IT Risk
4 days ago
In Asia Pacific, BNP Paribas is one of the best-positioned international financial institutions with an uninterrupted presence since 1860. Currently with over 18,000 employees* and a presence in 13 markets, BNP Paribas provides corporates, institutional and private investors with product and service solutions tailored to their specific needs. It offers a wide range of financial services covering corporate & institutional banking, wealth management, asset management, insurance, as well as retail banking and consumer financing through strategic partnerships.
Worldwide, BNP Paribas has a presence in 68 markets with more than 193,000 employees. It has key positions in its three main activities: Domestic Markets and International Financial Services (whose retail-banking networks and financial services are covered by Retail Banking & Services) and Corporate & Institutional Banking, which serves two client franchises: corporate clients and institutional investors. Asia Pacific is a key strategic region for BNP Paribas and it continues to develop its franchise in the region.
- excluding partnerships
At BNP Paribas, we passionately embrace diversity and are committed to fostering an inclusive workplace where all employees are valued, respected and can bring their authentic selves to work. We prohibit Discrimination and Harassment of any kind and our policies promote equal employment opportunity for all employees and applicants, irrespective of, but not limited to their gender, gender identity, sex, sexual orientation, ethnicity, race, colour, national origin, age, religion, social status, mental or physical disabilities, veteran status etc. As a global Bank, we truly believe that inclusion and diversity of our teams is key to our success in serving our clients and the communities we operate in.
**POSITION PURPOSE**:
The mission of the IT Risk & Cyber Governance Officer is to ensure, for the IT activities within his/her entity, the realization of operational permanent control including the measure and the management of all operational risks linked to Information and Communication Technologies (ICT) including cyber security risks in accordance with the framework as defined by the IT Governance of BNP Paribas, as well as the deployment and coverage of the IT Risk Management Group (ITRMG) framework.
The coverage is APAC and the scope is all Business Units in charge of IT activities
**Responsibilities**:
As per BNP Paribas internal control charter, operating IT entities, and first and foremost their managers, are accountable for the risks they are exposed to given the businesses or services they run or deliver.
In this respect, and in full compliance with regulations applicable at group level and at entity level, and in line with group’s norms and requirements, the IT risk manager should for the IT entities under his/her oversight,:
- Assist in identifying and assessing operational IT risks the entities are exposed to.
- Ensure the risk monitoring and mitigation framework is within the defined risk appetite
- Ensure the implementation and continuous adaptation of the risk framework
- Ensure proper awareness of the risk framework for all IT teams
- Provide consistent risk monitoring & registration tools
- Provide risk management information and reporting to eligible bodies
**IT Risk**:
- The management and reporting (to eligible bodies) of ICT risks (with if-needed associated risk acceptances, risk profiles,) through both periodic RCSA realization and ad hoc risk assessment on his/her perimeter in accordance with the EBA ICT risk taxonomy.
- Maintaining the list of IT operational risks at APAC level to facilitate monitoring and reporting of risk
- The organization of Function/Métier/Region IT risk committee at least twice a year;
- Provide support for various APAC IT Risk committees (APAC IT Risk/OPC, Technology Risk Committee, etc.) including logistic support, write the minutes, follow identified actions
- Consolidating and preparing the APAC contributions for various Internal Control and Permanent control committees
**IT Incident**:
- The collection and analysis of IT historical incidents, the validation of Métier/Region IT incidents input into the dedicated Group system, based on CIB standardised criteria, the contribution to the definition and follow-up of associated action plans in addition to regular reporting ;
- Able to review the incident, understand the root cause, recommend controls to prevent similar incidents occurs in future:
**IT Control**:
- The deployment and reporting (at minimum the major ones) of IT controls (OPC and operational, standard and/or specific) identified to mitigate the risks ;
- Execute the controls and escalate the failures to the stakeholders adequately to address the remediation and track it efficiently;
- The preparation of the ICT Permanent control report based on provided templates, where required
**IT Recommendation**:
- The overall follow-up and reporting (figures,
-
Technology Risk Control
1 week ago
Singapore Power IT Services private limited Full time**Job Title : Technology Risk Control** **Jo Description**: - More than 10 years of experience in Banking domain with the last 5 years till current is in IT Tech Risk/IT Tech Control or IT Compliance capacity - Working Knowledge of IT security, Risk Management and Security Control and experience in designing IT test steps to determine IT control...
-
Technical Information Security Officer
1 week ago
East Singapore Power IT Services Full time**About Us**: We are providing Recruitment Services and IT Consulting Services for our Tier-1 Multinational Clients covering following major domains, but not limited to Banking, Financial Services and Insurance, Retail, Airline, Automotive, Energy and Consumer Sector. **About Client**: Our client is a Tier-1 System Integrator and global leader in providing...
-
Middleware Vulnerability Consultant
5 days ago
Singapore Neurones IT Asia Full timeDirect message the job poster from Neurones IT Asia Job Title: Middleware Vulnerability Consultant Position Purpose This role is for a technical support position and he/she will be responsible to oversee Middleware Vulnerability & compliance Management . They must plan and rectify middleware products security vulnerabilities and compliance deviation. He/she...
-
Account Manager
1 week ago
Singapore PALO IT Full timeOverview 2 days ago Be among the first 25 applicants Who We Are Build. Scale. Sustain. Palo IT is a global technology consultancy that crafts tech as a force for good. We design, develop and scale digital and sustainable products and services to unlock value across the triple bottom line: people, planet, profit. We do the right thing, and we do it right....
-
Principal Consultant
2 days ago
Singapore IT CONSULTANCY & SERVICES PTE LTD Full time**Principal Consultant (Governance) (ref: 120)** - Perform risk assessments (including relevant cyber risks) to ensure key controls are in place and work with stakeholders to determine appropriate risk responses - Function as an advisor to stakeholders on compliance with policies and procedures - Prepare tender documents and be involved in appointment of...
-
Senior Data Scientist
2 days ago
Singapore Palo IT Full time $120,000 - $200,000 per yearWho We AreBuild. Scale. Sustain.PALO IT is a global technology consultancy that crafts tech as a force for good. We design, develop and scale digital and sustainable products and services to unlock value across the triple bottom line: people, planet, profit. We do the right thing, and we do it right. We're proud to be a World Economic Forum New Champion, and...
-
Singapore IT Consultancy & Services Pte Ltd Full time $104,000 - $130,878 per yearRequirementDiploma/Degree in Computer Science, Information Systems, Engineering or a related Technology based education.At least 8 years of management/officer experience related to information security and solid grasp of ICT operations, security policies, business processes and the relationship between them.Knowledge and/or practical experience in most of...
-
Cyber Security Analyst
1 week ago
Singapore NEURONES IT ASIA PTE. LTD. Full timeWe are growing and to support our client on security topics, we are looking to onboard people who have worked on the cyber security side. Your role is to: **Role & Responsibilities**: - To enforce global vulnerability management strategy, analyze vulnerability advisories published & support the remediation process. - Monitor security alerts triage,...
-
Project Coordinator
3 weeks ago
Singapore EOS IT Company Full timeWHO WE ARE:EOS IT Solutions is a Global Technology and Logistics company, providing Collaboration and Business IT Support services to some of the world’s largest industry leaders, delivering forward-thinking solutions based on multi-domain architecture. Customer satisfaction and commitment to superior quality of service are our top business priorities,...
-
Deployment Operations Project Manager
2 weeks ago
Singapore EOS IT Solutions Full time**WHO WE ARE**: EOS IT Solutions is a Global Technology and Logistics company, providing Collaboration and Business IT Support services to some of the world’s largest industry leaders, delivering forward-thinking solutions based on multi-domain architecture. Customer satisfaction and commitment to superior quality of service are our top business...