Jora Malaysia will close on 16th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.
Manager, Risk - Third Party Risk Oversight MY
As the second line of defence, you will be responsible for the development, implementation and on-going maintenance of an effective and consistent Third Party Risk Management framework with coverage of outsourcing, partnerships and vendors/suppliers engagements. The responsibility includes providing governance, oversight and advisory to support Business Units (BUs) / Business Enablers (BEs) in managing third party risks. You will support the Head, Regional Third Party Risk Management to oversee the governance and reporting with respect to third party risks within the Group.
Key responsibilities
- Drive the implementation and embedding of a robust Third Party Management Framework across the Group ensuring compliance to regulatory requirements where applicable
- As the 2nd line of defence, provide governance, oversight and advisory on Third Party Risk Management related matters in providing consultation to all BUs/BEs in performing third party risk assessments to identify potential failure points, threats, and vulnerabilities
- Implement appropriate mitigation controls to minimise the impact to the organisation throughout the engagements with third party with support from other key stakeholders (i.e. Technology Risk Management, Business Continuity Management, Technology, Data Governance, Legal & Compliance, Admin & Property Management, Procurement and Finance)
- Provide management with a view of the Groups Third Party Risk as part of the Groups preparedness and capabilities in the event of a major disruption
- Timely reporting and awareness in relation to third party risks to relevant risk committees as per framework requirement
- Promote a culture in managing third party risk through awareness sessions, engagement sessions, focus group sessions or trainings to BUs/BEs
- Work closely with Service Recipients (SRs) / Service Owners (SOs) of BUs/BEs Risk Control Units (RCUs) / Risk Control Specialists (RCSs) / Designated Compliance & Operational Risk Officers (DCOROs) to ensure third party risks/incidents/events are promptly identified, escalated and addressed as per Operational Risk Management framework
About you
- Bachelor's Degree or Professional Qualification in the relevant discipline (Information Systems / Business / Banking / Finance / Accounting / Statistics / Economics / IT)
- 3 - 5 years of experience of compliance, operational risk, outsourcing fields, preferably in established bank / financial institutions
- Experience in Supply Chain Management is an advantage
- Strong foundation on process design and operational risk related matters
- Critical thinking and problem solving skill
- Aptitude to dive into details to ensure controls are properly executed
- Good in planning and organizing
- Strong presentation and analytical skill