You are responsible for overseeing the development, implementation, and maintenance of IT policies, procedures, and controls within an organization. This role focuses on ensuring that the organization's IT systems, processes, and practices align with regulatory requirements, industry standards, and best practices. The individual in this role should have a strong grasp of IT governance frameworks, risk management, and compliance requirements.
What will you do:
Develop, implement, and maintain an effective IT governance framework that aligns with the organization's objectives, ensuring that IT strategies support business goals.
Create and enforce IT policies and procedures that govern the use, access, and security of technology systems and information. Ensure these policies are communicated across the organization and updated as needed to address changing risks and regulations.
Monitor and ensure compliance with relevant laws, regulations, and industry standards. Identify and mitigate IT-related risks through the implementation of controls and procedures.
Coordinate and manage IT audits to assess compliance, identify weaknesses, and recommend improvements. Develop strategies to address audit findings and ensure corrective actions are implemented.
Establish metrics and key performance indicators (KPIs) to measure the effectiveness of IT governance. Generate regular reports for management to demonstrate compliance, risk mitigation, and the overall health of IT systems.
Collaborate with various stakeholders, including senior management, department heads, and external partners, to ensure alignment and understanding of IT governance objectives and requirements.
Identify opportunities for improvement in IT governance processes and practices. Implement enhancements to continuously strengthen the organization's IT governance framework.
Skills, certifications and experience you possess:
Bachelor’s Degree in Computer Science, Information Technology, Business Administration, or any related field.
Possess at least 10 years’ experience in IT governance, risk management, compliance, or a related field, with a proven track record in a leadership role.
In-depth knowledge of IT governance frameworks (e.g., COBIT, ITIL), regulations (such as GDPR, HIPAA, etc.), and industry best practices.
Strong understanding of risk management methodologies, control frameworks, and audit processes.
Excellent communication and interpersonal skills to effectively interact with stakeholders at all levels of the organization.
Analytical and problem-solving skills to assess complex situations and recommend effective solutions.
Familiar with the local regulations (e.g. BNM) and able to manage regulatory requirements from a technology solution/decision perspective.