Technology & Cyber Security Risk Manager
Salary undisclosed
Checking job availability...
Original
Simplified
Key Responsibilities:
- Assisting GCISO on overseeing the planning, execution and management of technology project related to compliance, control assurance, risk management, security and IT assets protection.
- Identify and recommend to the Management on cyber security goals and objectives consistent with the Bank’s business need/objectives.
- Accountable and responsible for overall Bank’s management of cyber risk.
- Establishment of related cyber risk management framework/policy to meet internal and regulator’s requirement.
- Provide cyber risk advisory services and cyber security awareness trainings where required.
- Aware and take appropriate measures of current and emerging technology risks affecting the industry which could potentially affect the Bank’s risk profile.
- Perform an end-to-end risk assessment of the Bank in relation to cyber risk to enforce compliance with the Framework and Policy and other technology related regulatory requirements.
- Provide strategic insights on technology risk and security matters as well as the Bank’s technology security risk profile to Management/Board Committees to ensure the confidentiality, integrity, and availability of Bank’s information assets from cyber threats.
- Review the IT and cyber security strategic plans that must reflect the Bank’s risk appetite, business and cyber security strategy for a period of three to five years; and
- To provides sufficiently detailed information on key technology risk and critical technology operations to facilitate strategic decision-making. This includes reporting enterprise key risk indicators on the IT and cyber health posture.
Qualifications:
- A recognized degree in Computer Science or equivalent technical degree
- Be appropriately certified in CISM, CISA, CRISC, CISSP or any equivalent certification
- At least 5 years of experience in IT Risk Management, information technology and information security
- Considerable knowledge and experience of best practices in technology risk.
- High degree of personal commitment, interpersonal skills with clear strategic vision and proven communication, and supervisory skills.
- Competence in the use of standard Microsoft Office Suite applications.
- Experience in desktop management, cyber risk/security management policies
- In-depth knowledge with industry standard technologies, information and cyber risk/security management
- Process knowledge of regulatory supervision on technology