Epicareer Might not Working Properly
Learn More

Cyber Security Governance Risk & Compliance

Salary undisclosed

Checking job availability...

Original
Simplified

Responsibilities:

  • Develop, manage, and implement the Cyber Risk Security Framework, Policies and Procedures to comply with regulatory, group and Bank requirements.
  • Develop and implement Cyber Security Risk awareness and training programs, examples: Phishing Simulation, e-learning, regular dan ad hoc awareness (both periodically and ad hoc) as well as make necessary adjustments to the Cyber Security Risk awareness and training program materials in accordance with the needs of the Bank and developments in cyber threats and risks.
  • Conduct Cyber Security Risk and Technology Risk Assessment and Analysis to the: new initiatives, development of products/services, policies, procedures and technical guidance related to the Cyber Security and IT, as well as various matters related to the Cyber Security Risk and Technology Risk.
  • Manage and oversee the Third Party Risk Management process related to Cyber Security Risk through the implementation of the Third Party Due Diligence process, Periodic Reviews, Reviews of the adequacy of Cooperation Contract templates, cyber security/information security clauses etc.
  • Coordinate and manage the implementation of Compliance reviews of the implementation of Cyber security Standards through Cyber security Risk maturity assessments, in addition to fulfilling regulatory and group requirements.
  • Coordinate and follow up the implementation of periodic reviews related to Cybersecurity Risk and also management of Technology Risks such as RGM, PRC, KCSA, RE, RA reviews etc.
  • Prepare and deliver Cyber Security Risk Report to the management and relevant stakeholders in regular and ad hoc basis when needed.

Requirements:

  • Minimum Bachelor’s degree in Information technology, Computer Science and/or Computer Engineering field.
  • A minimum of 5 years hands-on banking experience
  • Experiences in preparing Cyber security or Information Security Frameworks, Policies and/or Procedures, as well as its socialization and implementation.
  • Have strong knowledges in Cyber Security Management, Information Security Governance and Technology Risk Management, especially in the banking or financial industry.
  • Understanding in the regulation and best practice related to the Cyber Security, Information Security and Technology Risk Management implementation such as ISO 27001, NIST, Data Privacy etc. would be advantages.
  • Strong analytical thinking and decision making, with good communication skills for both oral and written.
  • Able to work under close supervision and in a team as well as ability to take independent initiatives when needed.

Responsibilities:

  • Develop, manage, and implement the Cyber Risk Security Framework, Policies and Procedures to comply with regulatory, group and Bank requirements.
  • Develop and implement Cyber Security Risk awareness and training programs, examples: Phishing Simulation, e-learning, regular dan ad hoc awareness (both periodically and ad hoc) as well as make necessary adjustments to the Cyber Security Risk awareness and training program materials in accordance with the needs of the Bank and developments in cyber threats and risks.
  • Conduct Cyber Security Risk and Technology Risk Assessment and Analysis to the: new initiatives, development of products/services, policies, procedures and technical guidance related to the Cyber Security and IT, as well as various matters related to the Cyber Security Risk and Technology Risk.
  • Manage and oversee the Third Party Risk Management process related to Cyber Security Risk through the implementation of the Third Party Due Diligence process, Periodic Reviews, Reviews of the adequacy of Cooperation Contract templates, cyber security/information security clauses etc.
  • Coordinate and manage the implementation of Compliance reviews of the implementation of Cyber security Standards through Cyber security Risk maturity assessments, in addition to fulfilling regulatory and group requirements.
  • Coordinate and follow up the implementation of periodic reviews related to Cybersecurity Risk and also management of Technology Risks such as RGM, PRC, KCSA, RE, RA reviews etc.
  • Prepare and deliver Cyber Security Risk Report to the management and relevant stakeholders in regular and ad hoc basis when needed.

Requirements:

  • Minimum Bachelor’s degree in Information technology, Computer Science and/or Computer Engineering field.
  • A minimum of 5 years hands-on banking experience
  • Experiences in preparing Cyber security or Information Security Frameworks, Policies and/or Procedures, as well as its socialization and implementation.
  • Have strong knowledges in Cyber Security Management, Information Security Governance and Technology Risk Management, especially in the banking or financial industry.
  • Understanding in the regulation and best practice related to the Cyber Security, Information Security and Technology Risk Management implementation such as ISO 27001, NIST, Data Privacy etc. would be advantages.
  • Strong analytical thinking and decision making, with good communication skills for both oral and written.
  • Able to work under close supervision and in a team as well as ability to take independent initiatives when needed.