHO BANK, LTD. PROVIDES FINANCIAL AND STRATEGIC SOLUTIONS FOR THE INCREASINGLY DIVERSE AND SOPHISTICATED NEEDS OF ITS CLIENTS WITH OFFICES...