Head, Operational Risk - Technology Risk Management TH
Thailand
CIMB
CIMB Group is the leading ASEAN Universal Bank and home for all your personal and business financial needs. Know more about our group here.Responsibilities:
- Provide leadership for the implementation of and compliance with the ORM framework and IT Risk Management Policy & Procedure to effectively manage technology related risks, enhance technology resiliency and mitigate risks against technology security threats across CIMBT.
- Champion, socialize and embed the progressive development, definition and role of enterprise-wide Technology Risk to mature the IT Assurance capabilities.
- Ensure information assets and technologies are adequately protected.
- Provide strategic insight and assurance on technology risk and security matters as well as security risk profile to Head of ORM, Executive and/or Senior Management in alignment with the Group the bank’s strategic and operating priorities.
- Communicate to Head of ORM, Executive and/or Senior Management on assurance and control oversight related to IT risks.
- Identify, analyze and assess cybersecurity risks.
- Define a framework that will provide clear ownership and accountability of IT Services to strengthen the IT Risk management capabilities.
- Build strong relationship with BOT and Business Units.
- Continuous improvement of IT risk management capability in alignment with emerging events, industry/market trends and regulatory directives.
- Work closely with Business Unit Risk Control Officer (RCO )and/or DCORO to ensure IT risks and events identified as part of existing ORM Framework.
- Actively participate in selection of Services/Systems/Tools used for IT Security Risk Management.
- Lead and promote an enterprise culture of IT risk awareness and training.
Qualifications:
- Bachelor's Degree or Professional Qualification in the relevant discipline such as Banking, Finance or Technology.
- Preference for professional or post graduate qualifications e.g .CISA, CISM, CRISC, CGEIT, CISSP, MBA.
- Minimum 7-10 years work experience with relevant second or third line experience preferred.
- Have experience in team management role.
- An understanding of general risk management, risk drivers and ability to articulate risk to non-risk personnel.
- In depth knowledge of technology framework, risks and controls.
- Practical knowledge of cyber security risks and practices.
- Strong interpersonal skill.
- Excellent oral and written communication skills in English
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Category:
Compliance Jobs
Tags: Banking CISA CISM CISSP Compliance CRISC Finance Risk management
Perks/benefits: Team events
Region:
Asia/Pacific
Country:
Thailand
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Senior Security Analyst jobsInformation System Security Officer jobsSenior Cloud Security Engineer jobsInformation Security Manager jobsInformation Security Specialist jobsSenior Cybersecurity Engineer jobsSenior Network Security Engineer jobsSecurity Consultant jobsIT Security Engineer jobsCyber Security Specialist jobsSenior Penetration Tester jobsSecurity Specialist jobsSenior Information Security Analyst jobsSenior Cyber Security Engineer jobsChief Information Security Officer jobsSystems Engineer jobsSystems Administrator jobsInformation System Security Officer (ISSO) jobsSenior Product Security Engineer jobsCloud Security Architect jobsIT Security Analyst jobsPrincipal Security Engineer jobsStaff Security Engineer jobsSecurity Operations Analyst jobsCybersecurity Specialist jobs
DevSecOps jobsKubernetes jobsEncryption jobsPowerShell jobsIDS jobsSplunk jobsSaaS jobsEDR jobsSDLC jobsIPS jobsRMF jobsSQL jobsTop Secret jobsIntrusion detection jobsBash jobsCompTIA jobsThreat detection jobsITIL jobsFinance jobsOWASP jobsDoDD 8570 jobsCRISC jobsDocker jobsActive Directory jobsBanking jobs
UNIX jobsTCP/IP jobsVPN jobsGIAC jobsTerraform jobsSANS jobsClearance Required jobsIT infrastructure jobsHIPAA jobsSOX jobsSOC 2 jobsOSCP jobsCISO jobsIndustrial jobsJavaScript jobsCCSP jobsData Analytics jobsDNS jobsSOAR jobsPolygraph jobsJira jobsAnsible jobsMITRE ATT&CK jobsCyber defense jobsGCIH jobs