145 Technology Risk jobs in Malaysia
Vice President, Technology Risk
Posted today
Job Viewed
Job Description
AFFIN Group WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
Join or sign in to find your next jobJoin to apply for the Vice President, Technology Risk role at AFFIN Group
AFFIN Group WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
Join to apply for the Vice President, Technology Risk role at AFFIN Group
Get AI-powered advice on this job and more exclusive features.
Create your future with Affin! You too can make a difference.
Join us at AFFIN, where the open minds meet and be inspired by a shared commitment to great work. Here, you don’t just stay at the forefront of the industry – you can make a difference too.
Job Purpose
Establish and maintain governance and oversight on the effectiveness of technology risk management for Affin Group. This function will be responsible for maintaining a strong technology risk management culture, formulating/reviewing the technology risk appetite, tolerances and threshold that aligns to the banking group’s risk appetite, and for establishing/maintaining a program to identify, assess, measure, monitor, control and report on significant technology risks.
Responsibilities
- Prepare and execute third-party cyber risk assessments, cloud risk assessment, project risk assessment and due diligence activities.
- Maintain and update the third-party risk inventory, project risk inventory and ensure accurate documentation.
- Review and assess vendor security documentation, including SOC reports, ISO certifications, penetration test reports, and security questionnaires.
- Monitor ongoing vendor risk through periodic reviews, assessments, and threat intelligence.
- Track and report risk remediation plans for third-party gaps and exceptions.
- Identify, prepare and review technology and cyber risk metrics pertaining to third-party and project risk.
- Perform risk analytics on data from internal and external sources to form leading and lagging risk indicators that identify emerging third-party risks before they surface.
- Support the development and maintenance of third-party risk management (TPRM), Project Risk frameworks, policies, and procedures.
- Assist in the design and delivery of training and awareness programs related to third-party cyber, project risk and technology risk.
- Stay current with emerging risks, threats, and regulatory changes impacting third-party cyber risk and project risk.
- Provide advisory, guidance, and recommendation on aspects related to technology risks, particularly in information security and controls, and ensure compliance with the internal IT policies & procedures, as well as regulatory guidelines.
- Conduct an independent assessment review to identify, assess, and evaluate project management issues and best practices, as well as strategies to reduce, mitigate, or transfer IT and cyber risks for identified project risks.
- Support senior management, including the CISO and GCRO, in overseeing the effective implementation of technology risk management at the entity level.+
- Degree in IT, IS or Computing and/or other relevant domains.
- Minimum of 5 years in IT risk management, cyber risk management, project risk management, third-party risk management.
- Professional certifications such as PMP, PMI-ACP, CEH, CRISC, and CISSP are added advantages.
- Possess good knowledge and experience of information security and information technology risk management, solid experience in undertaking technical security assessments of technology-related solutions.
- Familiar with Bank Negara Malaysia regulatory requirements related to Technology Risk.
- Strong analytical, influencing and problem resolution skills. Ability to work independently with minimum supervision.
- Ability to work and collaborate with people across seniority and cultures.
- Seniority level Executive
- Employment type Full-time
- Job function Information Technology
- Industries Banking
Referrals increase your chances of interviewing at AFFIN Group by 2x
Get notified about new Vice President of Technology jobs in WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia .
Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago
Vice President, Group Internal Audit (IT Auditor)WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 days ago
Assistant Vice President, GT-TBS, GCDB Application Delivery Non-Digital, eComm/CAF (Application Support Lead)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSenior Specialist | Technology Risk
Posted 3 days ago
Job Viewed
Job Description
Company Description About Grab and Our Workplace Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility.
Job Description
Get to know the team:
At Grabber Technology Solutions (GTS), we revolutionise the technology experience for every Grabber. Our mission is to empower our team with seamless and innovative solutions that enhance their daily work. We are a diverse group of forward-thinkers committed to creating personalised IT experiences. If you're passionate about customer-centric innovation and eager to make a significant impact on technology at Grab, come join us and help shape the future of technology.
Get to Know the Role
The GTS Governance Specialist reports to the Governance Leader. The Governance team is the trusted IT Risk advisor and partner to ensure the appropriate IT Risk and controls are in place.
This role is an onsite role, and the office is in Malaysia.
The Critical Tasks You Will Perform
- Governance Program Support: You will support the Governance Leader in rolling out IT controls aligned with Grab's IT Risk Management framework and processes.
- Risk Framework Enhancement: You will improve and maintain the IT Risk Management framework, ensuring alignment with the Enterprise Risk Management (ERM) processes.
- Risk Metrics and Reporting: You will develop, review, and report key IT risk metrics (e.g., KRIs, KPIs) and provide independent reporting on the IT risk posture.
- Risk Assessments: You will conduct IT risk assessments, evaluate countermeasures, and recommend effective controls to mitigate identified IT risks.
- Risk Monitoring: You will monitor IT risks, manage the risk register, and develop strong relationships with risk owners.
- Audit Coordination: You will assist in managing and coordinating IT audits (e.g., IT SOX) and perform ad-hoc reviews on IT processes.
Qualifications
What Essential Skills You Will Need
- IT Governance and Risk Management: At least 4 years of experience in IT Governance, Risk Management, and Controls, preferably using COBIT in regulated environments.
- Risk Assessment and Management: Proficiency in conducting IT risk assessments, developing countermeasures, and managing risk registers.
- Technical Expertise: Knowledge of IT controls, risk metrics (KRIs, KPIs), and frameworks (e.g., COBIT).
- Certified Professional: CISM, CISA, or CRISC certifications are preferred but not mandatory (COBIT 2019 Foundation Training is an advantage).
Additional Information
Life at Grab
We care about your well-being at Grab, here are some of the global benefits we offer:
- We have your back with Term Life Insurance and comprehensive Medical Insurance.
- With GrabFlex, create a benefits package that suits your needs and aspirations.
- Celebrate moments that matter in life with loved ones through Parental and Birthday leave , and give back to your communities through Love-all-Serve-all (LASA) volunteering leave
- We have a confidential Grabber Assistance Programme to guide and uplift you and your loved ones through life's challenges.
- Balancing personal commitments and life's demands are made easier with our FlexWork arrangements such as differentiated hours
What We Stand For At Grab
We are committed to building an inclusive and equitable workplace that provides equal opportunity for Grabbers to grow and perform at their best. We consider all candidates fairly and equally regardless of nationality, ethnicity, race, religion, age, gender, family commitments, physical and mental impairments or disabilities, and other attributes that make them unique.
Senior Specialist | Technology Risk
Posted 11 days ago
Job Viewed
Job Description
Join to apply for the Senior Specialist | Technology Risk role at Grab
1 week ago Be among the first 25 applicants
Join to apply for the Senior Specialist | Technology Risk role at Grab
Get AI-powered advice on this job and more exclusive features.
About Grab and Our Workplace
Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility.
Company Description
About Grab and Our Workplace
Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility.
Job Description
Get to know the team:
At Grabber Technology Solutions (GTS), we revolutionise the technology experience for every Grabber. Our mission is to empower our team with seamless and innovative solutions that enhance their daily work. We are a diverse group of forward-thinkers committed to creating personalised IT experiences. If you're passionate about customer-centric innovation and eager to make a significant impact on technology at Grab, come join us and help shape the future of technology.
Get to Know the Role
The GTS Governance Specialist reports to the Governance Leader. The Governance team is the trusted IT Risk advisor and partner to ensure the appropriate IT Risk and controls are in place.
This role is an onsite role, and the office is in Malaysia.
The Critical Tasks You Will Perform
- Governance Program Support: You will support the Governance Leader in rolling out IT controls aligned with Grab's IT Risk Management framework and processes.
- Risk Framework Enhancement: You will improve and maintain the IT Risk Management framework, ensuring alignment with the Enterprise Risk Management (ERM) processes.
- Risk Metrics and Reporting: You will develop, review, and report key IT risk metrics (e.g., KRIs, KPIs) and provide independent reporting on the IT risk posture.
- Risk Assessments: You will conduct IT risk assessments, evaluate countermeasures, and recommend effective controls to mitigate identified IT risks.
- Risk Monitoring: You will monitor IT risks, manage the risk register, and develop strong relationships with risk owners.
- Audit Coordination: You will assist in managing and coordinating IT audits (e.g., IT SOX) and perform ad-hoc reviews on IT processes.
What Essential Skills You Will Need
- IT Governance and Risk Management: At least 4 years of experience in IT Governance, Risk Management, and Controls, preferably using COBIT in regulated environments.
- Risk Assessment and Management: Proficiency in conducting IT risk assessments, developing countermeasures, and managing risk registers.
- Technical Expertise: Knowledge of IT controls, risk metrics (KRIs, KPIs), and frameworks (e.g., COBIT).
- Certified Professional: CISM, CISA, or CRISC certifications are preferred but not mandatory (COBIT 2019 Foundation Training is an advantage).
Life at Grab
We care about your well-being at Grab, here are some of the global benefits we offer:
- We have your back with Term Life Insurance and comprehensive Medical Insurance.
- With GrabFlex, create a benefits package that suits your needs and aspirations.
- Celebrate moments that matter in life with loved ones through Parental and Birthday leave, and give back to your communities through Love-all-Serve-all (LASA) volunteering leave
- We have a confidential Grabber Assistance Programme to guide and uplift you and your loved ones through life's challenges.
- Balancing personal commitments and life's demands are made easier with our FlexWork arrangements such as differentiated hours
We are committed to building an inclusive and equitable workplace that provides equal opportunity for Grabbers to grow and perform at their best. We consider all candidates fairly and equally regardless of nationality, ethnicity, race, religion, age, gender, family commitments, physical and mental impairments or disabilities, and other attributes that make them unique. Seniority level
- Seniority level Associate
- Employment type Full-time
- Job function Other
- Industries Technology, Information and Internet
Referrals increase your chances of interviewing at Grab by 2x
Get notified about new Senior jobs in Petaling Jaya, Selangor, Malaysia .
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago
Senior Manager, Transformation Management OfficeFederal Territory of Kuala Lumpur, Malaysia 6 days ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
Senior Manager | Mobility, Organisation Design & Job EvaluationKota Damansara, Selangor, Malaysia 4 weeks ago
Senior Executive / Executive, Company SecretarialBukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
Assistant Vice President, Strategic Communications and Public AffairsFederal Territory of Kuala Lumpur, Malaysia 13 hours ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR6,210.00-MYR14,370.00 20 hours ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 6 days ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
Senior Executive (Property Sales & Marketing)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
Senior Executive, Recruitment & HR ServicesKuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 months ago
Senior Talent Acquisition & Employer Branding ExecutivePetaling Jaya, Selangor, Malaysia 6 days ago
Senior Manager, Corporate Development (Investor Relations)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 day ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Senior Executive, Procurement (RID-00534)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Senior Executive, Record to Report (Kuala Lumpur) Senior Executive - Accounts Payable (Non-Trade)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR5,000.00-MYR5,500.00 1 week ago
Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 7 hours ago
Senior Executive, Customer Operations and Service Delivery (RID-00535)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
Federal Territory of Kuala Lumpur, Malaysia 6 days ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrTechnology Risk Specialist SG
Posted 17 days ago
Job Viewed
Job Description
CIMB Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
Join or sign in to find your next jobJoin to apply for the Technology Risk Specialist SG role at CIMB
CIMB Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
3 days ago Be among the first 25 applicants
Join to apply for the Technology Risk Specialist SG role at CIMB
- Foster agility and growth mindset to implement robust TRM strategies, framework and policies to manage technology and cybers risks of CIMB Singapore to be better prepared to mitigate and manage these risks in the face of evolving system/information security and cyber threat.
- Work closely with CIMB Singapore and Group IT stakeholders and other NFRM specialists in supporting business and operational resilience strategies, roadmap and business continuity plan to strengthen the Bank’s technology risk resilience, address potential vulnerabilities and ensure continuity of business operation with better responsiveness and recovery from technology-related incidents.
- Facilitate the continuous improvement initiatives to ensure technology risks and cyber threat are identified with corresponding operational risks controls and framework, and mitigating actions.
- Work in collaboration with IT to implement the Cyber Defence Program to focus on protection against cyber threats by leveraging threat intelligence, building up the Bank’s cyber response readiness and modernizing the Bank’s cyber surveillance technology.
- Work in collaboration with other NFRM specialists on the validation of various control environment testing results and deep-dive review and control of the key risk indicators related to technology risk. Perform sample checks on the effectiveness of BUs/BEs’ technology risk controls for assessment of risk rating.
- Facilitate the analysis, reporting and escalation to risk committees / working groups / forums / steering committees related to change process management or projects specifically addressing matters related to Technology Risk and Cyber Security.
- Report and escalate to risk committees on Technology risk exposure and mitigation activities or any other high or critical issues requiring attention and remediation.
- Provide secretariat function and support for SG Technology Risk Committee and / or other SG risk committees.
Key Responsibilities
Business and System Resilience
- Foster agility and growth mindset to implement robust TRM strategies, framework and policies to manage technology and cybers risks of CIMB Singapore to be better prepared to mitigate and manage these risks in the face of evolving system/information security and cyber threat.
- Work closely with CIMB Singapore and Group IT stakeholders and other NFRM specialists in supporting business and operational resilience strategies, roadmap and business continuity plan to strengthen the Bank’s technology risk resilience, address potential vulnerabilities and ensure continuity of business operation with better responsiveness and recovery from technology-related incidents.
- Facilitate the continuous improvement initiatives to ensure technology risks and cyber threat are identified with corresponding operational risks controls and framework, and mitigating actions.
- Work in collaboration with IT to implement the Cyber Defence Program to focus on protection against cyber threats by leveraging threat intelligence, building up the Bank’s cyber response readiness and modernizing the Bank’s cyber surveillance technology.
- Work in collaboration with other NFRM specialists on the validation of various control environment testing results and deep-dive review and control of the key risk indicators related to technology risk. Perform sample checks on the effectiveness of BUs/BEs’ technology risk controls for assessment of risk rating.
- Facilitate the analysis, reporting and escalation to risk committees / working groups / forums / steering committees related to change process management or projects specifically addressing matters related to Technology Risk and Cyber Security.
- Report and escalate to risk committees on Technology risk exposure and mitigation activities or any other high or critical issues requiring attention and remediation.
- Provide secretariat function and support for SG Technology Risk Committee and / or other SG risk committees.
Customer
- Foster collaboration with CIMB Singapore BUs/BEs, and other relevant cross-functional stakeholders within Risk.
- Build and maintain strong relationships and rapport with various business units, business support function units and other areas of risk management within CIMB Singapore.
- Promote and foster a collaborative and high-performance risk culture for sustainable growth.
- Provide guidance and / or support to team members, ensuring alignment with the Bank’s strategic objectives and Group Risk priorities.
- Embrace CIMB EPICC culture and values.
- Provide support to Singapore Risk in addressing MAS requirements and audit request, ensuring the Branch’s risk framework and practices are in compliance with the applicable banking laws, regulations, internal policies and procedures.
- Stay abreast of industry trends, regulatory developments and best practices in technology risk management to continuously enhance the bank’s risk management capabilities.
- Undergraduate degree in Computer Science, Information Technology or Engineering
- Preference for Information Security and Risk certification. Such as CISA, CRISC, CISSP and CISM.
- At least 5-10 years of working experience with sound knowledge and experience of cybersecurity and information security risk management, preferably within the Financial Services sector.
- Strong knowledge of operational risk frameworks and understanding of industry best practices including the specialized subject matter. Knowledge of relevant regulatory technology risk management guidelines / requirements (e.g. MAS FSM-N05 and FSM-N06 and relevant Technology Risk Management guidelines) and industry standards/ frameworks such as NIST, ISO 27001/2.
- Professional certification related to technology risk and security is an advantage (e.g. CISA, CRISC, CISSP etc)
- Possess critical thinking capabilities including strong problem-solving and judgment skills.
- Agile and growth mindset with the ability to embrace change and drive innovation in risk management practices.
- Self-motivated and adaptable with strong initiative and desire to learn and develop.
- Excellent communication and interpersonal skills for effective collaboration across departments.
- Proficient in Presentation slides and Excel.
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
Referrals increase your chances of interviewing at CIMB by 2x
Sign in to set job alerts for “Technology Specialist” roles.Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago
Federal Territory of Kuala Lumpur, Malaysia 4 days ago
Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 4 months ago
Batu Caves, Selangor, Malaysia 3 weeks ago
MANAGER/ASSISTANT MANAGER - BUSINESS PROCESS AUTOMATION, INFORMATION TECHNOLOGYPetaling Jaya, Selangor, Malaysia 4 days ago
Puchong, Selangor, Malaysia MYR3,000.00-MYR4,500.00 1 month ago
Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Graduate Hiring - Next Generation Talent 2025Petaling Jaya, Selangor, Malaysia 4 months ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR3,200.00-MYR5,000.00 1 week ago
Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago
Federal Territory of Kuala Lumpur, Malaysia 6 days ago
Petaling Jaya, Selangor, Malaysia 2 months ago
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago
Industry Technology Specialist (Beverage, SEA)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago
Associate Consultant - Infrastructure EngineerFederal Territory of Kuala Lumpur, Malaysia 3 weeks ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago
Associate, Over-the-Top and Cloud PlatformKuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 days ago
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSenior Specialist | Technology Risk
Posted today
Job Viewed
Job Description
Senior Specialist | Technology Risk
role at
Grab 1 week ago Be among the first 25 applicants Join to apply for the
Senior Specialist | Technology Risk
role at
Grab Get AI-powered advice on this job and more exclusive features. About Grab and Our Workplace
Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility. Company Description
About Grab and Our Workplace
Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility.
Job Description
Get to know the team:
At Grabber Technology Solutions (GTS), we revolutionise the technology experience for every Grabber. Our mission is to empower our team with seamless and innovative solutions that enhance their daily work. We are a diverse group of forward-thinkers committed to creating personalised IT experiences. If you're passionate about customer-centric innovation and eager to make a significant impact on technology at Grab, come join us and help shape the future of technology.
Get to Know the Role
The GTS Governance Specialist reports to the Governance Leader. The Governance team is the trusted IT Risk advisor and partner to ensure the appropriate IT Risk and controls are in place.
This role is an onsite role, and the office is in Malaysia.
The Critical Tasks You Will Perform
Governance Program Support: You will support the Governance Leader in rolling out IT controls aligned with Grab's IT Risk Management framework and processes. Risk Framework Enhancement: You will improve and maintain the IT Risk Management framework, ensuring alignment with the Enterprise Risk Management (ERM) processes. Risk Metrics and Reporting: You will develop, review, and report key IT risk metrics (e.g., KRIs, KPIs) and provide independent reporting on the IT risk posture. Risk Assessments: You will conduct IT risk assessments, evaluate countermeasures, and recommend effective controls to mitigate identified IT risks. Risk Monitoring: You will monitor IT risks, manage the risk register, and develop strong relationships with risk owners. Audit Coordination: You will assist in managing and coordinating IT audits (e.g., IT SOX) and perform ad-hoc reviews on IT processes.
Qualifications
What Essential Skills You Will Need
IT Governance and Risk Management: At least 4 years of experience in IT Governance, Risk Management, and Controls, preferably using COBIT in regulated environments. Risk Assessment and Management: Proficiency in conducting IT risk assessments, developing countermeasures, and managing risk registers. Technical Expertise: Knowledge of IT controls, risk metrics (KRIs, KPIs), and frameworks (e.g., COBIT). Certified Professional: CISM, CISA, or CRISC certifications are preferred but not mandatory (COBIT 2019 Foundation Training is an advantage).
Additional Information
Life at Grab
We care about your well-being at Grab, here are some of the global benefits we offer:
We have your back with Term Life Insurance and comprehensive Medical Insurance. With GrabFlex, create a benefits package that suits your needs and aspirations. Celebrate moments that matter in life with loved ones through Parental and Birthday leave, and give back to your communities through Love-all-Serve-all (LASA) volunteering leave We have a confidential Grabber Assistance Programme to guide and uplift you and your loved ones through life's challenges. Balancing personal commitments and life's demands are made easier with our FlexWork arrangements such as differentiated hours
What We Stand For At Grab
We are committed to building an inclusive and equitable workplace that provides equal opportunity for Grabbers to grow and perform at their best. We consider all candidates fairly and equally regardless of nationality, ethnicity, race, religion, age, gender, family commitments, physical and mental impairments or disabilities, and other attributes that make them unique. Seniority level
Seniority level Associate Employment type
Employment type Full-time Job function
Job function Other Industries Technology, Information and Internet Referrals increase your chances of interviewing at Grab by 2x Get notified about new Senior jobs in
Petaling Jaya, Selangor, Malaysia . Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago Senior Manager, Transformation Management Office
Federal Territory of Kuala Lumpur, Malaysia 6 days ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Senior Manager | Mobility, Organisation Design & Job Evaluation
Kota Damansara, Selangor, Malaysia 4 weeks ago Senior Executive / Executive, Company Secretarial
Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Assistant Vice President, Strategic Communications and Public Affairs
Federal Territory of Kuala Lumpur, Malaysia 13 hours ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR6,210.00-MYR14,370.00 20 hours ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 6 days ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Senior Executive (Property Sales & Marketing)
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Senior Executive, Recruitment & HR Services
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 months ago Senior Talent Acquisition & Employer Branding Executive
Petaling Jaya, Selangor, Malaysia 6 days ago Senior Manager, Corporate Development (Investor Relations)
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 day ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Senior Executive, Procurement (RID-00534)
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Senior Executive, Record to Report (Kuala Lumpur)
Senior Executive - Accounts Payable (Non-Trade)
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR5,000.00-MYR5,500.00 1 week ago Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 7 hours ago Senior Executive, Customer Operations and Service Delivery (RID-00535)
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Federal Territory of Kuala Lumpur, Malaysia 6 days ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr
Technology Risk Specialist SG
Posted today
Job Viewed
Job Description
Join to apply for the
Technology Risk Specialist SG
role at
CIMB CIMB Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago Be among the first 25 applicants Join to apply for the
Technology Risk Specialist SG
role at
CIMB Foster agility and growth mindset to implement robust TRM strategies, framework and policies to manage technology and cybers risks of CIMB Singapore to be better prepared to mitigate and manage these risks in the face of evolving system/information security and cyber threat. Work closely with CIMB Singapore and Group IT stakeholders and other NFRM specialists in supporting business and operational resilience strategies, roadmap and business continuity plan to strengthen the Bank’s technology risk resilience, address potential vulnerabilities and ensure continuity of business operation with better responsiveness and recovery from technology-related incidents. Facilitate the continuous improvement initiatives to ensure technology risks and cyber threat are identified with corresponding operational risks controls and framework, and mitigating actions. Work in collaboration with IT to implement the Cyber Defence Program to focus on protection against cyber threats by leveraging threat intelligence, building up the Bank’s cyber response readiness and modernizing the Bank’s cyber surveillance technology. Work in collaboration with other NFRM specialists on the validation of various control environment testing results and deep-dive review and control of the key risk indicators related to technology risk. Perform sample checks on the effectiveness of BUs/BEs’ technology risk controls for assessment of risk rating. Facilitate the analysis, reporting and escalation to risk committees / working groups / forums / steering committees related to change process management or projects specifically addressing matters related to Technology Risk and Cyber Security. Report and escalate to risk committees on Technology risk exposure and mitigation activities or any other high or critical issues requiring attention and remediation. Provide secretariat function and support for SG Technology Risk Committee and / or other SG risk committees.
Job Description
Key Responsibilities
Business and System Resilience
Foster agility and growth mindset to implement robust TRM strategies, framework and policies to manage technology and cybers risks of CIMB Singapore to be better prepared to mitigate and manage these risks in the face of evolving system/information security and cyber threat. Work closely with CIMB Singapore and Group IT stakeholders and other NFRM specialists in supporting business and operational resilience strategies, roadmap and business continuity plan to strengthen the Bank’s technology risk resilience, address potential vulnerabilities and ensure continuity of business operation with better responsiveness and recovery from technology-related incidents. Facilitate the continuous improvement initiatives to ensure technology risks and cyber threat are identified with corresponding operational risks controls and framework, and mitigating actions. Work in collaboration with IT to implement the Cyber Defence Program to focus on protection against cyber threats by leveraging threat intelligence, building up the Bank’s cyber response readiness and modernizing the Bank’s cyber surveillance technology. Work in collaboration with other NFRM specialists on the validation of various control environment testing results and deep-dive review and control of the key risk indicators related to technology risk. Perform sample checks on the effectiveness of BUs/BEs’ technology risk controls for assessment of risk rating. Facilitate the analysis, reporting and escalation to risk committees / working groups / forums / steering committees related to change process management or projects specifically addressing matters related to Technology Risk and Cyber Security. Report and escalate to risk committees on Technology risk exposure and mitigation activities or any other high or critical issues requiring attention and remediation. Provide secretariat function and support for SG Technology Risk Committee and / or other SG risk committees.
People Management – Customer and Employee Engagement & Development
Customer
Foster collaboration with CIMB Singapore BUs/BEs, and other relevant cross-functional stakeholders within Risk. Build and maintain strong relationships and rapport with various business units, business support function units and other areas of risk management within CIMB Singapore. Promote and foster a collaborative and high-performance risk culture for sustainable growth.
Employee Engagement & Development
Provide guidance and / or support to team members, ensuring alignment with the Bank’s strategic objectives and Group Risk priorities. Embrace CIMB EPICC culture and values.
Regulatory Compliance
Provide support to Singapore Risk in addressing MAS requirements and audit request, ensuring the Branch’s risk framework and practices are in compliance with the applicable banking laws, regulations, internal policies and procedures. Stay abreast of industry trends, regulatory developments and best practices in technology risk management to continuously enhance the bank’s risk management capabilities.
Job Requirements
Undergraduate degree in Computer Science, Information Technology or Engineering Preference for Information Security and Risk certification. Such as CISA, CRISC, CISSP and CISM. At least 5-10 years of working experience with sound knowledge and experience of cybersecurity and information security risk management, preferably within the Financial Services sector. Strong knowledge of operational risk frameworks and understanding of industry best practices including the specialized subject matter. Knowledge of relevant regulatory technology risk management guidelines / requirements (e.g. MAS FSM-N05 and FSM-N06 and relevant Technology Risk Management guidelines) and industry standards/ frameworks such as NIST, ISO 27001/2. Professional certification related to technology risk and security is an advantage (e.g. CISA, CRISC, CISSP etc) Possess critical thinking capabilities including strong problem-solving and judgment skills. Agile and growth mindset with the ability to embrace change and drive innovation in risk management practices. Self-motivated and adaptable with strong initiative and desire to learn and develop. Excellent communication and interpersonal skills for effective collaboration across departments. Proficient in Presentation slides and Excel. Seniority level
Seniority level Mid-Senior level Employment type
Employment type Full-time Job function
Job function Information Technology Referrals increase your chances of interviewing at CIMB by 2x Sign in to set job alerts for “Technology Specialist” roles.
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago Federal Territory of Kuala Lumpur, Malaysia 4 days ago Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 4 months ago Batu Caves, Selangor, Malaysia 3 weeks ago MANAGER/ASSISTANT MANAGER - BUSINESS PROCESS AUTOMATION, INFORMATION TECHNOLOGY
Petaling Jaya, Selangor, Malaysia 4 days ago Puchong, Selangor, Malaysia MYR3,000.00-MYR4,500.00 1 month ago Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Graduate Hiring - Next Generation Talent 2025
Petaling Jaya, Selangor, Malaysia 4 months ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia MYR3,200.00-MYR5,000.00 1 week ago Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Federal Territory of Kuala Lumpur, Malaysia 6 days ago Petaling Jaya, Selangor, Malaysia 2 months ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago Industry Technology Specialist (Beverage, SEA)
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 days ago Associate Consultant - Infrastructure Engineer
Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Associate, Over-the-Top and Cloud Platform
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 days ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr
Senior Specialist | Technology Risk
Posted today
Job Viewed
Job Description
About Grab and Our Workplace Grab is Southeast Asia's leading superapp. From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything. In Grab, purpose gives us joy and habits build excellence, while harnessing the power of Technology and AI to deliver the mission of driving Southeast Asia forward by economically empowering everyone, with heart, hunger, honour, and humility. Job Description
Get to know the team: At Grabber Technology Solutions (GTS), we revolutionise the technology experience for every Grabber. Our mission is to empower our team with seamless and innovative solutions that enhance their daily work. We are a diverse group of forward-thinkers committed to creating personalised IT experiences. If you're passionate about customer-centric innovation and eager to make a significant impact on technology at Grab, come join us and help shape the future of technology. Get to Know the Role The GTS Governance Specialist reports to the Governance Leader. The Governance team is the trusted IT Risk advisor and partner to ensure the appropriate IT Risk and controls are in place. This role is an onsite role, and the office is in Malaysia. The Critical Tasks You Will Perform Governance Program Support:
You will support the Governance Leader in rolling out IT controls aligned with Grab's IT Risk Management framework and processes. Risk Framework Enhancement:
You will improve and maintain the IT Risk Management framework, ensuring alignment with the Enterprise Risk Management (ERM) processes. Risk Metrics and Reporting:
You will develop, review, and report key IT risk metrics (e.g., KRIs, KPIs) and provide independent reporting on the IT risk posture. Risk Assessments:
You will conduct IT risk assessments, evaluate countermeasures, and recommend effective controls to mitigate identified IT risks. Risk Monitoring:
You will monitor IT risks, manage the risk register, and develop strong relationships with risk owners. Audit Coordination:
You will assist in managing and coordinating IT audits (e.g., IT SOX) and perform ad-hoc reviews on IT processes. Qualifications
What Essential Skills You Will Need IT Governance and Risk Management:
At least 4 years of experience in IT Governance, Risk Management, and Controls, preferably using COBIT in regulated environments. Risk Assessment and Management:
Proficiency in conducting IT risk assessments, developing countermeasures, and managing risk registers. Technical Expertise:
Knowledge of IT controls, risk metrics (KRIs, KPIs), and frameworks (e.g., COBIT). Certified Professional:
CISM, CISA, or CRISC certifications are preferred but not mandatory (COBIT 2019 Foundation Training is an advantage). Additional Information
Life at Grab We care about your well-being at Grab, here are some of the global benefits we offer: We have your back with
Term Life Insurance
and comprehensive
Medical Insurance. With
GrabFlex,
create a benefits package that suits your needs and aspirations. Celebrate moments that matter in life with loved ones through
Parental
and
Birthday leave , and give back to your communities through
Love-all-Serve-all (LASA)
volunteering leave We have a confidential
Grabber Assistance Programme
to guide and uplift you and your loved ones through life's challenges. Balancing personal commitments and life's demands are made easier with our FlexWork arrangements such as differentiated hours What We Stand For At Grab We are committed to building an inclusive and equitable workplace that provides equal opportunity for Grabbers to grow and perform at their best. We consider all candidates fairly and equally regardless of nationality, ethnicity, race, religion, age, gender, family commitments, physical and mental impairments or disabilities, and other attributes that make them unique.
#J-18808-Ljbffr
Be The First To Know
About the latest Technology risk Jobs in Malaysia !
Vice President, Technology Risk
Posted today
Job Viewed
Job Description
Join to apply for the
Vice President, Technology Risk
role at
AFFIN Group AFFIN Group WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia Join to apply for the
Vice President, Technology Risk
role at
AFFIN Group Get AI-powered advice on this job and more exclusive features. Create your future with Affin! You too can make a difference.
Join us at AFFIN, where the open minds meet and be inspired by a shared commitment to great work. Here, you don’t just stay at the forefront of the industry – you can make a difference too.
Job Purpose
Establish and maintain governance and oversight on the effectiveness of technology risk management for Affin Group. This function will be responsible for maintaining a strong technology risk management culture, formulating/reviewing the technology risk appetite, tolerances and threshold that aligns to the banking group’s risk appetite, and for establishing/maintaining a program to identify, assess, measure, monitor, control and report on significant technology risks.
Responsibilities
Prepare and execute third-party cyber risk assessments, cloud risk assessment, project risk assessment and due diligence activities. Maintain and update the third-party risk inventory, project risk inventory and ensure accurate documentation. Review and assess vendor security documentation, including SOC reports, ISO certifications, penetration test reports, and security questionnaires. Monitor ongoing vendor risk through periodic reviews, assessments, and threat intelligence. Track and report risk remediation plans for third-party gaps and exceptions. Identify, prepare and review technology and cyber risk metrics pertaining to third-party and project risk. Perform risk analytics on data from internal and external sources to form leading and lagging risk indicators that identify emerging third-party risks before they surface. Support the development and maintenance of third-party risk management (TPRM), Project Risk frameworks, policies, and procedures. Assist in the design and delivery of training and awareness programs related to third-party cyber, project risk and technology risk. Stay current with emerging risks, threats, and regulatory changes impacting third-party cyber risk and project risk. Provide advisory, guidance, and recommendation on aspects related to technology risks, particularly in information security and controls, and ensure compliance with the internal IT policies & procedures, as well as regulatory guidelines. Conduct an independent assessment review to identify, assess, and evaluate project management issues and best practices, as well as strategies to reduce, mitigate, or transfer IT and cyber risks for identified project risks. Support senior management, including the CISO and GCRO, in overseeing the effective implementation of technology risk management at the entity level.+
Job Requirements
Degree in IT, IS or Computing and/or other relevant domains. Minimum of 5 years in IT risk management, cyber risk management, project risk management, third-party risk management. Professional certifications such as PMP, PMI-ACP, CEH, CRISC, and CISSP are added advantages. Possess good knowledge and experience of information security and information technology risk management, solid experience in undertaking technical security assessments of technology-related solutions. Familiar with Bank Negara Malaysia regulatory requirements related to Technology Risk. Strong analytical, influencing and problem resolution skills. Ability to work independently with minimum supervision. Ability to work and collaborate with people across seniority and cultures.
Seniority level
Seniority level Executive Employment type
Employment type Full-time Job function
Job function Information Technology Industries Banking Referrals increase your chances of interviewing at AFFIN Group by 2x Get notified about new Vice President of Technology jobs in
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia . Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago Vice President, Group Internal Audit (IT Auditor)
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 days ago Assistant Vice President, GT-TBS, GCDB Application Delivery Non-Digital, eComm/CAF (Application Support Lead)
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr
Manager, Risk - Technology Risk & Cyber Risk MY
Posted today
Job Viewed
Job Description
Key Responsibilities Drive
the implementation of compliance of GTD units with the
Operational Risk Framework ,
GroupTechnology Risk Management Framework (GTRMF) ,
Cyber Resilience Framework (CRF), Cloud Risk Management Framework (CRMF)
and
BNM’s Risk Management in Technology (RMiT)
which includes providing advisory and guidance to business units to comply with the frameworks & policies. Provide
Leadership and Insights
in the ongoing development of
GTRM’s annual Independent Risk Assurance Program (iRAPT) , focusing on key thematic risks. Lead
in the preparation of monthly
Technology Risk Reporting
for senior management and boards (GORRC, GRCC, BRCC), including insights on technology risk trends, thematic issues and emerging risks. Lead the Analysis and Correlation of information derived from the various ORM tools and other sources to provide independent assurance on technology risk trends, thematic issues, emerging risks and compliance to technology Risk Management Policies, Regulatory Requirements and controls within the group. Providing
Constructive Challenge
to the 1 st Line of Defense’sexecution of the Operational Risk Management Policy and Technology Risk Management Policy. Lead and drive
the
Effectiveness
of ORM tools execution by 1 st Line of Defense by guiding the GTD Governance Team’s 1.5 LOD and RCO/DCORO on areas pertaining to validation and assurance. To lead and drive the validation program
on areas related to
IT Controls
on CET, LED, CIM, KRI, RCSA, CET and to support preparation of the monthly/quarterly/yearly ORM scorecard and tardiness reporting. GTRM point person
for ORM related initiatives at local and group level, including the review and enhancement of ORM’s Policies and Procedures, control effectiveness initiatives and discussions with the ORM team. Coordinate
the regular discussions with GT Governance and Group Compliance focusing on areas needing attention or improvement and areas of mutual interest towards overall
strengthening of technology risk governance . Key liaison
in coordinating the reviews of the yearly RCSA refresh exercise with GTD Unit Risk Control Officer (RCO) &/or DCORO to ensure key operational risks are identified in existing GTD Unit RCSA’s and
effectiveness of controls . Participate and
provide Technology Risk Management advisory & challenges
for 1 st line and 2 nd line of defense projects. Be able to work
independently
and
lead ad-hoc tasks
which are required by GTRM & NFRM. Responsible for
managing the GTRM/CISO’s portal. Job Info
Job Identification 30689 Job Category Risk Posting Date 08/06/2025, 11:11 AM Apply Before 11/30/2025, 11:10 AM Job Schedule Full time Job Shift Day Shift
#J-18808-Ljbffr
Senior Manager, Information & Technology Risk
Posted 11 days ago
Job Viewed
Job Description
AEON Bank WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
AEON Bank WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
Get AI-powered advice on this job and more exclusive features.
The Senior Manager, Information & Technology Risk (“SM”) is a managerial role responsible for leading the development, implementation, and oversight of the Bank’s cybersecurity and technology risk management framework. This role ensures compliance with regulatory requirements (e.g., BNM RMiT), drives cyber resilience initiatives, and manages risk assessments across technology domains. The incumbent will work closely with internal stakeholders, regulators, and third parties to safeguard critical systems and data, ensuring operational integrity and regulatory alignment. The role requires strong leadership, deep technical risk expertise, and the ability to balance security, innovation, and business needs.
In addition, the SM also plays a key role in identifying, assessing, and mitigating cyber and operational risks within their scope. This includes active engagement in risk governance processes related to technology operations oversight and reporting.
Job Responsibilities
Cybersecurity & Technology Risk Governance
- Establish and manage cybersecurity policies and risk frameworks: Lead the development and ongoing refinement of cybersecurity governance, policies, standards, and procedures in line with regulatory and industry best practices.
- Regulatory compliance: Ensure compliance with all applicable tech risk-related regulations (e.g., BNM’s RMiT, tech standards) and serve as the liaison with regulators during audits, inspections, and inquiries.
- Develop and lead risk assessment processes: Oversee enterprise-wide and targeted cybersecurity and technology risk assessments, identifying control gaps, vulnerabilities, and emerging threats.
- Technology risk registers and reporting: Maintain and update risk registers, perform risk ratings, and present findings and mitigation status to senior management and relevant risk committees.
System Implementation & Controls Assurance
- Lead setup of cybersecurity and tech risk control systems: Oversee the implementation of systems and workflows related to technology risk monitoring, cybersecurity incident response, and regulatory tech risk compliance.
- Vendor and third-party risk management: Work with vendors and third parties to assess and ensure security and resilience of outsourced technology services.
- BAU transition and governance: Once systems are implemented, manage transition to business-as-usual (BAU) operations with clear ownership, monitoring, and reporting mechanisms.
Project Oversight & Regulatory Engagement
- Project governance: Ensure timely delivery of cybersecurity and risk-related initiatives, escalating any issues that may delay compliance or increase risk exposure.
- Regulatory interaction: Liaise with regulators on all matters concerning tech risk, cybersecurity, data governance, and incident response, ensuring the Bank’s positions and capabilities are clearly articulated and defensible.
- Collaboration across the Bank: Work with key stakeholders in IT, Risk, Compliance, Legal, and Business units to ensure integrated risk management practices are embedded across all technology-related processes.
Operational Resilience & Incident Readiness
- Incident response preparedness: Lead or support cyber incident simulations, table-top exercises, and development of playbooks.
- Business continuity and disaster recovery: Support the design and testing of recovery plans related to critical technology systems and services.
- Monitoring and metrics: Establish key risk indicators (KRIs) and security metrics to track effectiveness of the technology risk program.
Job Requirements
- Bachelor’s degree in IT, Cybersecurity, Risk Management, or related field.
- Relevant certifications preferred: CISSP, CISM, CRISC, CISA, or ISO 27001.
- 8–12 years in cybersecurity or technology risk, preferably in financial services.
- Familiar with regulatory frameworks: BNM RMiT, ISO 27001, NIST, COBIT.
- Strong knowledge of IT risk management, cybersecurity controls, incident response, and third-party/vendor risk.
- Ability to interpret regulatory requirements and translate into actionable processes.
- Excellent communication and stakeholder management skills.
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology and Analyst
Referrals increase your chances of interviewing at AEON Bank by 2x
Sign in to set job alerts for “Information Technology Risk Manager” roles. Senior Risk Manager, Third Party Security RiskBukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 1 month ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Senior Manager - Cyber Security Risk ManagementBukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 year ago
Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago
Vice President, Group Internal Audit (IT Auditor)WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 months ago
Audit Manager, Information & Cyber SecurityKuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 weeks ago
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 day ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr