IT Governance, Risk and Compliance
1 week ago
Job Scope:
We are seeking a skilled Governance, Risk and Security Compliance Specialist to ensure our organization's compliance with regulatory requirements, industry standards, and internal security policies. The candidate will be responsible for designing, implementing, and maintaining compliance frameworks while supporting security awareness across the company.
Key Responsibilities:
Regulatory & Framework Compliance
Lead and maintain compliance with DORA (Digital Operational Resilience Act) , ensuring IT and operational resilience measures meet regulatory requirements.
- Ensure compliance with VARA (Virtual Assets Regulatory Authority) frameworks for virtual asset and digital financial services.
- Drive compliance initiatives for GDPR , including data protection impact assessments, data handling practices, and privacy-by-design principles.
- Manage and maintain ISO 27001 Information Security Management System (ISMS), including documentation, risk assessments, and internal/external audit preparations.
2.Security Awareness
- Develop, deliver, and track security awareness programs to build a security-first culture.
- Conduct phishing simulations, training sessions, and employee awareness campaigns to ensure strong adoption of best practices.
3.Audit & Risk Management
- Coordinate with auditors and regulators for compliance reviews and assessments.
- Identify and mitigate compliance gaps, security risks, and process weaknesses.
- Maintain up-to-date knowledge of evolving regulations and ensure timely implementation of new requirements
4.Collaboration & Advisory
- Work closely with IT, Legal, Risk, and Business teams to embed compliance requirements into processes and systems.
- Provide guidance on secure and compliant business practices for new projects and technologies.
- Supporting external audits including ISMS audits
Requirements:
- Bachelor's degree in Information Security, Computer Science, or related field.
- Proven experience in regulatory compliance (DORA, GDPR, VARA) and ISO 27001 management.
- Strong understanding of information security frameworks and risk management practices.
- Experience in designing and conducting security awareness programs.
- Excellent communication, documentation, and stakeholder management skills.
- Professional certifications such as CISM, CISSP, ISO 27001 Lead Implementer/Auditor, or CISA are a plus
Job Type: Full-time
Benefits:
- Dental insurance
- Health insurance
-
Compliance Manager
2 days ago
Singapore Office of Risk Management and Compliance Full time**Posting Start Date**:21/01/2025 About ORMCAt NUS Office of Risk Management and Compliance (ORMC), we not only manage risks to build the University’s resilience but also help shape them into opportunities to empower the community. We will continually support and partner with our stakeholders within the University to make this possible. DATA PRIVACY -...
-
Risk and Compliance Associate
2 weeks ago
Singapore CAPITAL GOVERNANCE (S) PTE. LTD. Full timeCapital Governance (S) Pte Ltd is an advisory group which provides a comprehensive range of Governance, Risk Management and compliance (GRC) solutions aimed at assisting our clients in enhancing their overall GRC capabilities, one of the most critical areas of operations in an increasing complex business world.We are one of the most established GRC advisory...
-
Singapore Climate Impact X Full time**Trusted carbon credits. Real impact.**: Climate Impact X (CIX) is a Singapore-based global carbon exchange and marketplace that aims to scale the voluntary carbon market; through a joint venture by DBS, SGX, Standard Chartered and Temasek. CIX offers distinct platforms and products that cater to the needs of different carbon credit buyers and sellers. The...
-
Governance, Risk and Compliance Specialist
2 days ago
Singapore AvePoint Full timeGovernance, Risk and Compliance Specialist About AvePoint Securing the Future. AvePoint is a global leader in data management and data governance, and over 21,000 customers worldwide rely on our solutions to modernize the digital workplace across Microsoft, Google, Salesforce and other collaboration environments. AvePoint’s global channel partner program...
-
Governance, Risk and Compliance Specialist
2 days ago
Singapore Unison Consulting Pte Ltd Full timeTotal 10 Years of experience out of which at least 5 years relevant experience in ICT cybersecurity, data security, audit management, governance, risk and compliance management - Relevant certifications in IT governance, IT audit, cyber or data security (e.g. CISSP, CISM, CISA, etc.) preferred. - Ability to work with cross-functional, multi-disciplined team...
-
Manager, Governance, Risk
2 days ago
Singapore National Trades Union Congress (NTUC) Full timeGet AI-powered advice on this job and more exclusive features. Are you passionate about enhancing workers’ employment and employability? Can you connect workers with employers through job-matching, career guidance, and skills upgrading? Ready to collaborate on recruitment, training, and job redesign to support nationwide skills development?If your answers...
-
Governance Risk and Compliance Specialist
4 days ago
Singapore WSH Experts Pte Ltd Full timeJob Description Develop the culture of Tech risk governance and management across the organisation, and ensure proper accountability in the management, tracking and reporting of tech and cyber risks. Provide subject matter advice to internal stakeholders on cyber security requirements. Review and establish ICT policies and process controls and conduct...
-
Risk and Compliance
2 weeks ago
Singapore Ceffu Full timeRisk and Compliance (Advisory & Governance)Ceffu is a leading institutional-grade digital asset custody platform, offering secure, compliant, and scalable solutions for enterprises, hedge funds, and financial institutions. Our mission is to provide cutting-edge security and infrastructure to support the seamless integration of blockchain technology into...
-
IT Compliance, Governance
6 days ago
Singapore IT CONSULTANCY & SERVICES PTE LTD Full timeWill cover the following areas: - Information Security policies & procedures - Evaluates, tests, monitors, and maintains information systems (IS) and cyber security policies, procedures and systems. Ensures that Information Systems and cyber security plans, controls, processes, standards, policies, and procedures are aligned with Information Security and...
-
Assistant Director, Governance, Risk
2 days ago
Singapore National Trades Union Congress (NTUC) Full timeAre you passionate about enhancing workers’ employment and employability? Can you connect workers with employers through job-matching, career guidance, and skills upgrading? Ready to collaborate on recruitment, training, and job redesign to support nationwide skills development?If your answers are “yes”, we want you to join us and make a significant...