Provide second line of defense risk oversight on IT architectural initiatives and large-scale technology projects
Evaluate and challenge architectural designs, frameworks and strategies for security, resilience and regulatory alignment
Perform risk assessments on emerging technologies and major IT projects including system implementation, integration and upgrades
Collaborate with Enterprise Architecture and Technology teams to ensure alignment of risk management objectives
Review and provide risk commentary on solution architecture documents, technical design specifications and project governance frameworks
Engage in project steering committees and risk working groups to represent Technology Risk Management (TRM)
Define and monitor risk indicators and control performance related to architecture and technology initiatives
Identify and escalate material risk issues and emerging risks to senior management and relevant risk committees
Support internal and external audits, regulatory inspections and compliance assessment
Provide strategic leadership in enterprise architecture and oversight of key technology projects across CIMB's regional entities ensuring alignment with group IT strategy and regulatory standards
Job Specification
Educational Qualifications (Bachelor Degree)
Certified Information Systems Auditor (CISA)
Certified in Risk and Information Security Control (CRISC)
ISO 27001 Lead Auditor
Certified Information Systems Security Professional (CISSP)
Relevant Work Experience Preferably in Banking:
Enterprise Architecture
IT Project Lifecycle
System Development Methodologies
Technology Risks, Compliance or Audit
Project Management
Fraud Investigation
Third Party
Operational Risk
Core Competencies
IT Architecture Principles
Project Risk Management
Technology Risk, Audit and Compliance
Computer Forensics Technology & Social Engineering