
VP Specialist Technology Risk Reporting, Governance and Frameworks
- Singapore
- Permanent
- Full-time
The incumbent is responsible for delivering effective governance forums on technology risks including tracking and reporting.Responsibilities
- Analyse and identify emerging trends, hotspots, systemic issues and potential technology risks and controls issues.
- Analyse trends, anomalies and behaviours and work with technology stakeholders to design and implement technical IT risk measure that are relevant to the Lines of Business.
- Use data driven approach and possess extensive experience with reporting tools and relevant programming languages to improve efficiency.
- Responsible for supporting and delivering effective risk governance committees on technology risks including tracking and reporting.
- Perform thematic second line assurance reviews, including short and targeted focused reviews for areas of topical and key concern.
- Ability to work independently, prepare and write comprehensive reports for senior management on technology risk management activities and risk events for presentation to risk committees.
- Ability to communicate complex technology risk concepts in a clear and concise manner.
- University degree or equivalent, with major study in finance, accountancy, business and/or technology
- At least 8 years of working experience in banks or financial institutions, with good understanding of operational risk, banking products and processes
- Aptitude and experience in risk and control related roles in first or second lines of defence and familiar with reporting tools
- Strong communication and facilitation skills; able to work with and influence stakeholders at all levels
- Strong analytical and problem-solving capabilities with affinity to using data to solve problems
- An analytical thinker with good risk sense and affinity to using data to solve problems
- Positive attitude to change, constantly looking for better ways to get things done and to challenge status quo
- Self-driven and able to balance creative and pragmatic approaches
- Professional memberships and security certifications would be considered favourably (e.g., CISA, CISSP, CISM, CCSP, etc.):
- Professional security or risk management certifications.
- Certified Information Systems Auditor (CISA)
- Certified Risk & Information Systems Control (CRISC).
- Certified Cloud Security Professional (CCSP).
- Certifications related to SRE such as SRE Practitioner.
- Support the Head of Unit in discharging the responsibilities of the team.
- Contribute as a member of Team with ability to independently review and challenge Line1 and work with Line1.5 to enhance risk and controls.
- Develop relationships with colleagues in the technology organisation.