Associate Director, OTCR, WRB
1 week ago
Area of interest: Governance, Risk Management & Compliance
Regular Employee
Office - Full Time
17 Mar 2025
Job SummaryThe Operational, Technology and Cyber Risk ("OTCR") organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems by managing operational, technology and cyber risks across the enterprise. As a critical function reporting into the Group Chief Risk Officer ("CRO"), the Group OTCR team serves as the second line of defence for assuring that controls are implemented effectively, in accordance with the OTCR Framework, and for instilling a risk culture within the Bank.
The Associate Director, OTCR, WRB is an important role that requires solid business acumen, a deep knowledge of cyber security technologies and understanding of working in a second line capacity within a risk management organisation. The role reports directly to the Head, OTCR, WRB.
The purpose of this role is to act as the single point of contact ("SPOC") within the second line for Wealth and Retail Business ("WRB"), in respect of all OTCR matters and decisions, for Information and Cyber Security ("ICS"), providing judgement-based input and advice to ensure effective risk management and be a trusted partner collaborating as appropriate with senior stakeholders including Subject Matter Experts ("SMEs") and other risk teams to ensure that risk management practices are integrated into all aspects of WRB.
The individual is expected to be familiar with ICS tools / practices, enabling the WRB first line leads to make the right decisions. The individual will be skilled in business risk management, stakeholder management, and communication, with an ability to contribute to a vision for others to follow.
The successful candidate will add value by helping to deliver customer centric solutions, providing clear direction on effective risk management, taking on tough challenges, addressing difficult issues and responding in a flexible, courageous and collaborative manner to evolving business, regulatory and threat demands.
Key ResponsibilitiesStrategy
Awareness and understanding of the Group's business strategy and model appropriate to the role.
Business
Awareness and understanding of the wider business, economic and market environment in which the Group operates.
- Risk indicators, metrics, and thresholds
- Completeness and accuracy of risk identification and assessment
- Regular review of residual risks and concentration of risks
- Impact to risks / regulations which the bank faces (e.g., through internal / external change or events)
- Reporting and escalation of business restrictions where the risks not aligned with Risk Appetite
- Timely and effective completion of actions and treatment plans
- Business adherence to framework, policies, standards, and regulations
- Appropriate application of decision authorities and delegation rights
- Business initiatives and decisions to ensure effective adherence of risk, policy, regulations, etc.
- Outputs of business risk identification and assessment activities for completeness and accuracy
- Design and implementation of treatment plans / actions to mitigate risk or improve risk management.
- Risk Appetite Setting: 1LOD proposals on Risk appetite and where Risk Appetite is near breach.
- Proactive challenge on strategy, process, product, channel, change activities e.g., new deals / transactions.
- Design and operating effectiveness of controls in place to mitigate material risks.
Approve
- Risk Assessment decisions for changes arising from products / process and projects etc. E.g. Inherent and Residual Risk assessments; Control design; Control Monitors;
- Treatment plans and actions design to mitigate risks, remediate appetite breaches, improve risk management. e.g. RCR, Treatment Plans, (subject to scope defined in Appendix D of the Group Operational Risk Standard); Validation of treatment plan actions;
- Other approvals explicitly required by frameworks, policies, and standards
Governance
- Providing ongoing reporting of risk exposure into governance meetings and to key stakeholders and escalating any blockages to progress to ensure Group MT, Risk & CFCC, and OTCR Scorecard objectives are met.
- Hands-on experience in implementing, configuring, and managing Information Technologies, and Information and Cyber Security ("ICS") controls.
- Strong understanding of the ICS threat landscape and ICS controls within the financial services environment.
- Clear understanding of how security technologies such as anti-malware, encryption, identity and access management, network security, etc work in mitigating ICS risks.
- Strong understanding of the defence-in-depth strategy.
- Knowledge of the MITRE ATT&CK Framework and Cyber Kill Chain.
- Excellent analytical and problem-solving skills, with the ability to prioritize and manage multiple tasks in a fast-paced environment.
- Ability to foster positive relationships with internal and external stakeholders at appropriate level ensuring open cooperative environment; be a team player.
- Strong communication and interpersonal skills, with the ability to effectively communicate complex information and cyber security concepts to non-technical stakeholders.
- Bachelor's degree in Computer Science, Information Security or related field.
- Minimum 5 years' experience in Information Technology, Information Security, or Information Security Audit.
- Certification in ICS or ICS Risk Management (e.g. CISSP, CISA, CRISC, OSCP, CCSP, CEH) an added advantage.
- Membership to ICS or ICS Risk Management professional organizations (e.g. ISACA, ISC2) an added advantage.
Role Specific Technical Competencies
- Information security technologies
- Information and Cyber Security risk management
- Business partnering
- Cyber resilience
We're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.
Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.
Together we:
- Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
- Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
- Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.
- Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
- Time-off including annual leave, parental/maternity (20 weeks), sabbatical (12 months maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum.
- Flexible working options based around home and office locations, with flexible working patterns.
- Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits.
- A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
- Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.
-
Associate Director, OTCR, WRB
3 weeks ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full timeAssociate Director, OTCR, WRB (Malaysia / India)The Operational, Technology and Cyber Risk ("OTCR") organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems by managing operational, technology and cyber risks across the enterprise. As a critical function reporting into the Group...
-
Head, OTCR, WRB
3 weeks ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full timeThe Operational, Technology and Cyber Risk (OTCR) organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems by managing operational, technology and cyber risk across the enterprise. As a critical function reporting into the Group Chief Risk Officer (CRO), the Group OTCR team serves as...
-
Associate Director, OTCR, WRB
3 weeks ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Life and Careers Full timePress Tab to Move to Skip to Content LinkAssociate Director, OTCR, WRB (Malaysia / India)Area of interest: Governance, Risk Management & ComplianceThe Operational, Technology and Cyber Risk ("OTCR") organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems by managing operational,...
-
Associate Director, OTCR, WRB
5 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Life and Careers Full timeAssociate Director, OTCR, WRB (Malaysia / India)Area of interest: Governance, Risk Management & ComplianceThe Operational, Technology and Cyber Risk ("OTCR") organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems by managing operational, technology and cyber risks across the...
-
Associate Director, OTCR, WRB
2 weeks ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Full timeJob SummaryThe Operational, Technology and Cyber Risk ("OTCR") organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems by managing operational, technology and cyber risks across the enterprise. As a critical function reporting into the Group Chief Risk Officer ("CRO"), the Group...
-
Head, OTCR, WRB
3 weeks ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Full timeJob SummaryThe Operational, Technology and Cyber Risk (OTCR) organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems by managing operational, technology and cyber risk across the enterprise. As a critical function reporting into the Group Chief Risk Officer (CRO), the Group OTCR...
-
Head, OTCR, WRB
7 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Full timePress Tab to Move to Skip to Content LinkArea of interest: Governance, Risk Management & ComplianceThe Operational, Technology and Cyber Risk (OTCR) organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems by managing operational, technology and cyber risk across the enterprise. As a...
-
Associate Director, Information Security
5 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Life and Careers Full timeAbout the TeamWe're a diverse and dynamic team at Standard Chartered Life and Careers, and we're excited to welcome a new member to join us as the Associate Director, OTCR, WRB. This role requires someone who can work collaboratively with senior stakeholders to ensure effective risk management and operational resilience.The successful candidate will have...
-
Associate Director of Information Security
6 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Life and Careers Full timeAbout the RoleWe're seeking an experienced Associate Director to join our Operational, Technology and Cyber Risk (OTCR) organisation. As a key member of the Group OTCR team, you'll be responsible for providing judgement-based input and advice on risk management practices to ensure effective integration into all aspects of Wealth and Retail Business (WRB).The...
-
Director of Operational Excellence
3 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full timeAbout Us:Standard Chartered Bank is a global banking group with a history dating back to 1853. We operate in some of the world's most dynamic markets, offering a range of financial services to individuals, corporates, institutions and governments.The Role:This is an exciting opportunity to join our OTCR team as an Associate Director, reporting directly to...
-
Director of Risk Management
5 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Life and Careers Full timeAbout the RoleThe Associate Director, OTCR, WRB is a key position that plays a critical role in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems. As a critical function reporting into the Group Chief Risk Officer, this team serves as the second line of defence for assuring that controls are implemented...
-
Cyber Risk Director
3 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full timeCompany Overview:Standard Chartered Bank is a leading international bank with operations in over 70 countries. Our Operational, Technology and Cyber Risk (OTCR) organization plays a critical role in protecting and ensuring the resilience of our operations, data, and IT systems.Job Summary:We are seeking an experienced Associate Director to join our OTCR team...
-
Cyber Security Strategist
3 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Full timeAbout the RoleWe are seeking an experienced Cyber Security Strategist to join our team as Associate Director, OTCR, WRB. This role will be instrumental in protecting and ensuring the resilience of our operations, data, and IT systems by managing operational, technology, and cyber risks across the enterprise.
-
Senior Manager, Risk and Compliance
3 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full timeOur Team:We are a diverse and inclusive team, passionate about delivering high-quality services to our clients. We are looking for someone who shares our values and is committed to excellence.The Role:This is an exciting opportunity to join our OTCR team as an Associate Director, reporting directly to the Head of OTCR, WRB. As a key member of the team, you...
-
Risk and Assurance Leader
3 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full timeWhy Join Us:At Standard Chartered Bank, we offer a unique and rewarding career experience. Our people are our greatest asset, and we are committed to helping them grow and develop their skills.The Role:This is an exciting opportunity to join our OTCR team as an Associate Director, reporting directly to the Head of OTCR, WRB. As a key member of the team, you...
-
Chief Risk Officer Leader
5 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full timeJob DescriptionThe Operational, Technology and Cyber Risk (OTCR) organisation plays a critical role in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems. As a vital function reporting into the Group Chief Risk Officer (CRO), the Group OTCR team serves as the second line of defence for assuring that controls...
-
Risk Management Director
5 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full timeAbout the PositionThis role will be responsible for managing operational, technology, and cyber risk across the enterprise. The Head, OTCR, WRB will be responsible for providing judgement-based input and advice to ensure effective risk management.Key Responsibilities:Act as the single point of contact for all OTCR matters and decisions for the assigned...
-
Head of Cyber Risk Management
6 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Life and Careers Full timeRole OverviewThe Associate Director, OTCR, WRB plays a pivotal role in driving the bank's operational, technology, and cyber risk management strategy. This position requires a deep understanding of governance, risk management, and compliance principles, as well as excellent analytical and problem-solving skills.The ideal candidate will have hands-on...
-
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full timeAbout the RoleWe are seeking an experienced leader who will be responsible for managing operational, technology, and cyber risk across the enterprise. As a critical function reporting into the Group Chief Risk Officer (CRO), the Group OTCR team serves as the second line of defence for assuring that controls are implemented effectively.This role requires...
-
Vice President, OTCR, TPRM and TPSR(Malaysia
2 weeks ago
Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Full timeVice President, OTCR, TPRM and TPSR (Malaysia / India)Area of interest: Governance, Risk Management & ComplianceThis role could be based in India and Malaysia. Please ensure that you select a country where the role is based during the application process.The Group Operational, Technology and Cybersecurity Risk (OTCR) organisation is instrumental in...