Director, IT Risk Management

7 hours ago


Kuala Lumpur, Malaysia Affin Bank Full time

Director, IT Risk Management

**Create your future with Affin You too can make a difference.**

Join us at AFFIN, where the open minds meet and be inspired by a shared commitment to great work. Here, you don't just stay at the forefront of the industry - you can make a difference too.

**Position Objective**
- Responsible for the preparation and review of technology risk report and Project performance reports within the risk parameters of technology risk management for Affin Group.
- Establish and maintain governance and oversight on the effectiveness of technology risk management reporting and project risk management for Affin Group. This function will be responsible for maintaining a strong technology risk management culture, formulating/reviewing the technology risk appetite, tolerances and threshold that aligns to the banking group's risk appetite, and for establishing/maintaining a program to identify, assess, measure, monitor, control and report on significant technology risks

**Key Responsibilities**
- Responsible to perform regular IT risk monitoring and reporting. Analyse and checker on reporting technology risk for the Banking Group.
- Review and maintain technology risk metrics, including management dashboard and reporting.
- Responsible to prepare and provide timely and accurate reporting on Technology Risk related matters to Management and Board delegated committees.
- Conduct independent assessment review to identify, assess and evaluate potential and emerging IT and Cyber threats as well as strategy to reduce, mitigate or transfer the IT and cyber risk, particularly on Project risk and Monthly Reporting.
- Conduct an independent assessment review to identify, assess and evaluate Project management issues and best practices.
- Perform risk analytics on the data collated from internal or external sources, forming leading and lagging risk indicators on identifying IT risks that yet to surface particularly on Project
- Provide advisory, guidance, and recommendation on aspects related to technology risks, particularly in the area of information security and controls, and ensure compliance with the internal IT policies & procedures, as well as regulatory guidelines.
- Responsible to drive and support the technology risk awareness and training program.
- Work closely with the business continuity management team and IT team in defining/updating the issue management, as well as crisis management and communication processes.
- Work with the Technology team to ensure relevant regulatory, banking industry and IT best practices are in place or incorporated into the existing policy, procedures, and standards. Monitor and report the compliance status of the policies, frameworks, and other technology-related regulatory requirement
- Provide assistance and support to the first-line of defense on the establishment of a Technology Risk awareness and training program.
- Keep abreast of the latest technology and the emerging Technology threat landscape.
- Support the Head of Technology Risk (CISO), GCRO, and Senior Management in overseeing the effective implementation of technology risk management at entities level.

**Skills/Knowledge**
- Degree in IT, IS or Computing, and/or other relevant domains;
- Minimum of 10 years of working experience in IT risk management, Cyber risk management, information security, or IT audit for the financial services industry.
- Professional certification such as CISA, CEH, CRISC, and CISSP is an added advantage.
- Possess good knowledge and experience with IT governance and control, information security, and information technology risk management.
- Solid experience in undertaking technical security assessments of IT solutions,
- Familiar with Bank Negara Malaysia regulatory requirements related to Technology Risk.
- Strong analytical, influencing, and problem-resolution skills
- Ability to engage regulators during inspection;
- Good written and communication skills, and ability to interact with senior management, as well as different stakeholders from different divisions and departments.
- Ability to work and collaborate with people across seniority and cultures.
- Ability to work independently with minimum supervision.

Job ID JR100075


  • Director – Risk

    5 hours ago


    Kaula Lampur, Wilayah Persekutuan Kuala Lumpur, , Malaysia SSS Grameen Services Full time 150,000 - 180,000 per year

    The Director – Risk & Business Process Optimisation will lead internal audit, riskmanagement, and process optimisation functions across the organisation. The roleinvolves overseeing audits, risk assessments, and process improvements, reportingdirectly to the Managing Director & General Manager/COO. The position requiresmanaging a team of auditors, driving...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Bank Full time 120,000 - 240,000 per year

    Requisition Number: 45128Job Location: Kuala Lumpur, MYSWork Type: Office WorkingEmployment Type: PermanentPosting Start Date: 02/12/2025Posting End Date: 26/12/2025:Job SummaryThe Operational, Technology and Cyber Risk (OTCR) organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's operations, data, and IT systems...


  • Kuala Lumpur, Malaysia Standard Chartered Full time

    Job ID: 28149 Location: Kuala Lumpur, MY Area of interest: Technology Job type: Regular Employee Work style: Office Working Opening date: 7 May 2025 **Job Summary** - This role is accountable for the design and execution of risk governance across the Technology and Operations (T&O) function.- The Director, Risk Governance, will lead the coordination of...


  • Kuala Lumpur, Malaysia Agensi Pekerjaan ASK Resources Sdn Bhd Full time

    Implementation of an overall effective operational risk management program, which includes incident management and data collection, key risk indicator and operational risk self-assessment. - Conduct internal operational risk review and assess the adequacy of internal risk control to manage operational risk. - Lead the team to mitigate operational risk...


  • Kuala Lumpur, Malaysia Ahmad Zaki Resources Berhad Full time

    Job Responsibilities: - Develop and implement of Risk Management Policy and Procedure to all subsidiary and department within AZRB Group - Continuous communicate, evaluate and improve the Risk Management Policy and Procedure - Execute and provide risk management services such as facilitation and other advisory services to ensure that all subsidiary and...


  • Kuala Lumpur, Malaysia Standard Chartered Full time

    **Job Summary** - The Operational, Technology and Cyber Risk (OTCR) organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank’s operations, data, and IT systems by managing operational, technology and cyber risk across the enterprise. As a critical function reporting into the Group Chief Risk Officer (CRO), the Group...


  • Kuala Lumpur, Malaysia LAND KING FOR IT FOR NETWORK SRVC Full time

    **Market Risk Manager or Risk Executive** We are looking for a technically strong market risk specialist with global exposure to strengthen our team. As a member of our dynamic Risk Management team, you’ll be responsible for building and maintaining an effective risk and control environment in a Forex and precious metal market. In order to effectively...


  • Kuala Lumpur, Malaysia TRanglo Full time

    Role: Improve the company’s risk management and business continuity framework, policies, and practices of Tranglo Group of Companies **Responsibilities** (a)Risk Management - Plan and coordinate risk assessments, reviews and action plans for every department - Identify key risks and create mitigation plans using tools like RCSA, RR, BIA, KRI and IMDC -...


  • Kuala Lumpur, Kuala Lumpur, Malaysia POWER IT SERVICES Full time 90,000 - 120,000 per year

    Microsoft Purview Insider Risk Management (IRM) – must have1) Monitor and help draft the policies and use cases to be onboarded and uploaded to Microsoft Purview Insider Risk Management (IRM) platform. Create policies with customisable templates on IRM platform.2) Explore features on enabling adaptive protection and data connectors to enhance the insights...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Bangkok Bank Berhad Full time 120,000 - 240,000 per year

    Job ResponsibilitiesOverviewThe Head of Credit Risk Unit role under the Risk Management Department (RMD) comprises three main functions, namely:Credit-related matters - Provides oversight and input on various credit-related matters, including credit-related policies and processes.Head of Portfolio Management Unit (PMU) - PMU prepares the monthly Credit Risk...