IT Risk & Compliance Manager (Technology Risk)

Powtech Solution

Kuala Lumpur

On-site

MYR 90,000 - 150,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

EPF
SOCSO
EIS
Annual Leave

Job summary

Jora Malaysia is seeking an IT Risk & Compliance Manager (Technology Risk) with strong experience in technology risk, IT audit, and cybersecurity to lead risk assessment and governance across regions.

The role emphasizes engagement with both technical and non-technical stakeholders, vendor risk, and adherence to frameworks like ISO 27001, NIST and COBIT. A multinational, enterprise environment is preferred, with a focus on delivering practical risk controls.

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or a related discipline.
  • Minimum 5 years of experience across technology risk, IT risk, IT audit, cybersecurity, or related domains.
  • Practical experience in: Application and system risk assessment
  • Practical experience in: IT audit or assurance activities
  • Solid understanding of technology and cybersecurity risk principles, controls, and governance practices.
  • Experience operating in large enterprise or multinational environments is strongly preferred.
  • Familiarity with ISO 27001, NIST, COBIT, or equivalent.
  • Strong communication skills with the ability to engage effectively with both technical and non-technical stakeholders.
  • Clear written and verbal communication skills, with a practical, business-focused approach.
  • Fluent in English.

Responsibilities

  • Perform technology and application risk assessments, with emphasis on identifying risks early in the project lifecycle and prior to application go-live.
  • Provide risk and control advisory support to project teams, IT, and business stakeholders throughout system implementation, enhancement, and deployment phases.
  • Support IT audit and assurance activities, including planning, execution support, remediation tracking, and follow-up reporting.
  • Identify potential technology and cybersecurity risks across applications, systems, and third-party arrangements, and recommend practical risk treatment options.
  • Engage with vendors and third parties to assess risk exposures and support vendor risk management activities.
  • Collaborate closely with IT, security, compliance, and business teams to ensure risk controls are appropriately designed and implemented.
  • Monitor, track, and report on risk issues, audit findings, and remediation progress to relevant stakeholders.
  • Participate in risk reviews, governance forums, and security assessments as required.
  • Support initiatives involving alignment of risk frameworks and processes across regions or entities following organisational changes or acquisitions.

Skills

Technology risk
IT risk
IT audit
Cybersecurity
Vendor risk
Communication
English fluency

Education

Bachelor’s degree in Computer Science
Bachelor’s degree in Information Security

Tools

ISO 27001
NIST
COBIT

Job description

Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.

IT Risk & Compliance Manager (Technology Risk)

Bachelor’s degree in Computer Science, Information Security, or a related discipline.

Minimum 5 years of experience across technology risk, IT risk, IT audit, cybersecurity, or related domains.

Practical experience in:

Application and system risk assessment

IT audit or assurance activities

Solid understanding of technology and cybersecurity risk principles, controls, and governance practices.

Experience operating in large enterprise or multinational environments is strongly preferred.

Familiarity with common standards and frameworks such as ISO 27001, NIST, COBIT, or equivalent.

Strong communication skills with the ability to engage effectively with both technical and non-technical stakeholders.

Clear written and verbal communication skills, with a practical, business-focused approach.

Requirement

Requirements

  • Bachelor’s degree in Computer Science, Information Security, or a related discipline.

  • Minimum 5 years of experience across technology risk, IT risk, IT audit, cybersecurity, or related domains.

  • Practical experience in:

    • Application and system risk assessment

    • IT audit or assurance activities

    • Enterprise / IT risk management

  • Solid understanding of technology and cybersecurity risk principles, controls, and governance practices.

  • Experience operating in large enterprise or multinational environments is strongly preferred.

  • Familiarity with common standards and frameworks such as ISO 27001, NIST, COBIT, or equivalent.

  • Strong communication skills with the ability to engage effectively with both technical and non-technical stakeholders.

  • Clear written and verbal communication skills, with a practical, business-focused approach.

  • Fluent in English.

Responsibility

Role Overview

This role supports technology and application risk management across projects and BAU environments. The focus is on identifying risks early, advising stakeholders throughout the project lifecycle, and ensuring risk and control considerations are embedded before systems go live. The role combines hands‑on risk assessment with advisory engagement across IT, business, and vendors in a regional MNC environment.

Key Responsibilities

  • Perform technology and application risk assessments, with emphasis on identifying risks early in the project lifecycle and prior to application go‑live.

  • Provide risk and control advisory support to project teams, IT, and business stakeholders throughout system implementation, enhancement, and deployment phases.

  • Support IT audit and assurance activities, including planning, execution support, remediation tracking, and follow‑up reporting.

  • Identify potential technology and cybersecurity risks across applications, systems, and third‑party arrangements, and recommend practical risk treatment options.

  • Engage with vendors and third parties to assess risk exposures and support vendor risk management activities.

  • Collaborate closely with IT, security, compliance, and business teams to ensure risk controls are appropriately designed and implemented.

  • Monitor, track, and report on risk issues, audit findings, and remediation progress to relevant stakeholders.

  • Participate in risk reviews, governance forums, and security assessments as required.

  • Support initiatives involving alignment of risk frameworks and processes across regions or entities following organisational changes or acquisitions.

Benefits
  • EPF
  • SOCSO
  • EIS
  • Annual Leave

Be careful - Don’t provide your bank or credit card details when applying for jobs. Don't transfer any money or complete suspicious online surveys. If you see something suspicious, report this job ad .

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Risk Manager
IT Risk Manager

Powtech Solution • Kuala Lumpur

On-site
MYR 120,000 - 180,000
EPF
SOCSO
EIS
+1
Senior IT Risk & Compliance Specialist
Senior IT Risk & Compliance Specialist

MOL AccessPortal • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Manager - Risk Management (Technology Risk Management)
Manager - Risk Management (Technology Risk Management)

Hong Leong Bank • Kuala Lumpur

On-site
MYR 120,000 - 180,000
SENIOR MANAGER - GOVERNANCE, RISK AND COMPLIANCE (RISK & COMPLIANCE) (EG12)
SENIOR MANAGER - GOVERNANCE, RISK AND COMPLIANCE (RISK & COMPLIANCE) (EG12)

Hartalega • Selangor

On-site
MYR 180,000 - 280,000
Senior Manager - Technology Risk Management & Advisory
Senior Manager - Technology Risk Management & Advisory

AmBank • Kuala Lumpur

On-site
MYR 180,000 - 300,000
IT Governance, Risk & Compliance Manager
IT Governance, Risk & Compliance Manager

CapBay • Kuala Lumpur

Hybrid
MYR 90,000 - 150,000
Compliance Executive / Senior Compliance Executive
Compliance Executive / Senior Compliance Executive

Silentmode • Kuala Lumpur

On-site
MYR 60,000 - 90,000
Manager, Compliance Audit
Manager, Compliance Audit

Safeguards Group • Selangor

On-site
MYR 60,000 - 120,000
Compliance Executive
Compliance Executive

Net2One Sdn Bhd • Cyberjaya

On-site
MYR 45,000 - 78,000
Free parking
Health insurance
IT Security Assistant Manager / Manager
IT Security Assistant Manager / Manager

NTT DATA Payment Services • Subang Jaya

On-site
MYR 90,000 - 150,000