OCBC

AVP, Information Security & Digital Risk Management Specialist, Group Risk Management

OCBC
BusinessOCBC SingaporeFull-time1 weeks ago

About the role

AI summarised

The AVP, Information Security & Digital Risk Management Specialist at a bank's Group Risk Management division is responsible for overseeing information security and digital risk management frameworks, ensuring compliance with regulatory standards, and advising on risk mitigation strategies.

BusinessFull-timeGeneral

Key Responsibilities

  • Develop and maintain information security and digital risk management policies and standards.
  • Conduct risk assessments and gap analyses to identify vulnerabilities and recommend controls.
  • Monitor and report on key risk indicators and emerging threats.
  • Advise business units on security and risk management best practices.
  • Coordinate with internal and external auditors on security-related audits.
  • Ensure compliance with regulatory requirements such as MAS, GDPR, and SOX.
  • Manage incident response and recovery plans for cybersecurity events.
  • Provide training and awareness programs on information security.

Requirements

  • Bachelor's degree in Information Security, Computer Science, Risk Management, or related field.
  • Minimum 8 years of experience in information security or digital risk management.
  • Strong knowledge of regulatory frameworks (MAS, GDPR, SOX, Basel).
  • Experience in risk assessment methodologies and tools.
  • Excellent analytical and problem-solving skills.
  • Strong communication and stakeholder management abilities.
  • Professional certifications such as CISSP, CISM, or CRISC preferred.
  • Ability to work independently and as part of a team.
  • Proven track record in managing security incidents and remediation.