IT GRC Manager
6 days ago
Overview Join to apply for the IT GRC Manager role at StarHub . In this position, the applicant will join the IT GRC team to perform IT governance, risk management and compliance functions. The role reports into the Head, IT VMO & GRC within the Information Services division (IS). As an IT Governance, Risk & Compliance (GRC) Manager, you will play a pivotal role in ensuring the organization's adherence to regulatory and internal policies, managing risk, and maintaining a robust governance framework. Your responsibilities will involve assessing and mitigating risks, monitoring compliance with applicable laws and regulations, and assisting in the development of strategies to enhance governance practices. The role provides opportunity for direct interaction with senior management in business, IT, and vendors. Responsibilities Risk Assessment and Management Identify potential risks and vulnerabilities within IS's operations, processes, IT applications and IT infrastructure. Conduct risk assessments to evaluate the impact and likelihood of various risks. Develop strategies and plans to mitigate identified risks and minimize their potential impact. Regulatory Compliance Stay updated on relevant laws, regulations, and industry standards that impact IS's operations. Ensure that IS complies with all applicable regulations, ranging from data privacy and cybersecurity to industry-specific requirements. Implement and monitor compliance programs, policies, and procedures. Policy Development Contribute to the creation and maintenance of IT policies and procedures that guide IS's behavior and practices. Collaborate with legal and compliance teams to ensure policies align with regulatory requirements. Monitoring and Auditing Regularly monitor IS's activities and processes to detect deviations from established policies and regulations. Conduct internal audits to assess the effectiveness of controls and identify areas for improvement. Prepare audit reports and provide recommendations to enhance compliance and risk management efforts. Collaborate with internal and external audit teams, providing documentation and evidence as needed to demonstrate compliance and adherence to governance standards. Training and Education Develop and deliver training programs to educate employees about compliance standards, risk management practices, and ethical behavior. Foster a culture of compliance by promoting awareness and understanding of IT GRC principles across IS. Reporting and Continuous Improvement Prepare and distribute regular reports to management and stakeholders summarizing risk assessments, compliance status, and recommendations for improvement. Identify opportunities for enhancing governance processes and recommend improvements to reduce risk exposure and enhance operational efficiency. Qualifications 5 to 7 years' experience in IT governance, risk management or compliance in a regulated industry is essential. Relevant certifications (e.g., CISA, CRISC, GRCP, GRCA) are an added advantage. Experience in the telecommunication/technology industry and the associated regulations is a plus. Strong knowledge of regulatory frameworks, industry standards, and best practices related to IT GRC (e.g., PDPA, Cybersecurity Act, NIST, PCI DSS, ISO 27001, COBIT, ISAE 3000/SOC 2). Understanding cloud computing, information security, cybersecurity practices, and data protection principles is highly valuable. Exceptional analytical skills and the ability to assess complex risks and provide practical solutions. Prior experience in Archer GRC solution. Excellent communication and interpersonal skills to work effectively with cross-functional teams and external stakeholders. Detail-oriented with a commitment to maintaining the highest standards of integrity and ethics. Strong organizational skills and the ability to prioritize and manage multiple tasks efficiently. Adaptability and the capability to stay current with evolving regulations and industry trends. Results-oriented, meticulous, and resourceful. Excellent team player, self-driven and able to work under pressure. Seniority level Mid-Senior level Employment type Full-time Job function Information Technology Industries Telecommunications #J-18808-Ljbffr
-
SAP Grc
4 days ago
Singapore BLUE OCEAN SYSTEMS INFOTECH PTE. LTD. Full timeUrgent opening for SAP GRC Consultant - Embedded GRC on RISE - Experience on how to configure roles for S4 and SAP cloud systems like Ariba, SuccessFactors, Datasphere etc at the position level - Experience on using IAG/IAG Bridge to manage id and role authorization for SAP cloud systems like Ariba, SuccessFactors, Datasphere. - Experience in configuring GRC...
-
SAP Grc Consultant
2 days ago
Singapore Blue Ocean Systems Infotech Pvt. Ltd. Full time**Role: SAP GRC** - Evaluate & integrate SAP Fiori apps into SAP GRC - Perform outside research to develop expertise in SAP GRC security functionality and industry best practices within the SAP GRC, the IT risk management and compliance space - **SAP GRC Access Control**: - Access Risk Analysis (ARA) - Emergency Access Management (EAM) - Business Role...
-
SAP Grc Consultant
6 days ago
Singapore BLUE OCEAN SYSTEMS INFOTECH PTE. LTD. Full timeHi Urgent opening for SAP GRC Consultant Evaluate & integrate SAP Fiori apps into SAP GRC Perform outside research to develop expertise in SAP GRC security functionality and industry best practices within the SAP GRC, the IT risk management and compliance space Provide technical leadership in the assessment, design, and implementation of SAP GRC security...
-
SAP Grc Consultant
2 days ago
Singapore Blue Ocean Systems Infotech Pvt. Ltd. Full timeHi, SAP GRC Consultant notice period: immediate or 1 month 5+ years of relevant experienceS/4 hana implementation is mustEmbedded GRC on RISEExperience on how to configure roles for S4 and SAP cloud systems like Ariba, SuccessFactors, Datasphere etc at the position levelExperience on using IAG/IAG Bridge to manage id and role authorization for SAP cloud...
-
Security Consultant
1 week ago
Singapore Genesis Networks Pte Ltd Full timeWe are looking for a strategic, detail-oriented individual to join our team as a Security Consultant with a focus on Governance, Risk, and Compliance (GRC). Your responsibilities will include assessing security risks, ensuring compliance with regulatory standards, and developing policies to enhance the security posture of our organisation and clients. As the...
-
Manager, Ncs Grc
2 weeks ago
Singapore NCS Full time**Manager, NCS GRC**: **Date**:12 Feb 2025 **Location**: Singapore, Singapore **Company**:Singtel Group NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to achieve extraordinary...
-
DRSC A&A: GRC Technology
14 hours ago
Singapore Deloitte PLT Full timeTitle: DRSC A&A – Senior Consultant Location: Kuala Lumpur, MY At Deloitte, our purpose is to make an impact that matters for our clients, our people, and the communities we serve. We believe in being a force for good through our WorldImpact portfolio, advising clients on purpose‐led growth and equitable, inclusive, and sustainable business practices....
-
Security Consultant
6 days ago
Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time**Responsibilities** - Engage clients to identify requirements relating to cyber security solutions for GRC, VMS, DLP or Data Protection - Proposal, scope and size technical solutions for clients - Deploy competency’s related projects and provide consultation to clients with regard to the deployment as a Subject Matter Expert (SME) - Create technical...
-
Grc Consultant
3 hours ago
Singapore TAURUS FIRM PTE. LTD. Full timeReporting to the Lead IT Consultant (IT Governance) and supporting the Communications & Information Technology Division in Compus’s IT Governance, Risk & Compliance (GRC), IT Disaster Recovery and Business Continuity and new Data Governance initiatives. The duties of the successful incumbent include the following: **Responsibilities** - Work on standards...
-
SAP Basis Hana or Grc Consultant
2 weeks ago
Singapore 3STAR CONSULTING PTE. LTD. Full timeSAP Consultant invloved in BASIS Administration, SAP User Management or GRC Management. - SAP Netweaver 7.5, SAP S/4 HANA, Windows, Sybase, Solution Manager - Provides all-around Basis support for the project ECC or S/4 HANA and Netweaver Installations & Administration, Upgrades & Migrations - Patch & Kernel Upgrade, SAP Performance Tuning and Database...