AVP - Technology Risk Manager
Malaysia
Headquartered in Tokyo, Sumitomo Mitsui Banking Corporation (SMBC) is a leading global financial institution and a core member of Sumitomo Mitsui Financial Group (SMBC Group). Built upon our rich Japanese heritage since 1876, we put our customers first and provide seamless access to, from and within the Asia Pacific region. SMBC is one of the largest Japanese banks by assets and maintain strong credit ratings across our global integrated network. We work closely as one SMBC Group to offer personal, corporate and investment banking services to meet the needs of our customers.
With sustainability embedded within our strategy and operations, we are committed to creating a society in which today’s generation can enjoy economic prosperity and well-being, and pass it on to future generations.
Sumitomo Mitsui Banking Corporation Malaysia Berhad - SMBCMY
JOB SUMMARY
As Technology Risk Manager for Technology Governance Services, responsible to ensure compliance on IT related regulatory and Head Office policies and provide IT risk advisory to IT department. This role reports to the Head of Technology Governance Services
KEY RESPONSIBILITIES
Specific core responsibilities include the following:
- Technology Risk Management
- Conduct regular risk assessments of technology systems and processes to identify vulnerabilities and potential threats.
- Perform assessment and gap analysis on IT related regulatory and internal policy to ensure compliance.
- Provide advisory on IT risk matters and assist in the development and implementation of technology risk management policies and procedures in alignment with regulatory, Head Office and Regional Office requirements.
- Monitor compliance with established technology risk policies and regulations, ensuring adherence across all departments.
- Support the incident response team during technology-related risk incidents, providing insights on risk impacts and recovery strategies.
- Instilling awareness and providing support on delivering training programs to promote awareness of technology risk management practices among staff.
- Prepare and present regular reports on technology risk findings, trends, and recommendations to senior management and stakeholders.
- Work closely with IT, cybersecurity, and business units to ensure a unified approach to technology risk management.
- Identify and recommend risk mitigation strategies to reduce technology risk, vulnerabilities and enhance overall security posture.
- Liaise with regulatory bodies and internal audit teams to facilitate assessments and ensure compliance with regulatory expectations.
- Establish and aligning IT policies and processes with Regional Office
- Communicate and engage process owners to establish a suitable improvements/remediation plans
- Other Department Activities
- Supporting in audit engagement
- Track and manage IT audit issues until closures.
- Seeks to automate processes and controls to reduce manual tasks and improve quality of audit evidence.
- Proactively support the department assignments
- Participate in continuous improvement efforts by staying updated on industry best practices and emerging technology risks.
JOB REQUIREMENTS
Attributes |
Essential (Must-have) |
Desirable (Good-to-have) |
Qualification and Knowledge |
Recognized university degree or master’s in Computer Science, Manage Information Science, Commerce / Business Administration, Banking and Finance or equivalent |
Industry level technical and softskill certifications. (eg. ITIL, COBIT) |
Work or Professional Experience |
Minimum 5 to 7 years or more working experience in IT / IT Risk. |
|
Functional or Technical Competencies |
Strong experience in establishing / driving IT Projects
Good understanding of Banking Technology function.
|
Good understanding of BNM guidelines and banking act. Proficient with BNM RMiT & Paynet requirement.
Proficient with regional central banks governance requirement. |
Leadership Competencies |
Strong Experience in managing stakeholders and senior management.
|
|
Personal Attributes |
Proven ability to work in a fast-paced technical and business environment, and able to multi-task whilst delivering high quality solutions
Strong communication, influencing and negotiation skill
Strong analytical and creative problem-solving skills. Logical and efficient, with keen attention to detail.
Strong innovative mentality and mindset.
Excellent listening, interpersonal, written, and oral communication skills.
Highly self-motivated and directed. Strong sense of urgency and ability to function independently without supervision. |
|