Lead, IT Governance, Risk and Compliance

1 week ago


Singapore Income Insurance Limited Full time

Lead, IT Governance, Risk and Compliance Job Description Responsibilities: IT Governance and Security Awareness Review and update internal IT policies/standards; communicate changes of internal policies/standards to staff and stakeholders. Develop and deliver cybersecurity training for staff, management, board of directors, agents and vendors. Track and manage deviations from IT policies and standards. Report on key information security risk metrics, including policy deviations and third‑party assessments. Present technology and security risk updates to management and board committees. Technology Risk Management Lead regular risk assessments and continuous monitoring of technology risks, including emerging threats and new technologies. Manage technology risks related to third‑party service providers and business partners. Oversee IT Risk Control Self‑Assessment and Control Testing to evaluate the design and operating effectiveness of key controls. Communicate technology risks and mitigation strategies to relevant stakeholders, ensuring transparency and alignment. Technology Compliance and Assurance Facilitate regulatory engagements which include inspection, survey, query and ad‑hoc requests from regulators related to IT division. Lead organisational self‑assessments against technology and security related regulatory notices, circulars, guidelines and advisories. Coordinate external/internal audits and cybersecurity maturity assessment related to IT division. IT Access Review Drive enterprise access review activities, including roles to entitlements review, segregation of duties rules review, user access review. Drive the user administration activities review and SAP log review. Specialised Areas Governance Support enterprise‑wide risk and compliance initiatives for the Technology division in specialised areas under information security, such as IAM, cloud security, application security, data security, AI security, etc. Promote information security best practices and continuous improvement. Champion ongoing staff learning and development on cybersecurity and technology risk domains. Requirements: Degree or Diploma in Computer Science, Information Technology, or related field. Minimum 10 years’ experience in cybersecurity governance, risk monitoring, audit response, and compliance assessments. 2 - 4 years of team leading experience and managing teams of 8-10 members. Proven experience leading IT audits and regulatory inspections Background in financial industry, big tech or established auditing firms preferred. Strong knowledge of MAS Technology Risk Management, Cyber Hygiene, Outsourcing, and Business Continuity Management requirements. Familiarity with control frameworks (COBIT, NIST CSF, ISO 27001). Practitioner and holder of IT risk certifications (CISA, CRISC, CISSP). Proficiency in office productivity tools and business intelligence platforms (Microsoft Office, PowerBI, Archer, Tableau). Demonstrated ability to analyse risk and control issues, challenge the status quo, and drive pragmatic solutions. Track record in developing and driving information security awareness programs. Excellent interpersonal, coordination, communication, presentation, and writing skills. Meticulous, independent, and collaborative work style. #J-18808-Ljbffr


  • Compliance Manager

    3 days ago


    Singapore Office of Risk Management and Compliance Full time

    **Posting Start Date**:21/01/2025 About ORMCAt NUS Office of Risk Management and Compliance (ORMC), we not only manage risks to build the University’s resilience but also help shape them into opportunities to empower the community. We will continually support and partner with our stakeholders within the University to make this possible. DATA PRIVACY -...


  • Singapore Employment and Employability Institute Full time

    Employment and Employability Institute – Jurong Town The e2i Manager, Governance, Risk & Compliance (GRC) is a seasoned individual contributor responsible for executing key GRC activities, with a particular focus on recommending follow up actions on Statement of Grant Claim (SOGC) audits, investigations into whistleblowing cases, and providing secretariat...


  • Singapore Great Eastern Full time

    A leading insurance provider in Singapore is looking for a Risk Management professional specializing in Compliance & Governance. The role includes conducting assessments and investigations to ensure regulatory compliance and mitigate risks. Candidates should possess strong analytical skills and relevant experience in the financial industry. This is a...

  • Senior Compliance

    3 days ago


    Singapore Space Executive Full time

    A leading recruitment firm is seeking a Consultant to hire a Compliance & Risk Lead. This role focuses on governance, integrity controls, and oversight in financial activities. The ideal candidate will have approximately 7 years of experience in governance or compliance, strong regulatory knowledge, and excellent communication skills. This position offers an...


  • Singapore ALLIANZ SE Full time

    A leading insurance and financial services company is looking for a professional in Singapore to oversee compliance governance and risk management for the Asia Pacific Region. The ideal candidate will need to have over 10 years of experience in compliance, audit, or risk in insurance or financial services, along with strong analytical and communication...


  • Singapore Unison Consulting Pte Ltd Full time

    Total 10 Years of experience out of which at least 5 years relevant experience in ICT cybersecurity, data security, audit management, governance, risk and compliance management - Relevant certifications in IT governance, IT audit, cyber or data security (e.g. CISSP, CISM, CISA, etc.) preferred. - Ability to work with cross-functional, multi-disciplined team...


  • Singapore Income Insurance Limited Full time

    Responsibilities Governance Leadership Ensure alignment of IT practices with business objectives and regulatory requirements. Risk Assurance Identify, assess, and monitor IT risks. Lead initiatives to mitigate risks and improve system reliability and security. Compliance Oversight Ensure adherence to internal controls and external regulations (e.g., ISO...


  • Singapore Income Insurance Limited Full time

    Responsibilities Review and update internal IT policies/standards; communicate changes of internal policies/standards to staff and stakeholders. Develop and deliver cybersecurity training for staff, management, board of directors, agents and vendors. Track and manage deviations from IT policies and standards. Report on key information security risk metrics,...


  • Singapore Space Executive Full time

    Consultant - Recruiting Asia’s top talent in Governance Appointments | Space Executive We’re supporting a fast-growing financial services player to hire a Compliance & Risk Lead. This role focuses on overall governance, integrity controls, and oversight across a range of emerging and traditional financial activities. Key Responsibilities Drive the...

  • Senior Manager

    2 weeks ago


    Singapore Office of Risk Management and Compliance Full time

    **Posting Start Date**:21/01/2025 About ORMCThe Compliance, Data & Technology Risk unit of NUS Office of Risk Management and Compliance (“ORMC”) is seeking a highly skilled and experienced Compliance professional to oversee compliance risk management initiatives. The role is responsible for ensuring that the university is aware of and adheres to all...