About the role
AI summarisedThe AVP, Information Security & Digital Risk Management Specialist at a bank's Group Risk Management division is responsible for overseeing information security and digital risk management frameworks, ensuring compliance with regulatory standards, and advising on risk mitigation strategies.
BusinessFull-timeGeneral
Key Responsibilities
- Develop and maintain information security and digital risk management policies and standards.
- Conduct risk assessments and gap analyses to identify vulnerabilities and recommend controls.
- Monitor and report on key risk indicators and emerging threats.
- Advise business units on security and risk management best practices.
- Coordinate with internal and external auditors on security-related audits.
- Ensure compliance with regulatory requirements such as MAS, GDPR, and SOX.
- Manage incident response and recovery plans for cybersecurity events.
- Provide training and awareness programs on information security.
Requirements
- Bachelor's degree in Information Security, Computer Science, Risk Management, or related field.
- Minimum 8 years of experience in information security or digital risk management.
- Strong knowledge of regulatory frameworks (MAS, GDPR, SOX, Basel).
- Experience in risk assessment methodologies and tools.
- Excellent analytical and problem-solving skills.
- Strong communication and stakeholder management abilities.
- Professional certifications such as CISSP, CISM, or CRISC preferred.
- Ability to work independently and as part of a team.
- Proven track record in managing security incidents and remediation.