Epicareer Might not Working Properly
Learn More

Head of Technology Risk

Salary undisclosed

Apply on


Original
Simplified

The Head of Technology Risk will lead the technology risk management function for the firm, ensuring that the organization's technology-related risks are identified, assessed, and mitigated in line with regulatory requirements and industry best practices. This leader will collaborate closely with senior management, IT, and business units to implement a robust technology risk framework that supports the company's strategic objectives while safeguarding its technology infrastructure, data, and operations.

Key Responsibilities:

Technology Risk Strategy and Governance:

  • Develop and maintain the organization's technology risk management framework, policies, and procedures.
  • Lead the identification, assessment, monitoring, and reporting of technology risks across all business units.
  • Work closely with the C-suite and other key stakeholders to align technology risk strategy with overall business objectives.
  • Provide regular updates and reporting to the Board, Risk Committees, and senior management on the technology risk posture of the organization.

Risk Assessment and Mitigation:

  • Oversee regular technology risk assessments, identifying emerging threats and vulnerabilities.
  • Design and implement effective risk mitigation strategies, including incident response, disaster recovery, and business continuity planning.
  • Ensure continuous improvement in the organization's risk posture by proactively addressing identified risks and following industry best practices.

Regulatory Compliance:

  • Ensure compliance with MAS TRM Guidelines, Cyber Hygiene Notices, and other relevant regulations and standards.
  • Liaise with regulators and auditors during inspections and reviews, providing necessary documentation and ensuring timely resolution of findings.
  • Stay abreast of evolving regulatory requirements and technology risk trends, implementing necessary changes to maintain compliance.

Technology Risk Programs:

  • Lead the execution of key risk programs, including IT governance, cybersecurity, third-party risk management, data privacy, and cloud security.
  • Partner with internal and external stakeholders to ensure risks related to outsourcing, vendor management, and digital transformation initiatives are adequately managed.

Stakeholder Engagement:

  • Collaborate with IT, Operations, Compliance, and Business units to embed a culture of technology risk awareness.
  • Engage with third-party vendors, regulators, and industry peers to ensure alignment with best practices and leverage external insights.

Leadership and Team Development:

  • Lead and develop a team of technology risk professionals, fostering a culture of continuous learning and excellence.
  • Provide mentorship and guidance, ensuring the team is equipped with the necessary skills and knowledge to effectively manage technology risks.

Key Requirements:

  • Bachelor's degree in Information Technology, Risk Management, or a related field.
  • At least 10 years of experience in technology risk management, information security, or IT governance within the financial services industry.
  • Strong knowledge of MAS regulations, including MAS TRM Guidelines and Cyber Hygiene requirements.
  • Experience in managing risk for complex technology environments, including cloud, cybersecurity, and third-party risks.
  • Proven leadership experience with the ability to engage and influence senior stakeholders.
  • Professional certifications such as CISA, CRISC, CISSP, or equivalent are strongly preferred.

To apply:

If you're interested to apply or find out more, please share across your CV or reach out to Chen Yi at [email protected] for a discussion. Due to anticipated high volume of applications, we regret to inform that only shortlisted candidates will be notified.

Reg: R1876389

Lic: 16S8060