The posting
Roles & Responsibilities:
Technology Risk Management
- Support risk reviews, risk assessments, and control effectiveness reviews across technology platforms.
- Perform analysis of technology risks, emerging risks, and control gaps.
- Track remediation actions arising from incidents, audits, assessments, and regulatory reviews.
- Support RCSA activities and maintenance of risk registers.
- Assist in KRI monitoring, trend analysis, and preparation of management reporting.
- Conduct thematic reviews and root cause analysis of control deficiencies.
- Prepare risk dashboards, metrics, and executive reports.
- Support review of technology changes and associated risk controls.
- Perform analysis of change failures, unauthorised changes, and change-related incidents.
- Track change governance metrics and trend reporting.
- Assist in improvement initiatives relating to change and release management processes.
- Support cybersecurity governance activities and tracking of security risk remediation actions.
Education:
- Bachelor's Degree in Computer Science, Information Technology, Engineering, Information Systems, Cybersecurity, Risk Management, or equivalent.
- Professional certification in technology risk domains or equivalent
Mandatory :
- Minimum 3 years of experience in one or more of the following areas:
- Technology Risk Management
- IT Governance
- IT Controls
- Cybersecurity Governance
- Technology Compliance
- IT Audit
- Operational Risk
- Service Resilience
- Technology Project Governance
Preferred :
Experience in any of the following:
- Risk assessments and control testing
- Audit management
- RCSA execution
- KRI/KCI reporting
- Incident and problem management
- Regulatory compliance reviews
- Cloud governance and security controls
- Third-party risk management
- Technology project risk oversight
Experience within banking, financial services, fintech, regulated industries, or large-scale technology environments will be advantageous.
Technical Competencies :
Good understanding of:
- Technology risk management lifecycle
- Governance, Risk & Compliance (GRC) practices
- ITIL processes
- Cybersecurity principles
- Operational resilience concepts
- Regulatory and industry standards such as:
- MAS TRM Guidelines
- MAS Notice 644
- MAS Notice 655
- ISO 27001
- NIST
- COBIT
Knowledge of data analysis tools such as Excel, Power BI, SQL, Python, or AI-enabled analytics tools will be advantageous. This role is for one of our project requirements



