
IT Governance, Risk and Compliance Specialist
3 hours ago
**Trusted carbon credits. Real impact.**:
Climate Impact X (CIX) is a Singapore-based global carbon exchange and marketplace that aims to scale the voluntary carbon market; through a joint venture by DBS, SGX, Standard Chartered and Temasek.
CIX offers distinct platforms and products that cater to the needs of different carbon credit buyers and sellers. The Exchange facilitates the sale of large-scale high-quality carbon credits through standardised contracts - catering primarily to MNCs and institutional investors. The Project Marketplace and Auction offer a curated selection of NCS projects that can meet corporate sustainability objectives. Each project on the Project Marketplace and Auction is supported by transparent impact, risk and pricing data.
We are looking for dynamic, highly-motivated and passionate individuals willing to work and learn in a fast-paced environment to be part of this exciting journey to deliver tangible and lasting impact.
**Roles and Key Responsibilities**
CIX is looking for **IT Governance, Risk & Compliance specialist **who will be responsible to develop and drive effective IT security compliance programs involving compliance management, vendor management, audit management, IT risk management, policy management, technical awareness and training. The individual will report directly to the Chief Technology Officer.
**IT Governance, Risk & Compliance specialist***
Key responsibilities:
- IT Governance, Risk & Compliance (GRC) controls
- IT Disaster Recovery
- Business Continuity
- New Data Governance initiatives
- Jointly monitor, track and review with Cyber Security team and other IT teams (vendors) on all risk findings and assessments of IT initiatives
- Collaborate with Business Operations and Support services to ensure the policies are agreed, executed, and assessed in a timeline manner
- Ensure that all types of risks are identified, understood, communicated, and remediated
- To assist in evaluating overall security posture and aligning with defined risk objectives
- Conduct periodic awareness meetings / trainings to educate other teams wherever necessary to ensure risks are well understood to be vigilant all time
- Schedule and participate in periodic risk self-assessments and track remediation action plans.
- Front auditors, both internal and external, for audits directed at the IT Division or at business divisions where IT involvement is required.
- Detailed reporting on security risk issues and treatment plans to management
- Working on new policies and standards for new Data Governance covering data security classification, handling, storage, retention, and disposal
- Implement appropriate measurements to minimize or eliminate the impact that security related threats and vulnerabilities might have on the organization
- Generate reports/dashboards and report the level of potential, inherent and residual risks, and the effectiveness of controls to business and IT teams understand threats and vulnerabilities and make risk-based decisions
- Review and assist IT team deliverables to ensure all checks are taken care before production deployment
- Advise management on vendor overall performance, adherence to service levels, contractual compliance, risks, and new service offerings
- Collaborate within all areas of IT to ensure that suppliers are effectively handled, and contracts are fully leveraged
- Support business operations and head of technology in accomplishing Business Continuity Planning, review the outcome, flag any risks and track to completion
**Experience**
- Bachelor's degree in business, information systems or computer science or equivalent experience
- 5 years of experience in an information security role, preferably compliance/audit/control or related experiences
- Overall 12+ years of professional experience in IT, security, project management, stakeholder management
- Must have 2+ years of experience in Cloud governance, audit, and risk management and cloud providers like AWS, Azure
- Experience in ISO27001, TRM and/or SOC compliance efforts and certification experience
- Good knowledge and experience with standards and frameworks like NIST, ISO27001, CIS, CSA, MTCS, and Personal Data Protection Act (PDPA) is essential; familiarity with Government IM and PCI-DSS
- Industry certifications like ITIL, COBIT, PMP, DRM/BCM, CISSP/CISA/CISM are desirable
- Industry certifications on AWS Certified Security - speciality or equivalent will be an added advantage
- Ability to work independently, under pressure and respond to tight deadlines
- Analytical skills to resolve business continuity issues, prioritize workloads, resolve difficult problems, and provide technical leadership and direction
- Proactive and consistently show initiative, solution-oriented
CIX is an equal opportunity employer committed to diversity and inclusion.
-
Governance, Risk and Compliance Specialist
3 weeks ago
Singapore AvePoint Full timeGovernance, Risk and Compliance Specialist About AvePoint Securing the Future. AvePoint is a global leader in data management and data governance, and over 21,000 customers worldwide rely on our solutions to modernize the digital workplace across Microsoft, Google, Salesforce and other collaboration environments. AvePoint's global channel partner program...
-
IT Governance, Risk and Compliance
2 weeks ago
Singapore METAVERSE CLOUD SOLUTION PTE. LTD. Full timeJob Scope: We are seeking a skilled Governance, Risk and Security Compliance Specialist to ensure our organization's compliance with regulatory requirements, industry standards, and internal security policies. The candidate will be responsible for designing, implementing, and maintaining compliance frameworks while supporting security awareness across the...
-
IT Governance, Risk and Compliance
11 hours ago
Singapore METAVERSE CLOUD SOLUTION PTE. LTD. Full time $104,000 - $130,878 per yearJob Scope:We are seeking a skilled Governance, Risk and Security Compliance Specialist to ensure our organization's compliance with regulatory requirements, industry standards, and internal security policies. The candidate will be responsible for designing, implementing, and maintaining compliance frameworks while supporting security awareness across the...
-
IT Risk and Compliance Specialist
2 days ago
Singapore Unison Consulting Pte Ltd Full timeAs a Governance Risk and Compliance Specialist to join our team, this role is crucial in developing and maintaining a robust culture of technology and cybersecurity risk governance across our organization. - Develop the culture of Tech risk governance and management across the organisation, and ensure proper accountability in the management, tracking and...
-
Risk Compliance Specialist
2 days ago
Singapore SEDHA CONSULTING PTE. LTD. Full time**Governance, Risk and Compliance Specialist **Responsibilities**: - Develop the culture of cyber security governance and risk management across the organisation, and ensure proper accountability in the management, tracking and reporting of cyber risks. - Review and establish ICT policies and processes controls, and conduct compliance checks. - Support the...
-
IS Risk and Compliance Specialist
2 weeks ago
Singapore ABB Full timeIS Risk and Compliance Specialist At ABB, we are dedicated to addressing global challenges. Our core values: care, courage, curiosity, and collaboration - combined with a focus on diversity, inclusion, and equal opportunities - are key drivers in our aim to empower everyone to create sustainable solutions. Write the next chapter of your ABB story. Position...
-
Technology Risk Governance
7 days ago
Singapore JJ Consulting Services Full timeOur Client is an established and leading company in Singapore, who is seeking to recruit a Technology Risk Governance Specialist. **Technology Risk Governance Specialist** **Key Roles and Responsibilities** - Conduct risk assessment on digital projects, existing systems and third parties by identifying potential risks that are affecting the organization...
-
Technology Risk Governance
4 days ago
Singapore JJ Consulting Services Full timeOur Client is an established and leading company in Singapore, who is seeking to recruit a Technology Risk Governance Specialist. **Technology Risk Governance Specialist** **Key Roles and Responsibilities** - Conduct risk assessment on digital projects, existing systems and third parties by identifying potential risks that are affecting the organization...
-
Senior Manager
1 week ago
Singapore Office of Risk Management and Compliance Full time**Posting Start Date**:21/01/2025 About ORMCThe Compliance, Data & Technology Risk unit of NUS Office of Risk Management and Compliance (“ORMC”) is seeking a highly skilled and experienced Compliance professional to oversee compliance risk management initiatives. The role is responsible for ensuring that the university is aware of and adheres to all...
-
Security governance risk and compliance analyst
2 weeks ago
Singapore SSquad Global Full timeOn-Premises GRC (Governance, Risk and Compliance) Analyst - (Associate level and not SME level) Governance & Compliance "Develop, implement, and maintain security policies, procedures, and standards in line with industry best practices (ISO 27001, NIST, CIS, etc.). Ensure compliance with regulatory requirements (MAS TRMG, CCoP). Assist in internal...