Talent.com
This job offer is not available in your country.
Regional Cyber Risk and Controls Manager - VP

Regional Cyber Risk and Controls Manager - VP

STATE STREET BANK AND TRUST COMPANYSingapore
7 days ago
Job description

We are seeking a highly skilled and experienced cybersecurity professional to join our team as a Vice President (VP) level Cybersecurity Risk and Controls Manager. In this role, you will be responsible for managing risk for APAC region and be SME in multiple domain including Identity and Access, Network security, Data security, Third Party Risk and Cyber Incident Management. You will be representing APAC at global governance forums and provide cybersecurity expertise and insights to key stakeholders within the region. You will also be overseeing State Street entities and our Joint Ventures in the region, analyzing cyber risk, meeting Regional regulatory requirements and assessing key metrics to drive continuous uplift and risk mitigation. You will be collaborating with Security Operations Centers (SOC) to respond to security incidents, identifying and supporting simulation exercises, implementing containment measures in response to audit findings or self-identified issues, supporting vulnerability discoveries through rigorous testing and participating in specialized projects.

Job Description

  • Measure and Report Risk : Assess and report risk posture for APAC region, including countries risk committees and legal entities utilizing our existing frameworks, metrics, key updates, projects, incidents etc.
  • Global Governance Meetings : Attend and present at global governance forum meetings to represent regional interests. Build relationship with senior leadership to shape the organization's cybersecurity strategy, align it with corporate goals, and ensure compliance with relevant regulations and standards.
  • Regulatory : Have direct and relevance experience in working with Regional regulators (MAS, HKMA, APRA, JFSA, NFRA etc.) and deep understanding of individual regulatory requirements to ensure compliance. Representing the bank at various Regulatory forums and working groups.
  • Analyze Metrics and Drive Improvement : Identify and implement metrics and key risk indicators (KRIs) to measure the effectiveness of cybersecurity controls, incident response capabilities, and vulnerability management processes. Analyze data and drive continuous improvement initiatives to align with corporate standards and industry best practices.
  • Trusted Advisor : Build strong relationship with key stakeholders regionally and globally (Business, Technology, Cyber, Risk, Audit etc.) and collaborate with control owners to ensure regional requirements are met, both from Regulatory and risk management perspective.
  • Joint Ventures in APAC : Oversee cybersecurity aspects of joint ventures. Collaborate with internal and external stakeholders to ensure the alignment of cybersecurity controls, incident response procedures, and metrics monitoring governance process aligned to the enterprise.
  • Security Incident Response : Collaborate with the global SOC team to promptly respond to security incidents, investigate root causes, and develop effective remediation strategies. Act as a subject matter expert in cyber incident response, ensuring timely and accurate communication with key stakeholders. Working seamlessly with 2LoD, Compliance to ensure any Regulatory needs are catered for.
  • Cyber Simulation Exercises : Identify and support cyber simulation exercises to assess the effectiveness of our cybersecurity controls and incident response capabilities across the APAC region. Coordinate with internal teams, global stakeholders and external vendors to conduct realistic exercises that simulate real-world cyber threats and evaluate the organization's readiness to handle such incidents.
  • Audit and Self-Identified Issues : Take ownership of containment measures and remediation plans in response to internal and external audits, as well as self-identified security issues. Work closely with cross-functional teams to identify vulnerabilities, implement necessary controls, and ensure compliance with relevant regulations and standards.
  • Vulnerability Management : Drive continuous improvement by working closely with vulnerability teams who analyse systems, applications, and infrastructure. Collaborate with IT teams to prioritize and remediate vulnerabilities in a timely manner. Ensure accurate metrics for vulnerability scanning, penetration testing, patch management, code scans etc.
  • Specialized Projects : Participated in specialized cybersecurity projects such as the implementation of advanced threat detections systems, development of secure software development life cycle (SDLC), enhancement of data loss prevention (DLP) rules. Provide matter expertise and guidance throughout APAC Data Centre migration and workforce integration involved with joint ventures.

Qualifications

  • Bachelor's degree in Computer Science, Information Security, or a related field. Advanced degree preferred.
  • Two or more Professional Certifications required (e.g. CISA, CISM, CISSP, CRISC, CCSK, AWS, Azure)
  • Minimum of 10 years of experience in cybersecurity, with deep technical understanding of two or more domains - Identity and Access Management, Data Protection, Network security, System Security, Application Security, Cloud Security, Security Operations (e.g. Incident Management)
  • Strong understanding of cybersecurity frameworks, standards, and best practices.
  • Working knowledge of Technology regulatory frameworks within the Region (MAS TRMG, HK CRAF, APRA CPS 234 etc.)
  • Proficiency in assisting with cybersecurity incident response and investigations.
  • Experience in developing and conducting cyber simulation exercises.
  • In-depth knowledge of vulnerability management processes, tools, and techniques.
  • Familiarity with security auditing, risk assessment, and compliance frameworks.
  • Strong understanding of network security, firewalls, IDS / IPS, SIEM, and other security technologies.
  • Demonstrated leadership skills, with the ability to work independently and collaborate effectively with cross-functional teams and senior management.
  • Ability to interface with key stakeholders and operate at various levels of seniority as an individual contributor and / or Manager
  • Excellent written and verbal communication skills, with the ability to articulate complex cybersecurity issues to both technical and non-technical stakeholders.
  • Strong analytical and problem-solving abilities, with a focus on driving continuous improvement and innovation.
  • Create a job alert for this search

    Risk Manager • Singapore

    Related jobs
    Cyber Tech Risk and Controls Lead

    Cyber Tech Risk and Controls Lead

    JPMorgan Chase & Co.Singapore
    Join our team to play a pivotal role in mitigating tech risks and upholding operational excellence, driving innovation in risk management. As a Tech Risk & Controls Lead in Cybersecurity and Technol...Show moreLast updated: 30+ days ago
    • Promoted
    VP, Business Risk and Controls Management (BRCM) Advisory, Group Retail, COO

    VP, Business Risk and Controls Management (BRCM) Advisory, Group Retail, COO

    United Overseas Bank Ltd.Singapore, Pedra Branca, Singapore
    Press Tab to Move to Skip to Content Link.Select how often (in days) to receive an alert : .VP, Business Risk and Controls Management (BRCM) Advisory, Group Retail, COO. Singapore (City Area), SG, 048...Show moreLast updated: 30+ days ago
    • Promoted
    Technology Risk Manager - VP / AVP

    Technology Risk Manager - VP / AVP

    Quality Control Specialist - Pest ControlSingapore, Pedra Branca, Singapore
    As Singapore's longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How? By taking the time to truly understand people.Fro...Show moreLast updated: 6 days ago
    • Promoted
    VP Finance (Real Estate - Group Reporting)

    VP Finance (Real Estate - Group Reporting)

    Exuve PartnersSingapore, Pedra Branca, Singapore
    Get AI-powered advice on this job and more exclusive features.VP Finance | Real Estate & Investment sector | Singapore-based role. An exceptional opportunity has arisen to join an established Singap...Show moreLast updated: 6 days ago
    Risk Services - Technology, Cyber and Third Party Risk Management - Manager / Senior Manager

    Risk Services - Technology, Cyber and Third Party Risk Management - Manager / Senior Manager

    PwCSingapore
    Join our diverse, global community at PwC, where we solve important problems together.You'll develop your unique skills in exciting ways, powered by technology. Our Risk Services Practice provides c...Show moreLast updated: 30+ days ago
    • Promoted
    VP, Technology Risk and Controls Manager – Private Bank and Wealth Management

    VP, Technology Risk and Controls Manager – Private Bank and Wealth Management

    BARCLAYS EXECUTION SERVICES LIMITED Singapore BranchD01 Cecil, Marina, People’s Park, Raffles Place, SG
    To assess the integrity and effectiveness of the banks internal control framework to support the mitigation of risk and protection of the banks operational, financial, and reputational risk.Knowled...Show moreLast updated: 19 days ago
    • Promoted
    Head of Cybersecurity and Technology Governance, Risk and Assurance

    Head of Cybersecurity and Technology Governance, Risk and Assurance

    Kerry ConsultingSingapore, Pedra Branca, Singapore
    Head of Cybersecurity and Technology Governance, Risk and Assurance.Head of Cybersecurity and Technology Governance, Risk and Assurance. Direct message the job poster from Kerry Consulting.We are se...Show moreLast updated: 14 days ago
    • Promoted
    VP, Technology Audit

    VP, Technology Audit

    Eames ConsultingSingapore, Pedra Branca, Singapore
    Get AI-powered advice on this job and more exclusive features.Direct message the job poster from Eames Consulting.We are seeking a highly skilled and experienced Vice President, Technology Audit to...Show moreLast updated: 13 days ago
    SVP / VP - Information Security / Cybersecurity, Technology Risk Manager, Tech COO, Group Technology

    SVP / VP - Information Security / Cybersecurity, Technology Risk Manager, Tech COO, Group Technology

    DBS Bank LimitedSingapore
    Accountable for managing internal and external reviews / audits from audit planning (such as request for information (RFI), opening meeting, etc. Responsible for monitoring and validating the closure ...Show moreLast updated: 18 days ago
    • Promoted
    Technology Risk Manager - VP / AVP

    Technology Risk Manager - VP / AVP

    Out in Science, Technology, Engineering, and MathematicsSingapore, Pedra Branca, Singapore
    As Singapore's longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How? By taking the time to truly understand people.Fro...Show moreLast updated: 8 days ago
    VP, Credit Risk

    VP, Credit Risk

    Nomura AsiaSingapore
    Nomura is a global financial services group with an integrated network spanning approximately 30 countries and regions.By connecting markets East & West, Nomura services the needs of individuals, i...Show moreLast updated: 7 days ago
    VP, Risk Manager (FinTech Lending)

    VP, Risk Manager (FinTech Lending)

    MICHAEL PAGE INTERNATIONAL PTE LTDSingapore
    Drive real impact in a high-growth FinTech.Shape holistic risk across functions and markets.Our client is a fast-growing digital venture launched by a reputable international business group with lo...Show moreLast updated: 4 days ago
    • Promoted
    Vice President, Audit Manager - Transformation – Risk and Controls

    Vice President, Audit Manager - Transformation – Risk and Controls

    Citigroup Inc.Singapore, Pedra Branca, Singapore
    The IA Transformation - Risk & Controls audit team is responsible for providing audit coverage and issue validation assurance of individual initiatives under Citi's Enterprise-Wide Risk & Control T...Show moreLast updated: 9 days ago
    • Promoted
    Governance, Risk, and Compliance (GRC) Lead

    Governance, Risk, and Compliance (GRC) Lead

    Kulicke & SoffaSingapore, Pedra Branca, Singapore
    Governance, Risk, and Compliance (GRC) Lead.Governance, Risk, and Compliance (GRC) Lead.The GRC Lead will be responsible for responsible for initiating, running, and managing information security g...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    Director, Fraud Risk

    Director, Fraud Risk

    AirwallexSingapore, Pedra Branca, Singapore
    Get AI-powered advice on this job and more exclusive features.Airwallex is the only unified payments and financial platform for global businesses. Powered by our unique combination of proprietary in...Show moreLast updated: 4 hours ago
    Technology Risk Manager - VP / AVP

    Technology Risk Manager - VP / AVP

    OCBCSingapore
    As Singapore's longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How? By taking the time to truly understand people.Fro...Show moreLast updated: 18 days ago
    VP, Risk Manager (FinTech Lending)

    VP, Risk Manager (FinTech Lending)

    Michael Page International SingaporeSingapore
    Opportunity for a senior risk leader to join a scaling FinTech backed by a global business group.This role spans credit, operational, and regulatory risk in an SME and supply chain finance context....Show moreLast updated: 6 days ago
    • Promoted
    VP, Business Risk and Controls Management (BRCM) Advisory, Group Retail, COO

    VP, Business Risk and Controls Management (BRCM) Advisory, Group Retail, COO

    UOBSingapore, Pedra Branca, Singapore
    VP, Business Risk and Controls Management (BRCM) Advisory, Group Retail, COO.VP, Business Risk and Controls Management (BRCM) Advisory, Group Retail, COO. VP, Business Risk and Controls Management (...Show moreLast updated: 30+ days ago