IT Risk Manager

Powtech Solution

Kuala Lumpur

On-site

MYR 120,000 - 180,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

EPF
SOCSO
EIS
Annual Leave

Job summary

Jora Malaysia is seeking a senior IT Risk professional to oversee technology and application risk management across projects and BAU environments in a regional MNC setting.

You will perform risk assessments, advise on controls, support IT audit activities, and collaborate with IT, security, compliance, and business teams to embed risk and governance before go-live.

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or a related discipline.
  • Minimum 5 years of experience across technology risk, IT risk, IT audit, cybersecurity, or related domains.
  • Practical experience in: application and system risk assessment; IT audit or assurance activities; enterprise/IT risk management.
  • Solid understanding of technology and cybersecurity risk principles, controls and governance.
  • Experience operating in large enterprise or multinational environments.
  • Familiarity with ISO 27001, NIST, COBIT or equivalent.
  • Strong communication skills with the ability to engage effectively with both technical and non-technical stakeholders.
  • Clear written and verbal communication skills with a practical, business-focused approach.
  • Fluent in English.

Responsibilities

  • Perform technology and application risk assessments, with emphasis on early risk identification in projects.
  • Provide risk and control advisory support to project teams, IT and business stakeholders throughout implementations.
  • Support IT audit and assurance activities, including planning, execution support, remediation tracking, and reporting.
  • Identify technology and cybersecurity risks across applications, systems and third‑party arrangements; recommend risk treatment options.
  • Engage with vendors and third parties to assess risk exposures and support vendor risk management.
  • Collaborate with IT, security, compliance and business teams to ensure risk controls are designed and implemented.
  • Monitor, track and report on risk issues, audit findings and remediation progress.
  • Participate in risk reviews, governance forums and security assessments as required.
  • Support alignment of risk frameworks and processes across regions or entities during organizational changes.

Skills

Technology risk
IT risk
IT audit
Cybersecurity
Stakeholder engagement
Communication
English fluency

Education

Bachelor’s degree in Computer Science, Information Security, or related discipline

Job description

Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.

Bachelor’s degree in Computer Science, Information Security, or a related discipline.

Minimum 5 years of experience across technology risk, IT risk, IT audit, cybersecurity, or related domains.

Practical experience in:

Application and system risk assessment

IT audit or assurance activities

Solid understanding of technology and cybersecurity risk principles, controls, and governance practices.

Experience operating in large enterprise or multinational environments is strongly preferred.

Familiarity with common standards and frameworks such as ISO 27001, NIST, COBIT, or equivalent.

Strong communication skills with the ability to engage effectively with both technical and non-technical stakeholders.

Clear written and verbal communication skills, with a practical, business-focused approach.

Requirements
  • Bachelor’s degree in Computer Science, Information Security, or a related discipline.

  • Minimum 5 years of experience across technology risk, IT risk, IT audit, cybersecurity, or related domains.

  • Practical experience in:

    • Application and system risk assessment

    • IT audit or assurance activities

    • Enterprise / IT risk management

  • Solid understanding of technology and cybersecurity risk principles, controls, and governance practices.

  • Experience operating in large enterprise or multinational environments is strongly preferred.

  • Familiarity with common standards and frameworks such as ISO 27001, NIST, COBIT, or equivalent.

  • Strong communication skills with the ability to engage effectively with both technical and non-technical stakeholders.

  • Clear written and verbal communication skills, with a practical, business-focused approach.

  • Fluent in English.

Responsibility
Role Overview

This role supports technology and application risk management across projects and BAU environments. The focus is on identifying risks early, advising stakeholders throughout the project lifecycle, and ensuring risk and control considerations are embedded before systems go live. The role combines hands‑on risk assessment with advisory engagement across IT, business, and vendors in a regional MNC environment.

Key Responsibilities
  • Perform technology and application risk assessments, with emphasis on identifying risks early in the project lifecycle and prior to application go-live.

  • Provide risk and control advisory support to project teams, IT, and business stakeholders throughout system implementation, enhancement, and deployment phases.

  • Support IT audit and assurance activities, including planning, execution support, remediation tracking, and follow‑up reporting.

  • Identify potential technology and cybersecurity risks across applications, systems, and third‑party arrangements, and recommend practical risk treatment options.

  • Engage with vendors and third parties to assess risk exposures and support vendor risk management activities.

  • Collaborate closely with IT, security, compliance, and business teams to ensure risk controls are appropriately designed and implemented.

  • Monitor, track, and report on risk issues, audit findings, and remediation progress to relevant stakeholders.

  • Participate in risk reviews, governance forums, and security assessments as required.

  • Support initiatives involving alignment of risk frameworks and processes across regions or entities following organisational changes or acquisitions.

Benefits
  • EPF
  • SOCSO
  • EIS
  • Annual Leave
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Risk & Compliance Manager (Technology Risk)
IT Risk & Compliance Manager (Technology Risk)

Powtech Solution • Kuala Lumpur

On-site
MYR 90,000 - 150,000
EPF
SOCSO
EIS
+1
Senior IT Risk & Compliance Specialist
Senior IT Risk & Compliance Specialist

MOL AccessPortal • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Manager, Technology Risk Management
Manager, Technology Risk Management

CTOS • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Manager - Risk Management (Technology Risk Management)
Manager - Risk Management (Technology Risk Management)

Hong Leong Bank • Kuala Lumpur

On-site
MYR 120,000 - 180,000
SENIOR MANAGER - GOVERNANCE, RISK AND COMPLIANCE (RISK & COMPLIANCE) (EG12)
SENIOR MANAGER - GOVERNANCE, RISK AND COMPLIANCE (RISK & COMPLIANCE) (EG12)

Hartalega • Selangor

On-site
MYR 180,000 - 280,000
Senior Manager, Risk Operation & Control
Senior Manager, Risk Operation & Control

Aeon Credit Service • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Senior Manager - Technology Risk Management & Advisory
Senior Manager - Technology Risk Management & Advisory

AmBank • Kuala Lumpur

On-site
MYR 180,000 - 300,000
IT Governance, Risk & Compliance Manager
IT Governance, Risk & Compliance Manager

CapBay • Kuala Lumpur

Hybrid
MYR 90,000 - 150,000
Senior Risk Management Executive (MNC / Attractive benefits)
Senior Risk Management Executive (MNC / Attractive benefits)

Trust Recruit • Selangor

On-site
MYR 60,000 - 90,000
IT Project Manager - IT Security
IT Project Manager - IT Security

Erudite Innovation • Semenyih

On-site
MYR 120,000 - 180,000