IT Governance, Risk and Compliance Manager
3 days ago
Responsibilities Review and update internal IT policies/standards; communicate changes of internal policies/standards to staff and stakeholders. Develop and deliver cybersecurity training for staff, management, board of directors, agents and vendors. Track and manage deviations from IT policies and standards. Report on key information security risk metrics, including policy deviations and third-party assessments. Present technology and security risk updates to management and board committees. IT Governance and Security Awareness Lead regular risk assessments and continuous monitoring of technology risks, including emerging threats and new technologies. Manage technology risks related to third-party service providers and business partners. Oversee IT Risk Control Self-Assessment and Control Testing to evaluate the design and operating effectiveness of key controls. Communicate technology risks and mitigation strategies to relevant stakeholders, ensuring transparency and alignment. Technology Risk Management Facilitate regulatory engagements which include inspection, survey, query and ad-hoc requests from regulators related to IT division. Lead organisational self-assessments against technology and security related regulatory notices, circulars, guidelines and advisories. Coordinate external/internal audits and cybersecurity maturity assessment related to IT division. Technology Compliance and Assurance Drive enterprise access review activities, including roles to entitlements review, segregation of duties rules review, user access review. Drive the user administration activities review and SAP log review. IT Access Review Support enterprise-wide risk and compliance initiatives for the Technology division in specialised areas under information security, such as IAM, cloud security, application security, data security, AI security, etc. > Promote information security best practices and continuous improvement. Champion ongoing staff learning and development on cybersecurity and technology risk domains. Specialised Areas Governance Degree or Diploma in Computer Science, Information Technology, or related field. Minimum 10 years' experience in cybersecurity governance, risk monitoring, audit response, and compliance assessments. 2 - 4 years of team leading experience and managing teams of 8-10 members. Proven experience leading IT audits and regulatory inspections. Background in financial industry, big tech or established auditing firms preferred. Strong knowledge of MAS Technology Risk Management, Cyber Hygiene, Outsourcing, and Business Continuity Management requirements. Familiarity with control frameworks (COBIT, NIST CSF, ISO 27001). Practitioner and holder of IT risk certifications (CISA, CRISC, CISSP). Proficiency in office productivity tools and business intelligence platforms (Microsoft Office, PowerBI, Archer, Tableau). Demonstrated ability to analyse risk and control issues, challenge the status quo, and drive pragmatic solutions. Track record in developing and driving information security awareness programs. Excellent interpersonal, coordination, communication, presentation, and writing skills. Meticulous, independent, and collaborative work style. Requirements Degree or Diploma in Computer Science, Information Technology, or related field. Minimum 10 years' experience in cybersecurity governance, risk monitoring, audit response, and compliance assessments. 2 - 4 years of team leading experience and managing teams of 8-10 members. Proven experience leading IT audits and regulatory inspections. Background in financial industry, big tech or established auditing firms preferred. Strong knowledge of MAS Technology Risk Management, Cyber Hygiene, Outsourcing, and Business Continuity Management requirements. Familiarity with control frameworks (COBIT, NIST CSF, ISO 27001). Practitioner and holder of IT risk certifications (CISA, CRISC, CISSP). Proficiency in office productivity tools and business intelligence platforms (Microsoft Office, PowerBI, Archer, Tableau). Demonstrated ability to analyse risk and control issues, challenge the status quo, and drive pragmatic solutions. Track record in developing and driving information security awareness programs. Excellent interpersonal, coordination, communication, presentation, and writing skills. Meticulous, independent, and collaborative work style. #J-18808-Ljbffr
-
Manager, Governance, Risk
2 weeks ago
Singapore Employment and Employability Institute Full timeEmployment and Employability Institute – Jurong Town The e2i Manager, Governance, Risk & Compliance (GRC) is a seasoned individual contributor responsible for executing key GRC activities, with a particular focus on recommending follow up actions on Statement of Grant Claim (SOGC) audits, investigations into whistleblowing cases, and providing secretariat...
-
Manager, Governance, Risk
2 weeks ago
Singapore Employment And Employability Institute Pte. Ltd Full timeThe e2i Manager, Governance, Risk & Compliance (GRC) is a seasoned individual contributor responsible for executing key GRC activities, with a particular focus on recommending follow up actions on Statement of Grant Claim (SOGC) audits, investigations into whistleblowing cases, and providing secretariat support to the Audit & Risk Committee (ARC) and...
-
Senior Manager
2 hours ago
Singapore Office of Risk Management and Compliance Full time**Posting Start Date**:21/01/2025 About ORMCThe Compliance, Data & Technology Risk unit of NUS Office of Risk Management and Compliance (“ORMC”) is seeking a highly skilled and experienced Compliance professional to oversee compliance risk management initiatives. The role is responsible for ensuring that the university is aware of and adheres to all...
-
IT Governance, Risk and Compliance Manager
5 days ago
Singapore Income Insurance Limited Full time $120,000 - $180,000 per yearResponsibilities:IT Governance and Security AwarenessReview and update internal IT policies/standards; communicate changes of internal policies/standards to staff and stakeholders.Develop and deliver cybersecurity training for staff, management, board of directors, agents and vendors.Track and manage deviations from IT policies and standards.Report on key...
-
IT Governance, Risk and Compliance Manager
5 days ago
Singapore Income Insurance Limited Full time $120,000 - $180,000 per yearDescriptionResponsibilities:IT Governance and Security AwarenessReview and update internal IT policies/standards; communicate changes of internal policies/standards to staff and stakeholders.Develop and deliver cybersecurity training for staff, management, board of directors, agents and vendors.Track and manage deviations from IT policies and...
-
Governance, Risk and Compliance Specialist
5 days ago
Singapore Tech Aalto Full time $19,200 - $240,000 per yearJob Title: Governance, Risk and Compliance SpecialistPosition Type:ContractJob Description:We are looking for experienced Governance, Risk, and Compliance (GRC) Specialists to join our team. This role is focused on enhancing and operationalizing security policies, conducting risk assessments, and managing compliance with cybersecurity standards. The ideal...
-
Governance Risk and Compliance Specialist
1 week ago
Singapore WSH EXPERTS PTE LTD Full time**Responsibilities** - Develop the culture of Tech risk governance and management across the organization, and ensure proper accountability in the management, tracking and reporting of tech and cyber risks. Review and establish ICT policies and process controls and conduct compliance checks. Support team lead and work with internal stakeholders Work with...
-
Governance Risk and Compliance Specialist
1 week ago
Singapore WSH Experts Pte Ltd Full timeDevelop the culture of Tech risk governance and management across the organisation, and ensure proper accountability in the management, tracking and reporting of tech and cyber risks. Review and establish ICT policies and process controls and conduct compliance checks. Support team lead and work with internal stakeholders Work with Application System...
-
Governance, Risk and Compliance Specialist
5 days ago
Singapore Tech Aalto Full time $80,000 - $120,000 per yearYour scope of work includes: • Develop and maintain internal cybersecurity policies and processes;• Ascertain security compliance with regulatory, and internal policies and processes;• Support IT / cyber security audits; and• Tracking and reporting cyber risks. Key Responsibilities• Develop the culture of cybersecurity governance, compliance and...
-
Singapore SSquad Global Full timeOn-Premises GRC (Governance, Risk and Compliance) Analyst - (Associate level and not SME level) Governance & Compliance "Develop, implement, and maintain security policies, procedures, and standards in line with industry best practices (ISO 27001, NIST, CIS, etc.). Ensure compliance with regulatory requirements (MAS TRMG, CCoP). Assist in internal audits and...