APAC GRC Manager
1 day ago
The APAC Technology GRC Manager will be part of the APAC GRC team. You will be responsible for managing the governance and management of risk and controls across Asia Pacific region.
The role will be part of a broader team ambition which seeks to ensure APAC Technology comply with all their obligations. This position will require strong collaboration with members within the IT divisions and control functions across the organisation, along with the ability to influence change in a highly complex and matrixed environment.
Responsibilities:
- Review global policies and standards with APAC Technology stakeholders, as well as provide consolidated feedback and/or clarification to policy owners.
- Collate and prepare reports to Chubb senior management regarding adherence to Chubb's minimum technology and security controls, IT risks, IT audit findings, and remediation plans.
- Drive the execution of Technology Risk Management framework, ensuring effective implementation of risk policies and procedures across regional technology functions.
- Prepare and develop technology risk insights (such as IT audit thematic and trend analysis) to be presented at APAC Technology Risk Management Committee.
- Improve the existing technology processes, risks and control taxonomies based on internal policies and standards, regional regulatory requirements, industry standards and best practices.
- Engage and collaborate with technology stakeholders to proactively identify risks at a detailed and technical level and ensure that IT is effectively driving remediation activities and to continuously improve IT risk posture.
- Maintain and improve the issue register to ensure timely remediation of issues and meaningful reporting to management.
- Facilitate and manage stakeholder self-assessment initiatives to identify controls gaps.
- Facilitate the development and implementation of the Risk Appetite and Tolerance framework, working with senior leadership to define risk boundaries and embed them into decision-making processes.
- Establish and monitor Key Risk Indicators (KRIs) to enable ongoing risk monitoring, trend analysis, and early detection of emerging risks across Business, Geographical and Corporate units
- Gather and consolidate gaps identified and present to the management with a risk lens.
- Perform thematic review or risk assessment of areas requested by management.
- Accountable for managing regional internal and external reviews/audits from audit planning (such as request for information (RFI), opening meeting, etc.), fieldwork (such as RFI, issue discussion, etc.), to reporting and closing meeting.
- Responsible for monitoring and validating the closure of management actions, arising from internal and external reviews/audits, including regulator inspection reviews.
- Approve major system enhancements from a risk and compliance perspective.
Act as the ambassador of risk culture.
CISA, CISSP, CISM, or CRISC (currently possess the certification or working towards completing the certification).
- A Degree in fields such as Computer Science, Information Systems, and Engineering or equivalent work experience.
- Risk Management, Compliance or IT Audit experience.
- Minimum 8 years of Technology Risk Management experience in a large organisation, preferably in a multi-national company.
- Require strong relationship building with all layers of the organisation and the ability to influence and affect change with commercial acumen.
- Knowledge of regulatory compliance requirements across the region, as well as international standards such as PCI, SOX, ISO27001, OWASP and NIST.
- Knowledge of common IT technologies (OS, databases, network devices, applications).
- Experience in leading programs for proactively identifying risk exposure and potential non-compliant areas.
- Superior verbal and written communication and presentation skills, strong interpersonal skills and the ability to work independently.
- Collaborative with the ability to influence without authority and have impact.
- Demonstrates sense of urgency and a high degree of initiative and professional judgment.
- Strong excel and power point skills.
- Eager to learn new and varied systems.
- Service focused, analytical and detail oriented.
-
Grc Apac, India
1 week ago
Singapore PERNOD RICARD SINGAPORE PTE LTD Full timeEmbark on an exciting journey with our global Tech team, operating in agile mode within a dynamic product organization. Join a collaborative environment where innovation thrives, and your contributions will directly shape the trajectory of our cutting-edge products. As a key player in our agile setup, you'll have the opportunity to drive efficiency, foster...
-
Grc Expert- Singapore
1 week ago
Singapore Fireblocks Full timeThe Governance, Risk, and Compliance expert is responsible for the assessing and documenting of Fireblocks’s compliance and risk posture. Fireblocks Security, Governance, Risk, and Compliance (GRC) expert is responsible among others for ensuring Fireblocks leadership has the information needed to make strategic risk-based decisions enabling the...
-
Grc Expert- Singapore
1 week ago
Singapore Fireblocks Full time**About The Position**: The Governance, Risk, and Compliance expert is responsible for the assessing and documenting of Fireblocks’s compliance and risk posture. Fireblocks Security, Governance, Risk, and Compliance (GRC) expert is responsible among others for ensuring Fireblocks leadership has the information needed to make strategic risk-based decisions...
-
Grc
2 days ago
Singapore Good Job Creations Pte Ltd Full time1. Job Brief 1. Reporting - Head of Security **Responsibilities**: - Develop IT GRC management framework and processes that gel with Security Strategy. - Develop and maintain Security Policy. - Ensuring that requirements in IT Audit, Standard, Policy, Compliance and Risk controls are met. - Responsible for the maintaining the Risk Registries. - Define...
-
Grc
6 days ago
Singapore Good Job Creations Pte Ltd Full time1. Job Brief 1. Reporting - Head of Security **Responsibilities**: - Develop IT GRC management framework and processes that gel with Security Strategy. - Develop and maintain Security Policy. - Ensuring that requirements in IT Audit, Standard, Policy, Compliance and Risk controls are met. - Responsible for the maintaining the Risk Registries. - Define...
-
IT GRC Manager
2 weeks ago
Singapore Starhub Full timeIT Governance, Risk & Compliance (GRC) Manager In this position, you will join the IT GRC team to perform IT governance, risk management and compliance functions, reporting to the Head, IT VMO & GRC within the Information Services division (IS). As a GRC Manager, you will play a pivotal role in ensuring the organization adheres to regulatory and internal...
-
Lead, Security Grc
4 days ago
Singapore COINBASE SINGAPORE PTE. LTD. Full time**GRC Security at Coinbase Coinbase stores more digital currency than any company in the world, making us a prime target on the internet. Security is core to our mission and has been a key competitive differentiator for us as we scale worldwide. Crucial to scaling is building and running a security compliance program that reflects how we protect the data and...
-
IT Security Practice Manager
1 week ago
Singapore NCS Full time**IT Security Practice Manager (GRC)**: **Date**:13 Nov 2024 **Location**: Singapore, Singapore **Company**:Singtel Group NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to...
-
Grc Specialist
1 week ago
Singapore SAGL CONSULTING PTE. LTD. Full time**Job Summary**: We are seeking a Lead GRC Specialist to drive the delivery of Governance, Risk, and Compliance (GRC) solutions. The role involves balancing business and technical priorities, documenting requirements, designing solutions, and guiding implementation for platforms such as ServiceNow, Archer, and MetricStream. **Key Responsibilities**: -...
-
ERP Grc Consultant
1 week ago
Central Singapore Emprego SG Full time**Location** - Singapore, Central Singapore**Job Type** - Permanent**Salary** - $4,500 - $8,000 Per Month**Date Posted** - 1 hour agoAdditional Details **Job ID** - 80076**Job Views** - 2Roles & Responsibilities **ERP GRC Consultant** **Working Location: Buona Vista** **Team**:You will be work under business transformation office to drive company towards...