145 Technology Risk jobs in Malaysia

Vice President, Technology Risk

Kuala Lumpur, Kuala Lumpur AFFIN Group

Posted today

Job Viewed

Tap Again To Close

Job Description

AFFIN Group WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

Join or sign in to find your next job

Join to apply for the Vice President, Technology Risk role at AFFIN Group

AFFIN Group WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

Join to apply for the Vice President, Technology Risk role at AFFIN Group

Get AI-powered advice on this job and more exclusive features.

Create your future with Affin! You too can make a difference.

Join us at AFFIN, where the open minds meet and be inspired by a shared commitment to great work. Here, you don’t just stay at the forefront of the industry – you can make a difference too.

Job Purpose

Establish and maintain governance and oversight on the effectiveness of technology risk management for Affin Group. This function will be responsible for maintaining a strong technology risk management culture, formulating/reviewing the technology risk appetite, tolerances and threshold that aligns to the banking group’s risk appetite, and for establishing/maintaining a program to identify, assess, measure, monitor, control and report on significant technology risks.

Responsibilities

  • Prepare and execute third-party cyber risk assessments, cloud risk assessment, project risk assessment and due diligence activities.
  • Maintain and update the third-party risk inventory, project risk inventory and ensure accurate documentation.
  • Review and assess vendor security documentation, including SOC reports, ISO certifications, penetration test reports, and security questionnaires.
  • Monitor ongoing vendor risk through periodic reviews, assessments, and threat intelligence.
  • Track and report risk remediation plans for third-party gaps and exceptions.
  • Identify, prepare and review technology and cyber risk metrics pertaining to third-party and project risk.
  • Perform risk analytics on data from internal and external sources to form leading and lagging risk indicators that identify emerging third-party risks before they surface.
  • Support the development and maintenance of third-party risk management (TPRM), Project Risk frameworks, policies, and procedures.
  • Assist in the design and delivery of training and awareness programs related to third-party cyber, project risk and technology risk.
  • Stay current with emerging risks, threats, and regulatory changes impacting third-party cyber risk and project risk.
  • Provide advisory, guidance, and recommendation on aspects related to technology risks, particularly in information security and controls, and ensure compliance with the internal IT policies & procedures, as well as regulatory guidelines.
  • Conduct an independent assessment review to identify, assess, and evaluate project management issues and best practices, as well as strategies to reduce, mitigate, or transfer IT and cyber risks for identified project risks.
  • Support senior management, including the CISO and GCRO, in overseeing the effective implementation of technology risk management at the entity level.+

Job Requirements

  • Degree in IT, IS or Computing and/or other relevant domains.
  • Minimum of 5 years in IT risk management, cyber risk management, project risk management, third-party risk management.
  • Professional certifications such as PMP, PMI-ACP, CEH, CRISC, and CISSP are added advantages.
  • Possess good knowledge and experience of information security and information technology risk management, solid experience in undertaking technical security assessments of technology-related solutions.
  • Familiar with Bank Negara Malaysia regulatory requirements related to Technology Risk.
  • Strong analytical, influencing and problem resolution skills. Ability to work independently with minimum supervision.
  • Ability to work and collaborate with people across seniority and cultures.

Seniority level
  • Seniority level Executive
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology
  • Industries Banking

Referrals increase your chances of interviewing at AFFIN Group by 2x

Get notified about new Vice President of Technology jobs in WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia .

Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Vice President, Group Internal Audit (IT Auditor)

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 days ago

Assistant Vice President, GT-TBS, GCDB Application Delivery Non-Digital, eComm/CAF (Application Support Lead)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Specialist | Technology Risk

Petaling Jaya, Selangor Grab

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Company Description

About Grab and Our Workplace

Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility.

Job Description

Get to know the team:

At Grabber Technology Solutions (GTS), we revolutionise the technology experience for every Grabber. Our mission is to empower our team with seamless and innovative solutions that enhance their daily work. We are a diverse group of forward-thinkers committed to creating personalised IT experiences. If you're passionate about customer-centric innovation and eager to make a significant impact on technology at Grab, come join us and help shape the future of technology.

Get to Know the Role

The GTS Governance Specialist reports to the Governance Leader. The Governance team is the trusted IT Risk advisor and partner to ensure the appropriate IT Risk and controls are in place.

This role is an onsite role, and the office is in Malaysia.

The Critical Tasks You Will Perform

  • Governance Program Support: You will support the Governance Leader in rolling out IT controls aligned with Grab's IT Risk Management framework and processes.
  • Risk Framework Enhancement: You will improve and maintain the IT Risk Management framework, ensuring alignment with the Enterprise Risk Management (ERM) processes.
  • Risk Metrics and Reporting: You will develop, review, and report key IT risk metrics (e.g., KRIs, KPIs) and provide independent reporting on the IT risk posture.
  • Risk Assessments: You will conduct IT risk assessments, evaluate countermeasures, and recommend effective controls to mitigate identified IT risks.
  • Risk Monitoring: You will monitor IT risks, manage the risk register, and develop strong relationships with risk owners.
  • Audit Coordination: You will assist in managing and coordinating IT audits (e.g., IT SOX) and perform ad-hoc reviews on IT processes.

Qualifications

What Essential Skills You Will Need

  • IT Governance and Risk Management: At least 4 years of experience in IT Governance, Risk Management, and Controls, preferably using COBIT in regulated environments.
  • Risk Assessment and Management: Proficiency in conducting IT risk assessments, developing countermeasures, and managing risk registers.
  • Technical Expertise: Knowledge of IT controls, risk metrics (KRIs, KPIs), and frameworks (e.g., COBIT).
  • Certified Professional: CISM, CISA, or CRISC certifications are preferred but not mandatory (COBIT 2019 Foundation Training is an advantage).

Additional Information

Life at Grab

We care about your well-being at Grab, here are some of the global benefits we offer:

  • We have your back with Term Life Insurance and comprehensive Medical Insurance.
  • With GrabFlex, create a benefits package that suits your needs and aspirations.
  • Celebrate moments that matter in life with loved ones through Parental and Birthday leave , and give back to your communities through Love-all-Serve-all (LASA) volunteering leave
  • We have a confidential Grabber Assistance Programme to guide and uplift you and your loved ones through life's challenges.
  • Balancing personal commitments and life's demands are made easier with our FlexWork arrangements such as differentiated hours

What We Stand For At Grab

We are committed to building an inclusive and equitable workplace that provides equal opportunity for Grabbers to grow and perform at their best. We consider all candidates fairly and equally regardless of nationality, ethnicity, race, religion, age, gender, family commitments, physical and mental impairments or disabilities, and other attributes that make them unique.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Specialist | Technology Risk

Petaling Jaya, Selangor Grab

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Senior Specialist | Technology Risk role at Grab

1 week ago Be among the first 25 applicants

Join to apply for the Senior Specialist | Technology Risk role at Grab

Get AI-powered advice on this job and more exclusive features.

About Grab and Our Workplace

Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility.

Company Description

About Grab and Our Workplace

Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility.

Job Description

Get to know the team:

At Grabber Technology Solutions (GTS), we revolutionise the technology experience for every Grabber. Our mission is to empower our team with seamless and innovative solutions that enhance their daily work. We are a diverse group of forward-thinkers committed to creating personalised IT experiences. If you're passionate about customer-centric innovation and eager to make a significant impact on technology at Grab, come join us and help shape the future of technology.

Get to Know the Role

The GTS Governance Specialist reports to the Governance Leader. The Governance team is the trusted IT Risk advisor and partner to ensure the appropriate IT Risk and controls are in place.

This role is an onsite role, and the office is in Malaysia.

The Critical Tasks You Will Perform

  • Governance Program Support: You will support the Governance Leader in rolling out IT controls aligned with Grab's IT Risk Management framework and processes.
  • Risk Framework Enhancement: You will improve and maintain the IT Risk Management framework, ensuring alignment with the Enterprise Risk Management (ERM) processes.
  • Risk Metrics and Reporting: You will develop, review, and report key IT risk metrics (e.g., KRIs, KPIs) and provide independent reporting on the IT risk posture.
  • Risk Assessments: You will conduct IT risk assessments, evaluate countermeasures, and recommend effective controls to mitigate identified IT risks.
  • Risk Monitoring: You will monitor IT risks, manage the risk register, and develop strong relationships with risk owners.
  • Audit Coordination: You will assist in managing and coordinating IT audits (e.g., IT SOX) and perform ad-hoc reviews on IT processes.

Qualifications

What Essential Skills You Will Need

  • IT Governance and Risk Management: At least 4 years of experience in IT Governance, Risk Management, and Controls, preferably using COBIT in regulated environments.
  • Risk Assessment and Management: Proficiency in conducting IT risk assessments, developing countermeasures, and managing risk registers.
  • Technical Expertise: Knowledge of IT controls, risk metrics (KRIs, KPIs), and frameworks (e.g., COBIT).
  • Certified Professional: CISM, CISA, or CRISC certifications are preferred but not mandatory (COBIT 2019 Foundation Training is an advantage).

Additional Information

Life at Grab

We care about your well-being at Grab, here are some of the global benefits we offer:

  • We have your back with Term Life Insurance and comprehensive Medical Insurance.
  • With GrabFlex, create a benefits package that suits your needs and aspirations.
  • Celebrate moments that matter in life with loved ones through Parental and Birthday leave, and give back to your communities through Love-all-Serve-all (LASA) volunteering leave
  • We have a confidential Grabber Assistance Programme to guide and uplift you and your loved ones through life's challenges.
  • Balancing personal commitments and life's demands are made easier with our FlexWork arrangements such as differentiated hours

What We Stand For At Grab

We are committed to building an inclusive and equitable workplace that provides equal opportunity for Grabbers to grow and perform at their best. We consider all candidates fairly and equally regardless of nationality, ethnicity, race, religion, age, gender, family commitments, physical and mental impairments or disabilities, and other attributes that make them unique.

Seniority level
  • Seniority level Associate
Employment type
  • Employment type Full-time
Job function
  • Job function Other
  • Industries Technology, Information and Internet

Referrals increase your chances of interviewing at Grab by 2x

Get notified about new Senior jobs in Petaling Jaya, Selangor, Malaysia .

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago

Senior Manager, Transformation Management Office

Federal Territory of Kuala Lumpur, Malaysia 6 days ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Senior Manager | Mobility, Organisation Design & Job Evaluation

Kota Damansara, Selangor, Malaysia 4 weeks ago

Senior Executive / Executive, Company Secretarial

Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Assistant Vice President, Strategic Communications and Public Affairs

Federal Territory of Kuala Lumpur, Malaysia 13 hours ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR6,210.00-MYR14,370.00 20 hours ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 6 days ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Senior Executive (Property Sales & Marketing)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Senior Executive, Recruitment & HR Services

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 months ago

Senior Talent Acquisition & Employer Branding Executive

Petaling Jaya, Selangor, Malaysia 6 days ago

Senior Manager, Corporate Development (Investor Relations)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 day ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Senior Executive, Procurement (RID-00534)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Senior Executive, Record to Report (Kuala Lumpur) Senior Executive - Accounts Payable (Non-Trade)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR5,000.00-MYR5,500.00 1 week ago

Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 7 hours ago

Senior Executive, Customer Operations and Service Delivery (RID-00535)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Federal Territory of Kuala Lumpur, Malaysia 6 days ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Technology Risk Specialist SG

Kuala Lumpur, Kuala Lumpur CIMB

Posted 17 days ago

Job Viewed

Tap Again To Close

Job Description

CIMB Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

Join or sign in to find your next job

Join to apply for the Technology Risk Specialist SG role at CIMB

CIMB Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

3 days ago Be among the first 25 applicants

Join to apply for the Technology Risk Specialist SG role at CIMB

  • Foster agility and growth mindset to implement robust TRM strategies, framework and policies to manage technology and cybers risks of CIMB Singapore to be better prepared to mitigate and manage these risks in the face of evolving system/information security and cyber threat.
  • Work closely with CIMB Singapore and Group IT stakeholders and other NFRM specialists in supporting business and operational resilience strategies, roadmap and business continuity plan to strengthen the Bank’s technology risk resilience, address potential vulnerabilities and ensure continuity of business operation with better responsiveness and recovery from technology-related incidents.
  • Facilitate the continuous improvement initiatives to ensure technology risks and cyber threat are identified with corresponding operational risks controls and framework, and mitigating actions.
  • Work in collaboration with IT to implement the Cyber Defence Program to focus on protection against cyber threats by leveraging threat intelligence, building up the Bank’s cyber response readiness and modernizing the Bank’s cyber surveillance technology.
  • Work in collaboration with other NFRM specialists on the validation of various control environment testing results and deep-dive review and control of the key risk indicators related to technology risk. Perform sample checks on the effectiveness of BUs/BEs’ technology risk controls for assessment of risk rating.
  • Facilitate the analysis, reporting and escalation to risk committees / working groups / forums / steering committees related to change process management or projects specifically addressing matters related to Technology Risk and Cyber Security.
  • Report and escalate to risk committees on Technology risk exposure and mitigation activities or any other high or critical issues requiring attention and remediation.
  • Provide secretariat function and support for SG Technology Risk Committee and / or other SG risk committees.

Job Description

Key Responsibilities

Business and System Resilience

  • Foster agility and growth mindset to implement robust TRM strategies, framework and policies to manage technology and cybers risks of CIMB Singapore to be better prepared to mitigate and manage these risks in the face of evolving system/information security and cyber threat.
  • Work closely with CIMB Singapore and Group IT stakeholders and other NFRM specialists in supporting business and operational resilience strategies, roadmap and business continuity plan to strengthen the Bank’s technology risk resilience, address potential vulnerabilities and ensure continuity of business operation with better responsiveness and recovery from technology-related incidents.
  • Facilitate the continuous improvement initiatives to ensure technology risks and cyber threat are identified with corresponding operational risks controls and framework, and mitigating actions.
  • Work in collaboration with IT to implement the Cyber Defence Program to focus on protection against cyber threats by leveraging threat intelligence, building up the Bank’s cyber response readiness and modernizing the Bank’s cyber surveillance technology.
  • Work in collaboration with other NFRM specialists on the validation of various control environment testing results and deep-dive review and control of the key risk indicators related to technology risk. Perform sample checks on the effectiveness of BUs/BEs’ technology risk controls for assessment of risk rating.
  • Facilitate the analysis, reporting and escalation to risk committees / working groups / forums / steering committees related to change process management or projects specifically addressing matters related to Technology Risk and Cyber Security.
  • Report and escalate to risk committees on Technology risk exposure and mitigation activities or any other high or critical issues requiring attention and remediation.
  • Provide secretariat function and support for SG Technology Risk Committee and / or other SG risk committees.

People Management – Customer and Employee Engagement & Development

Customer

  • Foster collaboration with CIMB Singapore BUs/BEs, and other relevant cross-functional stakeholders within Risk.
  • Build and maintain strong relationships and rapport with various business units, business support function units and other areas of risk management within CIMB Singapore.
  • Promote and foster a collaborative and high-performance risk culture for sustainable growth.

Employee Engagement & Development

  • Provide guidance and / or support to team members, ensuring alignment with the Bank’s strategic objectives and Group Risk priorities.
  • Embrace CIMB EPICC culture and values.

Regulatory Compliance

  • Provide support to Singapore Risk in addressing MAS requirements and audit request, ensuring the Branch’s risk framework and practices are in compliance with the applicable banking laws, regulations, internal policies and procedures.
  • Stay abreast of industry trends, regulatory developments and best practices in technology risk management to continuously enhance the bank’s risk management capabilities.

Job Requirements

  • Undergraduate degree in Computer Science, Information Technology or Engineering
  • Preference for Information Security and Risk certification. Such as CISA, CRISC, CISSP and CISM.
  • At least 5-10 years of working experience with sound knowledge and experience of cybersecurity and information security risk management, preferably within the Financial Services sector.
  • Strong knowledge of operational risk frameworks and understanding of industry best practices including the specialized subject matter. Knowledge of relevant regulatory technology risk management guidelines / requirements (e.g. MAS FSM-N05 and FSM-N06 and relevant Technology Risk Management guidelines) and industry standards/ frameworks such as NIST, ISO 27001/2.
  • Professional certification related to technology risk and security is an advantage (e.g. CISA, CRISC, CISSP etc)
  • Possess critical thinking capabilities including strong problem-solving and judgment skills.
  • Agile and growth mindset with the ability to embrace change and drive innovation in risk management practices.
  • Self-motivated and adaptable with strong initiative and desire to learn and develop.
  • Excellent communication and interpersonal skills for effective collaboration across departments.
  • Proficient in Presentation slides and Excel.
Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology

Referrals increase your chances of interviewing at CIMB by 2x

Sign in to set job alerts for “Technology Specialist” roles.

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago

Federal Territory of Kuala Lumpur, Malaysia 4 days ago

Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 4 months ago

Batu Caves, Selangor, Malaysia 3 weeks ago

MANAGER/ASSISTANT MANAGER - BUSINESS PROCESS AUTOMATION, INFORMATION TECHNOLOGY

Petaling Jaya, Selangor, Malaysia 4 days ago

Puchong, Selangor, Malaysia MYR3,000.00-MYR4,500.00 1 month ago

Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Graduate Hiring - Next Generation Talent 2025

Petaling Jaya, Selangor, Malaysia 4 months ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR3,200.00-MYR5,000.00 1 week ago

Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Federal Territory of Kuala Lumpur, Malaysia 6 days ago

Petaling Jaya, Selangor, Malaysia 2 months ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago

Industry Technology Specialist (Beverage, SEA)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago

Associate Consultant - Infrastructure Engineer

Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Associate, Over-the-Top and Cloud Platform

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 days ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Specialist | Technology Risk

Petaling Jaya, Selangor Grab

Posted today

Job Viewed

Tap Again To Close

Job Description

Join to apply for the

Senior Specialist | Technology Risk

role at

Grab 1 week ago Be among the first 25 applicants Join to apply for the

Senior Specialist | Technology Risk

role at

Grab Get AI-powered advice on this job and more exclusive features. About Grab and Our Workplace

Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility. Company Description

About Grab and Our Workplace

Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility.

Job Description

Get to know the team:

At Grabber Technology Solutions (GTS), we revolutionise the technology experience for every Grabber. Our mission is to empower our team with seamless and innovative solutions that enhance their daily work. We are a diverse group of forward-thinkers committed to creating personalised IT experiences. If you're passionate about customer-centric innovation and eager to make a significant impact on technology at Grab, come join us and help shape the future of technology.

Get to Know the Role

The GTS Governance Specialist reports to the Governance Leader. The Governance team is the trusted IT Risk advisor and partner to ensure the appropriate IT Risk and controls are in place.

This role is an onsite role, and the office is in Malaysia.

The Critical Tasks You Will Perform

Governance Program Support: You will support the Governance Leader in rolling out IT controls aligned with Grab's IT Risk Management framework and processes. Risk Framework Enhancement: You will improve and maintain the IT Risk Management framework, ensuring alignment with the Enterprise Risk Management (ERM) processes. Risk Metrics and Reporting: You will develop, review, and report key IT risk metrics (e.g., KRIs, KPIs) and provide independent reporting on the IT risk posture. Risk Assessments: You will conduct IT risk assessments, evaluate countermeasures, and recommend effective controls to mitigate identified IT risks. Risk Monitoring: You will monitor IT risks, manage the risk register, and develop strong relationships with risk owners. Audit Coordination: You will assist in managing and coordinating IT audits (e.g., IT SOX) and perform ad-hoc reviews on IT processes.

Qualifications

What Essential Skills You Will Need

IT Governance and Risk Management: At least 4 years of experience in IT Governance, Risk Management, and Controls, preferably using COBIT in regulated environments. Risk Assessment and Management: Proficiency in conducting IT risk assessments, developing countermeasures, and managing risk registers. Technical Expertise: Knowledge of IT controls, risk metrics (KRIs, KPIs), and frameworks (e.g., COBIT). Certified Professional: CISM, CISA, or CRISC certifications are preferred but not mandatory (COBIT 2019 Foundation Training is an advantage).

Additional Information

Life at Grab

We care about your well-being at Grab, here are some of the global benefits we offer:

We have your back with Term Life Insurance and comprehensive Medical Insurance. With GrabFlex, create a benefits package that suits your needs and aspirations. Celebrate moments that matter in life with loved ones through Parental and Birthday leave, and give back to your communities through Love-all-Serve-all (LASA) volunteering leave We have a confidential Grabber Assistance Programme to guide and uplift you and your loved ones through life's challenges. Balancing personal commitments and life's demands are made easier with our FlexWork arrangements such as differentiated hours

What We Stand For At Grab

We are committed to building an inclusive and equitable workplace that provides equal opportunity for Grabbers to grow and perform at their best. We consider all candidates fairly and equally regardless of nationality, ethnicity, race, religion, age, gender, family commitments, physical and mental impairments or disabilities, and other attributes that make them unique. Seniority level

Seniority level Associate Employment type

Employment type Full-time Job function

Job function Other Industries Technology, Information and Internet Referrals increase your chances of interviewing at Grab by 2x Get notified about new Senior jobs in

Petaling Jaya, Selangor, Malaysia . Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago Senior Manager, Transformation Management Office

Federal Territory of Kuala Lumpur, Malaysia 6 days ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Senior Manager | Mobility, Organisation Design & Job Evaluation

Kota Damansara, Selangor, Malaysia 4 weeks ago Senior Executive / Executive, Company Secretarial

Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Assistant Vice President, Strategic Communications and Public Affairs

Federal Territory of Kuala Lumpur, Malaysia 13 hours ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR6,210.00-MYR14,370.00 20 hours ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 6 days ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Senior Executive (Property Sales & Marketing)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Senior Executive, Recruitment & HR Services

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 months ago Senior Talent Acquisition & Employer Branding Executive

Petaling Jaya, Selangor, Malaysia 6 days ago Senior Manager, Corporate Development (Investor Relations)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 day ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Senior Executive, Procurement (RID-00534)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Senior Executive, Record to Report (Kuala Lumpur)

Senior Executive - Accounts Payable (Non-Trade)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR5,000.00-MYR5,500.00 1 week ago Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 7 hours ago Senior Executive, Customer Operations and Service Delivery (RID-00535)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Federal Territory of Kuala Lumpur, Malaysia 6 days ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Technology Risk Specialist SG

Kuala Lumpur, Kuala Lumpur CIMB

Posted today

Job Viewed

Tap Again To Close

Job Description

CIMB Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia Join or sign in to find your next job

Join to apply for the

Technology Risk Specialist SG

role at

CIMB CIMB Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago Be among the first 25 applicants Join to apply for the

Technology Risk Specialist SG

role at

CIMB Foster agility and growth mindset to implement robust TRM strategies, framework and policies to manage technology and cybers risks of CIMB Singapore to be better prepared to mitigate and manage these risks in the face of evolving system/information security and cyber threat. Work closely with CIMB Singapore and Group IT stakeholders and other NFRM specialists in supporting business and operational resilience strategies, roadmap and business continuity plan to strengthen the Bank’s technology risk resilience, address potential vulnerabilities and ensure continuity of business operation with better responsiveness and recovery from technology-related incidents. Facilitate the continuous improvement initiatives to ensure technology risks and cyber threat are identified with corresponding operational risks controls and framework, and mitigating actions. Work in collaboration with IT to implement the Cyber Defence Program to focus on protection against cyber threats by leveraging threat intelligence, building up the Bank’s cyber response readiness and modernizing the Bank’s cyber surveillance technology. Work in collaboration with other NFRM specialists on the validation of various control environment testing results and deep-dive review and control of the key risk indicators related to technology risk. Perform sample checks on the effectiveness of BUs/BEs’ technology risk controls for assessment of risk rating. Facilitate the analysis, reporting and escalation to risk committees / working groups / forums / steering committees related to change process management or projects specifically addressing matters related to Technology Risk and Cyber Security. Report and escalate to risk committees on Technology risk exposure and mitigation activities or any other high or critical issues requiring attention and remediation. Provide secretariat function and support for SG Technology Risk Committee and / or other SG risk committees.

Job Description

Key Responsibilities

Business and System Resilience

Foster agility and growth mindset to implement robust TRM strategies, framework and policies to manage technology and cybers risks of CIMB Singapore to be better prepared to mitigate and manage these risks in the face of evolving system/information security and cyber threat. Work closely with CIMB Singapore and Group IT stakeholders and other NFRM specialists in supporting business and operational resilience strategies, roadmap and business continuity plan to strengthen the Bank’s technology risk resilience, address potential vulnerabilities and ensure continuity of business operation with better responsiveness and recovery from technology-related incidents. Facilitate the continuous improvement initiatives to ensure technology risks and cyber threat are identified with corresponding operational risks controls and framework, and mitigating actions. Work in collaboration with IT to implement the Cyber Defence Program to focus on protection against cyber threats by leveraging threat intelligence, building up the Bank’s cyber response readiness and modernizing the Bank’s cyber surveillance technology. Work in collaboration with other NFRM specialists on the validation of various control environment testing results and deep-dive review and control of the key risk indicators related to technology risk. Perform sample checks on the effectiveness of BUs/BEs’ technology risk controls for assessment of risk rating. Facilitate the analysis, reporting and escalation to risk committees / working groups / forums / steering committees related to change process management or projects specifically addressing matters related to Technology Risk and Cyber Security. Report and escalate to risk committees on Technology risk exposure and mitigation activities or any other high or critical issues requiring attention and remediation. Provide secretariat function and support for SG Technology Risk Committee and / or other SG risk committees.

People Management – Customer and Employee Engagement & Development

Customer

Foster collaboration with CIMB Singapore BUs/BEs, and other relevant cross-functional stakeholders within Risk. Build and maintain strong relationships and rapport with various business units, business support function units and other areas of risk management within CIMB Singapore. Promote and foster a collaborative and high-performance risk culture for sustainable growth.

Employee Engagement & Development

Provide guidance and / or support to team members, ensuring alignment with the Bank’s strategic objectives and Group Risk priorities. Embrace CIMB EPICC culture and values.

Regulatory Compliance

Provide support to Singapore Risk in addressing MAS requirements and audit request, ensuring the Branch’s risk framework and practices are in compliance with the applicable banking laws, regulations, internal policies and procedures. Stay abreast of industry trends, regulatory developments and best practices in technology risk management to continuously enhance the bank’s risk management capabilities.

Job Requirements

Undergraduate degree in Computer Science, Information Technology or Engineering Preference for Information Security and Risk certification. Such as CISA, CRISC, CISSP and CISM. At least 5-10 years of working experience with sound knowledge and experience of cybersecurity and information security risk management, preferably within the Financial Services sector. Strong knowledge of operational risk frameworks and understanding of industry best practices including the specialized subject matter. Knowledge of relevant regulatory technology risk management guidelines / requirements (e.g. MAS FSM-N05 and FSM-N06 and relevant Technology Risk Management guidelines) and industry standards/ frameworks such as NIST, ISO 27001/2. Professional certification related to technology risk and security is an advantage (e.g. CISA, CRISC, CISSP etc) Possess critical thinking capabilities including strong problem-solving and judgment skills. Agile and growth mindset with the ability to embrace change and drive innovation in risk management practices. Self-motivated and adaptable with strong initiative and desire to learn and develop. Excellent communication and interpersonal skills for effective collaboration across departments. Proficient in Presentation slides and Excel. Seniority level

Seniority level Mid-Senior level Employment type

Employment type Full-time Job function

Job function Information Technology Referrals increase your chances of interviewing at CIMB by 2x Sign in to set job alerts for “Technology Specialist” roles.

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago Federal Territory of Kuala Lumpur, Malaysia 4 days ago Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 4 months ago Batu Caves, Selangor, Malaysia 3 weeks ago MANAGER/ASSISTANT MANAGER - BUSINESS PROCESS AUTOMATION, INFORMATION TECHNOLOGY

Petaling Jaya, Selangor, Malaysia 4 days ago Puchong, Selangor, Malaysia MYR3,000.00-MYR4,500.00 1 month ago Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Graduate Hiring - Next Generation Talent 2025

Petaling Jaya, Selangor, Malaysia 4 months ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR3,200.00-MYR5,000.00 1 week ago Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Federal Territory of Kuala Lumpur, Malaysia 6 days ago Petaling Jaya, Selangor, Malaysia 2 months ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago Industry Technology Specialist (Beverage, SEA)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago Associate Consultant - Infrastructure Engineer

Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Associate, Over-the-Top and Cloud Platform

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 days ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Specialist | Technology Risk

Petaling Jaya, Selangor Grab

Posted today

Job Viewed

Tap Again To Close

Job Description

Company Description

About Grab and Our Workplace Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility. Job Description

Get to know the team: At Grabber Technology Solutions (GTS), we revolutionise the technology experience for every Grabber. Our mission is to empower our team with seamless and innovative solutions that enhance their daily work. We are a diverse group of forward-thinkers committed to creating personalised IT experiences. If you're passionate about customer-centric innovation and eager to make a significant impact on technology at Grab, come join us and help shape the future of technology. Get to Know the Role The GTS Governance Specialist reports to the Governance Leader. The Governance team is the trusted IT Risk advisor and partner to ensure the appropriate IT Risk and controls are in place. This role is an onsite role, and the office is in Malaysia. The Critical Tasks You Will Perform Governance Program Support:

You will support the Governance Leader in rolling out IT controls aligned with Grab's IT Risk Management framework and processes. Risk Framework Enhancement:

You will improve and maintain the IT Risk Management framework, ensuring alignment with the Enterprise Risk Management (ERM) processes. Risk Metrics and Reporting:

You will develop, review, and report key IT risk metrics (e.g., KRIs, KPIs) and provide independent reporting on the IT risk posture. Risk Assessments:

You will conduct IT risk assessments, evaluate countermeasures, and recommend effective controls to mitigate identified IT risks. Risk Monitoring:

You will monitor IT risks, manage the risk register, and develop strong relationships with risk owners. Audit Coordination:

You will assist in managing and coordinating IT audits (e.g., IT SOX) and perform ad-hoc reviews on IT processes. Qualifications

What Essential Skills You Will Need IT Governance and Risk Management:

At least 4 years of experience in IT Governance, Risk Management, and Controls, preferably using COBIT in regulated environments. Risk Assessment and Management:

Proficiency in conducting IT risk assessments, developing countermeasures, and managing risk registers. Technical Expertise:

Knowledge of IT controls, risk metrics (KRIs, KPIs), and frameworks (e.g., COBIT). Certified Professional:

CISM, CISA, or CRISC certifications are preferred but not mandatory (COBIT 2019 Foundation Training is an advantage). Additional Information

Life at Grab We care about your well-being at Grab, here are some of the global benefits we offer: We have your back with

Term Life Insurance

and comprehensive

Medical Insurance. With

GrabFlex,

create a benefits package that suits your needs and aspirations. Celebrate moments that matter in life with loved ones through

Parental

and

Birthday leave , and give back to your communities through

Love-all-Serve-all (LASA)

volunteering leave We have a confidential

Grabber Assistance Programme

to guide and uplift you and your loved ones through life's challenges. Balancing personal commitments and life's demands are made easier with our FlexWork arrangements such as differentiated hours What We Stand For At Grab We are committed to building an inclusive and equitable workplace that provides equal opportunity for Grabbers to grow and perform at their best. We consider all candidates fairly and equally regardless of nationality, ethnicity, race, religion, age, gender, family commitments, physical and mental impairments or disabilities, and other attributes that make them unique.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Technology risk Jobs in Malaysia !

Vice President, Technology Risk

Kuala Lumpur, Kuala Lumpur AFFIN Group

Posted today

Job Viewed

Tap Again To Close

Job Description

AFFIN Group WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia Join or sign in to find your next job

Join to apply for the

Vice President, Technology Risk

role at

AFFIN Group AFFIN Group WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia Join to apply for the

Vice President, Technology Risk

role at

AFFIN Group Get AI-powered advice on this job and more exclusive features. Create your future with Affin! You too can make a difference.

Join us at AFFIN, where the open minds meet and be inspired by a shared commitment to great work. Here, you don’t just stay at the forefront of the industry – you can make a difference too.

Job Purpose

Establish and maintain governance and oversight on the effectiveness of technology risk management for Affin Group. This function will be responsible for maintaining a strong technology risk management culture, formulating/reviewing the technology risk appetite, tolerances and threshold that aligns to the banking group’s risk appetite, and for establishing/maintaining a program to identify, assess, measure, monitor, control and report on significant technology risks.

Responsibilities

Prepare and execute third-party cyber risk assessments, cloud risk assessment, project risk assessment and due diligence activities. Maintain and update the third-party risk inventory, project risk inventory and ensure accurate documentation. Review and assess vendor security documentation, including SOC reports, ISO certifications, penetration test reports, and security questionnaires. Monitor ongoing vendor risk through periodic reviews, assessments, and threat intelligence. Track and report risk remediation plans for third-party gaps and exceptions. Identify, prepare and review technology and cyber risk metrics pertaining to third-party and project risk. Perform risk analytics on data from internal and external sources to form leading and lagging risk indicators that identify emerging third-party risks before they surface. Support the development and maintenance of third-party risk management (TPRM), Project Risk frameworks, policies, and procedures. Assist in the design and delivery of training and awareness programs related to third-party cyber, project risk and technology risk. Stay current with emerging risks, threats, and regulatory changes impacting third-party cyber risk and project risk. Provide advisory, guidance, and recommendation on aspects related to technology risks, particularly in information security and controls, and ensure compliance with the internal IT policies & procedures, as well as regulatory guidelines. Conduct an independent assessment review to identify, assess, and evaluate project management issues and best practices, as well as strategies to reduce, mitigate, or transfer IT and cyber risks for identified project risks. Support senior management, including the CISO and GCRO, in overseeing the effective implementation of technology risk management at the entity level.+

Job Requirements

Degree in IT, IS or Computing and/or other relevant domains. Minimum of 5 years in IT risk management, cyber risk management, project risk management, third-party risk management. Professional certifications such as PMP, PMI-ACP, CEH, CRISC, and CISSP are added advantages. Possess good knowledge and experience of information security and information technology risk management, solid experience in undertaking technical security assessments of technology-related solutions. Familiar with Bank Negara Malaysia regulatory requirements related to Technology Risk. Strong analytical, influencing and problem resolution skills. Ability to work independently with minimum supervision. Ability to work and collaborate with people across seniority and cultures.

Seniority level

Seniority level Executive Employment type

Employment type Full-time Job function

Job function Information Technology Industries Banking Referrals increase your chances of interviewing at AFFIN Group by 2x Get notified about new Vice President of Technology jobs in

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia . Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Vice President, Group Internal Audit (IT Auditor)

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 days ago Assistant Vice President, GT-TBS, GCDB Application Delivery Non-Digital, eComm/CAF (Application Support Lead)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Manager, Risk - Technology Risk & Cyber Risk MY

Kelantan, Kelantan CIMB

Posted today

Job Viewed

Tap Again To Close

Job Description

Malaysia Job Description

Key Responsibilities Drive

the implementation of compliance of GTD units with the

Operational Risk Framework ,

GroupTechnology Risk Management Framework (GTRMF) ,

Cyber Resilience Framework (CRF), Cloud Risk Management Framework (CRMF)

and

BNM’s Risk Management in Technology (RMiT)

which includes providing advisory and guidance to business units to comply with the frameworks & policies. Provide

Leadership and Insights

in the ongoing development of

GTRM’s annual Independent Risk Assurance Program (iRAPT) , focusing on key thematic risks. Lead

in the preparation of monthly

Technology Risk Reporting

for senior management and boards (GORRC, GRCC, BRCC), including insights on technology risk trends, thematic issues and emerging risks. Lead the Analysis and Correlation of information derived from the various ORM tools and other sources to provide independent assurance on technology risk trends, thematic issues, emerging risks and compliance to technology Risk Management Policies, Regulatory Requirements and controls within the group. Providing

Constructive Challenge

to the 1 st Line of Defense’sexecution of the Operational Risk Management Policy and Technology Risk Management Policy. Lead and drive

the

Effectiveness

of ORM tools execution by 1 st Line of Defense by guiding the GTD Governance Team’s 1.5 LOD and RCO/DCORO on areas pertaining to validation and assurance. To lead and drive the validation program

on areas related to

IT Controls

on CET, LED, CIM, KRI, RCSA, CET and to support preparation of the monthly/quarterly/yearly ORM scorecard and tardiness reporting. GTRM point person

for ORM related initiatives at local and group level, including the review and enhancement of ORM’s Policies and Procedures, control effectiveness initiatives and discussions with the ORM team. Coordinate

the regular discussions with GT Governance and Group Compliance focusing on areas needing attention or improvement and areas of mutual interest towards overall

strengthening of technology risk governance . Key liaison

in coordinating the reviews of the yearly RCSA refresh exercise with GTD Unit Risk Control Officer (RCO) &/or DCORO to ensure key operational risks are identified in existing GTD Unit RCSA’s and

effectiveness of controls . Participate and

provide Technology Risk Management advisory & challenges

for 1 st line and 2 nd line of defense projects. Be able to work

independently

and

lead ad-hoc tasks

which are required by GTRM & NFRM. Responsible for

managing the GTRM/CISO’s portal. Job Info

Job Identification 30689 Job Category Risk Posting Date 08/06/2025, 11:11 AM Apply Before 11/30/2025, 11:10 AM Job Schedule Full time Job Shift Day Shift

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Senior Manager, Information & Technology Risk

Kuala Lumpur, Kuala Lumpur AEON Bank

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

AEON Bank WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

AEON Bank WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

Get AI-powered advice on this job and more exclusive features.

The Senior Manager, Information & Technology Risk (“SM”) is a managerial role responsible for leading the development, implementation, and oversight of the Bank’s cybersecurity and technology risk management framework. This role ensures compliance with regulatory requirements (e.g., BNM RMiT), drives cyber resilience initiatives, and manages risk assessments across technology domains. The incumbent will work closely with internal stakeholders, regulators, and third parties to safeguard critical systems and data, ensuring operational integrity and regulatory alignment. The role requires strong leadership, deep technical risk expertise, and the ability to balance security, innovation, and business needs.

In addition, the SM also plays a key role in identifying, assessing, and mitigating cyber and operational risks within their scope. This includes active engagement in risk governance processes related to technology operations oversight and reporting.

Job Responsibilities

Cybersecurity & Technology Risk Governance

  • Establish and manage cybersecurity policies and risk frameworks: Lead the development and ongoing refinement of cybersecurity governance, policies, standards, and procedures in line with regulatory and industry best practices.
  • Regulatory compliance: Ensure compliance with all applicable tech risk-related regulations (e.g., BNM’s RMiT, tech standards) and serve as the liaison with regulators during audits, inspections, and inquiries.
  • Develop and lead risk assessment processes: Oversee enterprise-wide and targeted cybersecurity and technology risk assessments, identifying control gaps, vulnerabilities, and emerging threats.
  • Technology risk registers and reporting: Maintain and update risk registers, perform risk ratings, and present findings and mitigation status to senior management and relevant risk committees.

System Implementation & Controls Assurance

  • Lead setup of cybersecurity and tech risk control systems: Oversee the implementation of systems and workflows related to technology risk monitoring, cybersecurity incident response, and regulatory tech risk compliance.
  • Vendor and third-party risk management: Work with vendors and third parties to assess and ensure security and resilience of outsourced technology services.
  • BAU transition and governance: Once systems are implemented, manage transition to business-as-usual (BAU) operations with clear ownership, monitoring, and reporting mechanisms.

Project Oversight & Regulatory Engagement

  • Project governance: Ensure timely delivery of cybersecurity and risk-related initiatives, escalating any issues that may delay compliance or increase risk exposure.
  • Regulatory interaction: Liaise with regulators on all matters concerning tech risk, cybersecurity, data governance, and incident response, ensuring the Bank’s positions and capabilities are clearly articulated and defensible.
  • Collaboration across the Bank: Work with key stakeholders in IT, Risk, Compliance, Legal, and Business units to ensure integrated risk management practices are embedded across all technology-related processes.

Operational Resilience & Incident Readiness

  • Incident response preparedness: Lead or support cyber incident simulations, table-top exercises, and development of playbooks.
  • Business continuity and disaster recovery: Support the design and testing of recovery plans related to critical technology systems and services.
  • Monitoring and metrics: Establish key risk indicators (KRIs) and security metrics to track effectiveness of the technology risk program.

Job Requirements

  • Bachelor’s degree in IT, Cybersecurity, Risk Management, or related field.
  • Relevant certifications preferred: CISSP, CISM, CRISC, CISA, or ISO 27001.
  • 8–12 years in cybersecurity or technology risk, preferably in financial services.
  • Familiar with regulatory frameworks: BNM RMiT, ISO 27001, NIST, COBIT.
  • Strong knowledge of IT risk management, cybersecurity controls, incident response, and third-party/vendor risk.
  • Ability to interpret regulatory requirements and translate into actionable processes.
  • Excellent communication and stakeholder management skills.
Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology and Analyst

Referrals increase your chances of interviewing at AEON Bank by 2x

Sign in to set job alerts for “Information Technology Risk Manager” roles. Senior Risk Manager, Third Party Security Risk

Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Senior Manager - Cyber Security Risk Management

Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 year ago

Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Vice President, Group Internal Audit (IT Auditor)

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 months ago

Audit Manager, Information & Cyber Security

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 weeks ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 day ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Technology Risk Jobs