Third-Party Security Risk Management, Consultant

2 weeks ago


Singapore AIA Singapore Full time

Third-Party Security Risk Management, Consultant
Third-Party Security Risk Management, Consultant
At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone.
As pioneering innovators for over 100 years, we're now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier, Longer, Better Lives.
To get there, we need people with tech/digital/analytics expertise and passion to help develop positive, sustainable change through digitally enhanced experiences that will impact the lives of millions of people and create a healthier future for everyone.
If you believe in developing a better tomorrow, read on.
About The Role
This position is responsible for overseeing the Third-Party Security Risk Management domain, providing consultation, professional advice on information security and key technology risk matters relating to the mentioned geographical responsibilities, thereby adding value to building a strong information security risk culture centered on people, processes and technology. The role will require good understanding of security requirements in the financial industry, technology risk management methodology and the ability to work cohesively with internal and external stakeholders to maintain the highest standard of security.
What You'll Be Doing
Third-Party Security Risk Management
Manage the process of assessing and evaluating the security postures of third- party vendors and partners. The includes monitoring of third-party security assessment renewal, assigning the renewal reviews within the team and working closely with outsourced assessors on the status of Third-Party Security Assessments (TPSAs).
Perform due diligence and risk assessments on third party vendors, ensure their compliance to regulatory requirements as well as Group and Local policy and standards.
Third Party Uplift Initiatives to improve the customer experiences.
Client Security Agreement – review clients' contracts clauses to ensure alignment with company's security policies and practices.
Audit and Regulatory Management - support and responding to audit queries and to be involved in control assessment related to Risk Management.
May be assigned to drive or support other initiative like security assessment services.
Specialized Areas Governance
The role may be called upon to lead or be involved in ensuring governance of specialized areas under information security, such as cloud security, application security, etc.
Work closely with stakeholders including Technology risk management, Risk and Compliance, Legal, Business as well as other departments within Technology.
The role is an important support to the Senior Manager of Technology Vendor Management.
What You Should Have
University degree in one of the following or related disciplines (Computer Science, Computer Engineering, Information Systems, Cyber Security)
Preferably a holder of one or more of the following information security and audit qualifications: CISSP, CISA, CRISC, CCSP
At least 8-12 years of IT experience, audit, risk management roles, with good expertise and knowledge of governance reporting of technology risk issues and cyber security
Rich working experience from financial industry is preferred
Experience and exposure in MAS TRMG and relevant notices, information security standards and audits such as ISO27001, NIST standard, SOC2 and OSPAR will be an advantage
Strong knowledge of KRIs and metrics development for security and risk management reporting
Project Management experience is an advantage
Good Communication, Coordination and Interpersonal Skills
Mature-thinking, meticulous, strong problem-solving and analytical traits
High drive, energy and good attitude over teamwork
Ability to work independently, with high levels of professional integrity
Eagerness to learn and develop one's knowledge in information security and risk management
Build a career with us as we help our customers and the community live Healthier, Longer, Better Lives.
You must provide all requested information, including Personal Data, to be considered for this career opportunity. Failure to provide such information may influence the processing and outcome of your application. You are responsible for ensuring that the information you submit is accurate and up-to-date.
ABOUT AIA
For over a century, AIA has served the ever-changing needs of our customers across Asia-Pacific. Our Purpose to help millions of people live Healthier, Longer, Better Lives is at the heart of everything we do.
As pioneering innovators, we're now transforming AIA to be faster, simpler and more connected to create better solutions and impactful experiences for our customers and communities. AIA encourages and enables our people to act with clarity, courage and humanity in service of our Purpose.
JOIN US
At AIA, we believe in empowering every one of our people to find their 'better' - in the work they do, the career they build, the life they live and the difference they make. Whether it's investing better wellbeing, inspiring better learning, building better relationships, or making a better impact on customers, a career at AIA will challenge you to find new ways to pursue your 'better'.
AIA is committed to building a vibrant, diverse, and inclusive workforce for all employees to thrive in. Join us if you believe in creating a better tomorrow
Seniority level
Seniority level Mid-Senior level
Employment type
Employment type Full-time
Job function
Job function Finance and Sales
Industries Insurance
Referrals increase your chances of interviewing at AIA Singapore by 2x
Enterprise Risk Management Specialist (For Relocation to Dhahran, KSA)
Risk & Compliance Manager, Mandai Nature
IKEA Tampines - Risk, Control & Compliance Manager
Regional Manager -Internal Control, Compliance & Enterprise Risk Management (ERM), APAC
Technology Risk (Financial Services), Consultant/Senior Consultant, Risk Consulting
Financial Services Risk Management Senior Consultant (Financial Crime Compliance), Risk Consulting
We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr



  • Singapore AIA Singapore Full time

    Third-Party Security Risk Management, Consultant Third-Party Security Risk Management, Consultant At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone. As pioneering innovators for over 100 years, we’re now transforming our organisation to be faster, simpler and more connected. Because we want to be even...


  • Singapore AIA Hong Kong and Macau Full time

    Third-Party Security Risk Management, Consultant Apply locations: Singapore, SG - AIA Singapore Time type: Full time Posted on: Posted 3 Days Ago At AIA, we've started an exciting movement to create a healthier, more sustainable future for everyone. As pioneering innovators for over 100 years, we're now transforming our organization to be faster, simpler,...


  • Singapore AIA Hong Kong and Macau Full time

    Third-Party Security Risk Management, Consultant Apply locations: Singapore, SG - AIA Singapore Time type: Full time Posted on: Posted 3 Days Ago At AIA, we’ve started an exciting movement to create a healthier, more sustainable future for everyone. As pioneering innovators for over 100 years, we’re now transforming our organization to be faster,...


  • Singapore AIA SINGAPORE PRIVATE LIMITED Full time

    At AIA, we've started an exciting movement to create a healthier, more sustainable future for everyone. As pioneering innovators for over 100 years, we're transforming our organization to be faster, simpler, and more connected, enabling us to develop digital solutions that help more people live healthier, longer, better lives. We are seeking individuals...


  • Singapore AIA SINGAPORE PRIVATE LIMITED Full time

    At AIA, we’ve started an exciting movement to create a healthier, more sustainable future for everyone. As pioneering innovators for over 100 years, we’re transforming our organization to be faster, simpler, and more connected, enabling us to develop digital solutions that help more people live healthier, longer, better lives. We are seeking individuals...


  • Singapore AIA SINGAPORE PRIVATE LIMITED Full time

    Roles & Responsibilities At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone. As pioneering innovators for over 100 years, we're now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more...


  • Singapore AIA Singapore Private Limited Full time $90,000 - $120,000 per year

    At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone. If you believe in developing a better tomorrow, read on. About the Role WHAT YOU'LL BE DOING Third-Party Security Risk Management Manage the process of assessing and evaluating the security postures of third- party vendors and partners. The includes...


  • Singapore beBeeSecurity Full time $150,000 - $200,000

    Third-Party Security Risk Management, ConsultantKey role in our organization is responsible for overseeing Third-Party Security Risk Management, providing expert advice and guidance on information security and technology risk matters.About the RoleJob incumbent will be responsible for managing the process of assessing and evaluating the security postures of...


  • Singapore beBeeSecurity Full time

    Third-Party Security Risk Management, Consultant Key role in our organization is responsible for overseeing Third-Party Security Risk Management, providing expert advice and guidance on information security and technology risk matters. About the Role Job incumbent will be responsible for managing the process of assessing and evaluating the security...


  • Singapore beBeeSecurity Full time $80,000 - $120,000

    Our organization is committed to creating a healthier and more sustainable future for everyone.We're looking for an expert in third-party security risk management to oversee this domain and provide consultation on information security and key technology risk matters. This role aims to foster a strong information security risk culture focused on people,...