IT GRC Manager

7 days ago


Singapore Starhub Full time

Join to apply for the IT GRC Manager role at StarHub

Join to apply for the IT GRC Manager role at StarHub

Job Description

Description
Job Description
In this position, the applicant will join the IT GRC team to perform IT governance, risk management and compliance functions. The role reports into the Head, IT VMO & GRC within the Information Services division (IS).
As an IT Governance, Risk & Compliance (GRC) Manager, you will play a pivotal role in ensuring the organization's adherence to regulatory and internal policies, managing risk, and maintaining a robust governance framework. Your responsibilities will involve assessing and mitigating risks, monitoring compliance with applicable laws and regulations, and assisting in the development of strategies to enhance governance practices. The role provides opportunity for direct interaction with senior management in business, IT, and vendors.
Responsibilities
Risk Assessment and Management

  • Identify potential risks and vulnerabilities within IS's operations, processes, IT applications and IT infrastructure.
  • Conduct risk assessments to evaluate the impact and likelihood of various risks.
  • Develop strategies and plans to mitigate identified risks and minimize their potential impact.

Regulatory Compliance
  • Stay updated on relevant laws, regulations, and industry standards that impact IS's operations.
  • Ensure that IS complies with all applicable regulations, ranging from data privacy and cybersecurity to industry-specific requirements.
  • Implement and monitor compliance programs, policies, and procedures.

Policy Development
  • Contribute to the creation and maintenance of IT policies and procedures that guide IS's behavior and practices.
  • Collaborate with legal and compliance teams to ensure policies align with regulatory requirements.

Monitoring and Auditing
  • Regularly monitor IS's activities and processes to detect deviations from established policies and regulations.
  • Conduct internal audits to assess the effectiveness of controls and identify areas for improvement.
  • Prepare audit reports and provide recommendations to enhance compliance and risk management efforts.
  • Collaborate with internal and external audit teams, providing documentation and evidence as needed to demonstrate compliance and adherence to governance standards.

Training and Education
  • Develop and deliver training programs to educate employees about compliance standards, risk management practices, and ethical behavior.
  • Foster a culture of compliance by promoting awareness and understanding of IT GRC principles across IS.

Reporting and Continuous Improvement
  • Prepare and distribute regular reports to management and stakeholders summarizing risk assessments, compliance status, and recommendations for improvement.
  • Identify opportunities for enhancing governance processes and recommend improvements to reduce risk exposure and enhance operational efficiency.

Qualifications
Requirements
  • 5 to 7 years' experience in IT governance, risk management or compliance in a regulated industry is essential.
  • Relevant certifications (e.g., CISA, CRISC, GRCP, GRCA) are an added advantage.
  • Experience in the telecommunication/technology industry and the associated regulations is a plus.
  • Strong knowledge of regulatory frameworks, industry standards, and best practices related to IT GRC (e.g., PDPA, Cybersecurity Act, NIST, PCI DSS, ISO 27001, COBIT, ISAE 3000/SOC 2).
  • Understanding cloud computing, information security, cybersecurity practices, and data protection principles is highly valuable.
  • Exceptional analytical skills and the ability to assess complex risks and provide practical solutions.
  • Prior experience in Archer GRC solution.
  • Excellent communication and interpersonal skills to work effectively with cross-functional teams and external stakeholders.
  • Detail-oriented with a commitment to maintaining the highest standards of integrity and ethics.
  • Strong organizational skills and the ability to prioritize and manage multiple tasks efficiently.
  • Adaptability and the capability to stay current with evolving regulations and industry trends.
  • Need to be results-oriented, meticulous, and resourceful.
  • Excellent team player, self-driven and able to work under pressure.
Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology
  • Industries Telecommunications

Referrals increase your chances of interviewing at StarHub by 2x

Sign in to set job alerts for "Information Technology Manager" roles. Manager (Digital Transformation & Information Technology ) Office of Information Service – Asst Manager/Dpy Manager/Manager Assistant Manager - IT Operations (Cluster Office) (Singapore) Manager, Business Solutions, Asia Digital & IT Deputy Group Director, Information Systems & Technology

We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
  • Grc

    2 weeks ago


    Singapore Good Job Creations Pte Ltd Full time

    1. Job Brief 1. Reporting - Head of Security **Responsibilities**: - Develop IT GRC management framework and processes that gel with Security Strategy. - Develop and maintain Security Policy. - Ensuring that requirements in IT Audit, Standard, Policy, Compliance and Risk controls are met. - Responsible for the maintaining the Risk Registries. - Define...

  • Grc

    7 days ago


    Singapore Good Job Creations Pte Ltd Full time

    1. Job Brief 1. Reporting - Head of Security **Responsibilities**: - Develop IT GRC management framework and processes that gel with Security Strategy. - Develop and maintain Security Policy. - Ensuring that requirements in IT Audit, Standard, Policy, Compliance and Risk controls are met. - Responsible for the maintaining the Risk Registries. - Define...

  • Grc Specialist

    2 weeks ago


    Singapore SAGL CONSULTING PTE. LTD. Full time

    **Job Summary**: We are seeking a Lead GRC Specialist to drive the delivery of Governance, Risk, and Compliance (GRC) solutions. The role involves balancing business and technical priorities, documenting requirements, designing solutions, and guiding implementation for platforms such as ServiceNow, Archer, and MetricStream. **Key Responsibilities**: -...

  • GRC Specialist

    1 week ago


    Singapore SAGL CONSULTING PTE. LTD. Full time

    Roles & ResponsibilitiesJob Summary:We are seeking a Lead GRC Specialist to drive the delivery of Governance, Risk, and Compliance (GRC) solutions. The role involves balancing business and technical priorities, documenting requirements, designing solutions, and guiding implementation for platforms such as ServiceNow, Archer, and MetricStream.Key...

  • ERP Grc Consultant

    2 weeks ago


    Central Singapore Emprego SG Full time

    **Location** - Singapore, Central Singapore**Job Type** - Permanent**Salary** - $4,500 - $8,000 Per Month**Date Posted** - 1 hour agoAdditional Details **Job ID** - 80076**Job Views** - 2Roles & Responsibilities **ERP GRC Consultant** **Working Location: Buona Vista** **Team**:You will be work under business transformation office to drive company towards...

  • SAP Grc Lead

    2 weeks ago


    Singapore Blue Ocean Systems Infotech Pte Ltd Full time

    Hi, Urgent opening for SAP GRC Lead Evaluate & integrate SAP Fiori apps into SAP GRC Perform outside research to develop expertise in SAP GRC security functionality and industry best practices within the SAP GRC, the IT risk management and compliance space Provide technical leadership in the assessment, design, and implementation of SAP GRC security and...

  • SAP Grc Lead

    2 weeks ago


    Singapore BLUE OCEAN SYSTEMS INFOTECH PTE. LTD. Full time

    Hi Urgent opening for SAP GRC Lead Evaluate & integrate SAP Fiori apps into SAP GRC Perform outside research to develop expertise in SAP GRC security functionality and industry best practices within the SAP GRC, the IT risk management and compliance space Provide technical leadership in the assessment, design, and implementation of SAP GRC security and...

  • Grc Expert- Singapore

    2 weeks ago


    Singapore Fireblocks Full time

    **About The Position**: The Governance, Risk, and Compliance expert is responsible for the assessing and documenting of Fireblocks’s compliance and risk posture. Fireblocks Security, Governance, Risk, and Compliance (GRC) expert is responsible among others for ensuring Fireblocks leadership has the information needed to make strategic risk-based decisions...

  • Grc Expert- Singapore

    2 weeks ago


    Singapore Fireblocks Full time

    The Governance, Risk, and Compliance expert is responsible for the assessing and documenting of Fireblocks’s compliance and risk posture. Fireblocks Security, Governance, Risk, and Compliance (GRC) expert is responsible among others for ensuring Fireblocks leadership has the information needed to make strategic risk-based decisions enabling the...

  • SAP Grc Consultant

    4 days ago


    Singapore BLUE OCEAN SYSTEMS INFOTECH PTE. LTD. Full time

    HI, Urgent opening for SAP GRC Consultant - Embedded GRC on RISE - Experience on how to configure roles for S4 and SAP cloud systems like Ariba, SuccessFactors, Datasphere etc at the position level - Experience on using IAG/IAG Bridge to manage id and role authorization for SAP cloud systems like Ariba, SuccessFactors, Datasphere. - Experience in...