Apply on
The Head of Technology Risk will lead the technology risk management function for the firm, ensuring that the organization's technology-related risks are identified, assessed, and mitigated in line with regulatory requirements and industry best practices. This leader will collaborate closely with senior management, IT, and business units to implement a robust technology risk framework that supports the company's strategic objectives while safeguarding its technology infrastructure, data, and operations.
Key Responsibilities:
Technology Risk Strategy and Governance:
- Develop and maintain the organization's technology risk management framework, policies, and procedures.
- Lead the identification, assessment, monitoring, and reporting of technology risks across all business units.
- Work closely with the C-suite and other key stakeholders to align technology risk strategy with overall business objectives.
- Provide regular updates and reporting to the Board, Risk Committees, and senior management on the technology risk posture of the organization.
Risk Assessment and Mitigation:
- Oversee regular technology risk assessments, identifying emerging threats and vulnerabilities.
- Design and implement effective risk mitigation strategies, including incident response, disaster recovery, and business continuity planning.
- Ensure continuous improvement in the organization's risk posture by proactively addressing identified risks and following industry best practices.
Regulatory Compliance:
- Ensure compliance with MAS TRM Guidelines, Cyber Hygiene Notices, and other relevant regulations and standards.
- Liaise with regulators and auditors during inspections and reviews, providing necessary documentation and ensuring timely resolution of findings.
- Stay abreast of evolving regulatory requirements and technology risk trends, implementing necessary changes to maintain compliance.
Technology Risk Programs:
- Lead the execution of key risk programs, including IT governance, cybersecurity, third-party risk management, data privacy, and cloud security.
- Partner with internal and external stakeholders to ensure risks related to outsourcing, vendor management, and digital transformation initiatives are adequately managed.
Stakeholder Engagement:
- Collaborate with IT, Operations, Compliance, and Business units to embed a culture of technology risk awareness.
- Engage with third-party vendors, regulators, and industry peers to ensure alignment with best practices and leverage external insights.
Leadership and Team Development:
- Lead and develop a team of technology risk professionals, fostering a culture of continuous learning and excellence.
- Provide mentorship and guidance, ensuring the team is equipped with the necessary skills and knowledge to effectively manage technology risks.
Key Requirements:
- Bachelor's degree in Information Technology, Risk Management, or a related field.
- At least 10 years of experience in technology risk management, information security, or IT governance within the financial services industry.
- Strong knowledge of MAS regulations, including MAS TRM Guidelines and Cyber Hygiene requirements.
- Experience in managing risk for complex technology environments, including cloud, cybersecurity, and third-party risks.
- Proven leadership experience with the ability to engage and influence senior stakeholders.
- Professional certifications such as CISA, CRISC, CISSP, or equivalent are strongly preferred.
To apply:
If you're interested to apply or find out more, please share across your CV or reach out to Chen Yi at [email protected] for a discussion. Due to anticipated high volume of applications, we regret to inform that only shortlisted candidates will be notified.
Reg: R1876389
Lic: 16S8060