Lead, TPRM Risk and Compliance

7 hours ago


Malaysia Michael Page Full time

About Our Client

Global Technology Center as a start-up with the backing of the world's top luxury beauty company.

Job Description

  1. Partner with TPRM program key stakeholders to ensure the appropriate due diligence is conducted based on global and regional compliance requirements.
  2. Ability to understand details of vendor's cybersecurity program and identify where gaps exist with internal company policy requirements.
  3. Cybersecurity technical expertise to review vendor attestations (e.g., SOC1/SOC2, Vulnerability Scan, Penetration Testing, PCI DSS, ISO 27001, etc.) and identify potential gaps or control weaknesses.
  4. Familiarity with China Privacy Laws and Cybersecurity regulations such as Personal Information Protection Law (PIPL), Data Security Law (DSL), Multi-Level Protection Scheme (MLPS) 2.0, and Cybersecurity Law of China (CSL).
  5. Familiarity with Frameworks such as NIST CSF, OWASP10, ISO, ITIL and CMMI.
  6. Familiarity with SaaS and COTS based applications and the unique risks associated with each use case.
  7. Aware of emerging cybersecurity threats including zero-day vulnerabilities, supply chain, and IoT related risks.
  8. Ability to clearly articulate the potential implications of cybersecurity risks to less technical users.
  9. Update IT policies, standards, and Standard Operating Procedures.
  10. Ability to triage use cases and prioritize due diligence activities based on the vendor's inherent risk profile.
  11. Ability to effectively communicate (verbal and written) technical subject matter clearly and succinctly in both Chinese and English.
  12. Produce risk assessment reports and effectively communicate and collaborate with vendors to implement remediation responses.
  13. Effectively collaborate with cross-functional, interdisciplinary teams, such as Procurement, Supply Chain, R&D, Legal and Privacy to conceptualize and require contract security provisions for remediation of risk identified in vendor assessments specific use cases and third-party engagements.
  14. Experience with industry-recognized Cybersecurity and Governance, Risk and Compliance (GRC) systems and applications such as Process Unity, CyberGRX, BitSight and Recorded Future along with familiarity with Shared Assessment methodology.
  15. Able to develop effective, collaborative relationships with all levels of internal and external stakeholders.

The Successful Applicant

  1. Embraces and Initiates Change: Distinguishes what to preserve and what to change. Has the courage to initiate and lead the changes that drive success.
  2. Builds Collaborative Relationships: Builds relationships based on trust and respect. Promotes the inclusion of diverse knowledge, skills, and experiences to achieve results.
  3. Demonstrates Learning Agility: Ability to anticipate change, face reality, draw conclusions, and swiftly mobilize to adapt to changing needs and demands.
  4. Strives for Excellence in Execution: Proactively seeks ways to improve personal and organizational effectiveness to meet current and future business needs. Learns equally from successes and failures.

What's on Offer

  • Hybrid working environment
#J-18808-Ljbffr

  • Malaysia KLDX Full time

    Job Title: Risk and Compliance Executive About KLDX: KLDX is a leading innovator in the financial technology sector, specializing in real-world asset tokenisation. Our mission is to revolutionize the financial landscape in Malaysia by unlocking access to private market assets and providing liquidity in an illiquid asset class through cutting-edge technology...


  • Malaysia KLDX Full time

    Job Title: Risk and Compliance ExecutiveAbout KLDX:KLDX is a leading innovator in the financial technology sector, specializing in real-world asset tokenisation. Our mission is to revolutionize the financial landscape in Malaysia by unlocking access to private market assets and providing liquidity in an illiquid asset class through cutting-edge technology...


  • Malaysia KLDX Full time

    Job Role: Experienced Individual About KLDX: KLDX is a leading innovator in the financial technology sector, specializing in real-world asset tokenisation. We are committed to revolutionizing the financial landscape in Malaysia by unlocking access to private market assets and providing liquidity in an illiquid asset class through cutting-edge technology...

  • Manager, Risk

    3 months ago


    Malaysia FFM Berhad Full time

    You will play an important role in: - Implement and maintain Enterprise Risk Management (ERM) and Business Continuous Management (BCM) framework in GSC group. Ensure compliance to the relevant regulatory requirements (e.g. Personal Data Protections Act, Malaysia Anti-Corruption Act, Immigration Act & etc.) by all divisions/departments - Ensure compliance to...

  • IT Audit Manager

    4 weeks ago


    Malaysia Michael Page Full time

    Bring your 5+ years of IT audit experience to this Global MNC - hybrid role About Our Client This opportunity is with a dynamic and fast-paced shared services team within a globally recognised organisation. This team is integral to supporting various business functions across the company, ensuring efficiency, consistency, and excellence in service...


  • Malaysia Lazada Full time

    Location: **Malaysia** - Department: Security & Risk Management- Location: Malaysia- Team and Role Introduction: - We are seeking an experienced Cybersecurity Risk Management Lead to spearhead the development, implementation, and ongoing management of our organization's cybersecurity policies and risk management practices. This individual will play a...


  • Malaysia Endowus Full time

    Risk & Compliance | Malaysia **About us**: Endowus is Asia’s leading fee-only digital wealth platform. Licensed by the Monetary Authority of Singapore (MAS) and Hong Kong Securities & Futures Commission (SFC), Endowus is the first digital advisor in the region to span both private wealth (Cash) and public pension savings (CPF & SRS in Singapore), helping...


  • Malaysia CIMB Group Full time

    **Key Responsibilities** **Drive Strong Operational Risk Management Practices** - Proactively manage the risk in the Division/Department to reduce the likelihood or impact of negative events. - Responsible to report and promptly escalate, where necessary, risks to the Head of Division/Department in a timely manner so that the Head of Division/Department has...

  • Compliance Officer, Gc

    5 months ago


    Malaysia CIMB Group Full time

    To assist the Group Chief Compliance Officer and Head, Compliance Monitoring to promote, lead and manage the culture and practice of regulatory compliance and ethical standards in the conduct of business support functions throughout CIMB Group and to oversee the Group’s compliance with those requirements and applicable standards. - Drive the implementation...

  • Director, Risk

    3 months ago


    Malaysia CIMB Group Full time

    Leadership in providing independent insights, analysis and reporting of technology risk themes to Senior Management and the Board. - Lead & Manage the ongoing development and execution of Independent Assurance and Validation of compliance to applicable Regulatory Technology Risk Management policies and approved Group Technology Risk Management framework...


  • Malaysia Pinpoint Asia Full time

    Security Compliance Engineer - Leading Fintech Firm Our client is a market leader in the Fintech domain with expertise in developing innovative, market-revolutionising Fintech products to make finance accessible for everyone. They're seeking multiple Security Compliance Engineers to join their team. Responsibilities: Formulate, oversee, and revise our...

  • Compliance Manager

    3 weeks ago


    Malaysia TIME's group Full time

    Compliance & Risk Manager (Banking & Financial Services) As a key member of our team, you will be responsible for ensuring the compliance and regulatory needs of our fund management operations in Asia are met. This will involve establishing and managing compliance programs, providing advice on applicable laws and regulations, and coordinating with external...


  • Malaysia APAC Michael Page Full time

    This role is the primary owner of the end-to-end Order to Cash Compliance function of APAC with the overall goal of delivering order to cash services while ensuring quality and cost effectiveness.Client DetailsOur client is one of the leading global companies in the industry.DescriptionMain Responsibilities:Be the primary contact and subject matter expert of...


  • Malaysia Pinpoint Asia Full time

    Security Compliance Engineer - Leading Fintech Firm Our client is a market leader in the Fintech domain with expertise in developing innovative, market-revolutionising Fintech products to make finance accessible for everyone. They're seeking multiple Security Compliance Engineers to join their team. Responsibilities: Formulate, oversee, and revise our...


  • Malaysia Sime Darby group Full time

    Manager/Assistant Manager, Business Continuity, Integration, Risk and Compliance (BCIRC) page is loaded Manager/Assistant Manager, Business Continuity, Integration, Risk and Compliance (BCIRC) Apply locations Malaysia | Selangor | SDM Ara Damansara (Headquarters) (B207) time type Full time posted on Posted Yesterday job requisition id JR109228 Company : ...


  • Malaysia ACCA Careers Full time

    Descriptions KPMG, a place where bold, new ideas are welcome and dedication is rewarded, is made up of outstanding people with a broad range of interests, talents, and motivations. We invite you to join our team in Penang and to experience the KPMG difference as we continue to be The Clear Choice to our clients from every sector of business and industry...


  • Malaysia ACCA Careers Full time

    Descriptions KPMG, a place where bold, new ideas are welcome and dedication is rewarded, is made up of outstanding people with a broad range of interests, talents, and motivations. We invite you to join our team in Penang and to experience the KPMG difference as we continue to be The Clear Choice to our clients from every sector of business and industry...

  • Lead Specialist

    1 month ago


    Malaysia AIA Hong Kong and Macau Full time

    Lead Specialist - Change Management (Finance) Apply Locations: Cyberjaya, MY - AIA Shared Services Malaysia Time Type: Full Time Posted On: Posted 9 Days Ago Job Requisition ID: JR-48677 At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone. It's about finding new ways to not only better people's lives,...


  • Malaysia CIMB Group Full time

    **Key Responsibilities **Drive Strong Operational Risk Management Practices** - Proactively manage the risk in the Division/Department to reduce the likelihood or impact of negative events. - Responsible to report and promptly escalate, where necessary, risks to the Head of Division/Department in a timely manner so that the Head of Division/Department has a...


  • Malaysia Businesslist Full time

    Executive recruitment company Monroe Consulting Group Malaysia is recruiting on behalf of a leading provider of medical devices and life science equipment across Asia. Our distinguished client is looking for an ambitious and experienced professional to join the team as a Regional Compliance Officer to oversee the overall compliance of operations across...