Lead, Technology Risk, Enterprise Risk Management

1 day ago


Singapore AIA Full time

At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone.
- As pioneering innovators for over 100 years, we’re now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier, Longer, Better Lives._
- To get there, we need people with_
- tech/digital/analytics_
- expertise and passion to help develop positive, sustainable change through digitally enhanced experiences that will impact the lives of millions of people and create a healthier future for everyone._

If you believe in developing a better tomorrow, read on.

WE ARE LOOKING FOR.....

This position will be pivotal in supporting the development and implementation of an effective 2nd Line of Defence (2LOD) Technology Risk Team responsible for providing risk oversight and advice. The position will work with the local Technology, Information Security and Group Technology Risk Management functions to drive a strong risk culture across Technology.

This role will be responsible for supporting the Head of Technology Risk (2LOD) to:

- Technology Risk Advice and Guidance: Provide risk, control and compliance advice to Technology and Business stakeholders at all levels of the organisation. Proactively identify and effectively communicate emerging technology risks to stakeholders.
- Policy and Framework Implementation: Provide support in implementing the Group/MAS technology risk framework and policy requirements by providing guidance on the most effective approach to operationalising requirements.
- Risk Profiling: Facilitate the identification and assessment of risks and controls against Technology Objectives. Facilitate regular reviews and updates to established risk profiles based on trigger activities, external considerations and timelines as defined by policy requirements.
- Controls - Assist Technology to design, assess and measure a control environment that mitigates the risks, meets regulatory obligations, and complies with the requirements of internal policies.
- Incident management - Provide guidance and support in performing incident root cause analysis and identifying control breakdowns for technology related incidents. Work with Technology and Business stakeholders to determine remedial actions.
- Key indicator and trend analysis: Implement risk & control data analytics. Define and build KRI reporting (leverage existing metrics and risk dashboards were possible) to support effective risk reporting.
- Reporting: Provide regular reporting to Board and senior management on technology risk and security matters, including developments in the organization’s technology security risk profile.
- Project Risk: Provide security and control advice on major Technology and Business initiatives to ensure that Group/MAS Security standards and requirements are met, and the appropriate controls are implemented.
- Training and Awareness: Increase Technology Risk awareness and enhance risk culture across the organization via regular training sessions
- Regulatory and Audit Engagements: Assist with IT related regulatory inspections, queries and internal/external audits.

**Requirements**:

- 5+ years of technology risk management experience preferably in the insurance or financial services sector.
- Solid understanding of current/emerging technology and security regulations, frameworks, standards and controls.
- Excellent understanding of enterprise technologies (Cloud, DevOps etc.).
- Ideally hands on data analytics expertise to enable deep analysis and proactive identification of emerging risk and control issues.
- Knowledge of relevant programming languages / tool sets such as Python, PowerBI, PowerApps, Office 365 etc will be an advantage.
- Experience in first line technical roles such as developer, programmer, architect, software engineering, data analysts will be an advantage.
- Strong interpersonal, communication, influencing, management and presentation skills.
- Strong problem solving skills.
- Bachelor or Master’s degree holder in Information Technology, Risk Management or related disciplines.
- Relevant certifications essential e.g. Certified in the Governance of Enterprise IT (CGEIT), Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Control (CRISC).
- Build a career with us as we help our customers and the community live Healthier, Longer, Better Lives._



  • Singapore Lico Resources Full time $80,000 - $120,000 per year

    Lico Resources is partnering with a prestigious listed financial institutiuon, at the core of Singapore's capital markets ecosystem.We are seeking accomplished audit professionals ready to leverage their assurance expertise in a dynamic enterprise risk management role. This position offers an exceptional pathway for auditors to transition into second-line...


  • Singapore NE Digital Full time

    COMPANY DESCRIPTION NE Digital is the digital, data and technology organization that serve as a center of excellence to drive digital transformation for our group of NTUC Social Enterprises to meet the critical social needs of Singapore's community. Delivering innovative products and solutions, we empower our people to lead a better and meaningful life...


  • Singapore Selby Jennings Full time

    Employment Type: Full-time About the Firm We are a globally recognized investment firm expanding into Singapore to strengthen our presence in Asia. With a commitment to innovation, integrity, and long-term value creation, we are seeking a seasoned Enterprise Risk Director to lead our risk management function in Singapore and ensure alignment with global...


  • Singapore Government Technology Agency Full time

    **What the role is** **What you will be working on** **What we are looking for** - Degree in ICT, Computer Science, Engineering, Business, or related discipline - At least 10 years relevant working experience in large value ICT project implementations, ICT portfolio governance and/or governance risk and compliance in a team lead role, preferably with...


  • Singapore HSBC Full time

    -Job description **Some careers grow faster than others.** If you’re looking for a career that will give you plenty of opportunities to develop, join HSBC and your future will be rich with potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards...


  • Singapore Nanyang Technological University Full time

    Reporting to the Audit and Risk Committee Chair of NTU’s Board of Trustees (Board), with a matrix reporting to a member of NTU's Executive Committee, the individual shall assume the role of Director of Enterprise Risk Management (ERM) and be responsible for partnership, innovation, oversight and management of the University’s enterprise risks. This is a...


  • Singapore State Street Full time $120,000 - $240,000 per year

    Who we are:Enterprise Risk Management (ERM) organisation is part of State Street Corporation (SSC) Second Line of Defence (SLOD). ERM is responsible for thought leadership, oversight, monitoring, and remediation of enterprise wide risks.Who we are looking forAs part of the global ERM function, the successful candidate will be responsible for implementing and...


  • Singapore Antares Management Services Full time

    Overview We\'re Hiring: Internal Control Analyst (IT Risk)Full-Time CBD Our client is a global energy and commodities trading organization operating across Europe, the United States, and Asia. They manage physical and financial trading, risk management, and logistics, supported by robust technology platforms and a strong governance culture. Role overview:...


  • Singapore GXS BANK PTE. LTD. Full time

    Reporting directly to the Head of Operational Risk, this is a Second Line of Defence role under the Risk Management function. The OR Manager is responsible to drive and oversee the effective implementation of Operational Risk framework and agenda while aligning them to the Bank’s overall digital strategy. Job Responsibilities: - Assist with developing and...


  • Singapore ANEXT BANK PTE. LTD. Full time

    We’re on a mission to make financial services accessible and effortless for SMEs. As one of Singapore’s latest digital wholesale banks fully regulated by MAS, we’re committed to continuous innovation to bring about simpler, safer and more rewarding financial services. #bringingaboutwhatsnext As an Enterprise Risk, Stress Testing, and Regulatory...