Manager, Technology Risk Management

Great Eastern

Kuala Lumpur

On-site

MYR 180,000 - 240,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Great Eastern Malaysia is seeking a Manager, Technology Risk Management to lead IT risk identification, mitigation and monitoring, and to develop technology risk frameworks, policies and guidelines while delivering related training.

The role covers governance, policy management, risk reviews, project participation, reporting and staff guidance with a focus on regulatory compliance, cyber security and business continuity.

Qualifications

  • Possess a recognised Degree in Computer Science, Information System or related disciplines.
  • Relevant certifications such as CISA, CISM, CRISC.
  • Good risk identification and management skills.
  • Ability to manage, motivate and lead support personnel.
  • Ability to manage multiple projects/tasks with deadlines.
  • Possess strong analytical, problem-solving skills.
  • Team player and performs well under pressure.
  • Excellent people & project management.
  • Excellent verbal and written communications skills.
  • Good appreciation of IT infrastructure and systems.
  • Minimum 5 years experience in IT related environment including risk, security, audit and control related functions.
  • Knowledge in risks management & mitigating controls; cyber security and controls; regulatory requirements; policies and best IT practices.

Responsibilities

  • Governance and Policy Management: develop/review technology frameworks, policies and guidelines.
  • Technology Risk Management: identify, mitigate and monitor technology risks; review management of risks and threats.
  • Reviews and Monitoring: ensure effectiveness and compliance, review OSS/ vendors, and DR/BC plans.
  • Participation in IT Projects: review projects to ensure risks are identified and managed.
  • Reporting: prepare dashboards on technology risk for board and senior management; oversee incident management and testing.
  • Lead & train DROs/DCOs and advise on regulatory requirements and risk practices.

Skills

Risk management
Leadership
Project management
Analytical skills
Communication skills
People management
Teamwork
Written and verbal communication
IT infrastructure understanding
Regulatory knowledge
Cyber security awareness

Education

Degree in Computer Science / Information Systems

Job description

Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.

The Manager, Technology Risk Management will manage IT risks identification, mitigation and

monitoring, develop/review Technology related frameworks, policies and guidelines and conduct

related training and awareness programs.

Governance and Policy Management
  • Assist in development/review of core Technology frameworks, policies and guidelines.
  • Proactively identify and incorporate relevant requirements from regulatory guidelines/Acts to ensure compliance.
Technology Risk Management
  • Facilitate Technology risk management to ensure effective risk identification, mitigation and monitoring
  • In particular, to review management of Technology related risk and threats and recommend relevant monitoring and mitigating controls
  • Identify emerging Technology trends, risks and threats
Reviews and Monitoring
  • Perform review of functions to:
    • Determine effectiveness and completeness of technology risk identification, mitigation and monitoring
    • Assess the implementation and compliance to regulatory guidelines, frameworks and policies. This will include reviews of Outsourced Service Providers (OSPs) and other third party vendors
    • Review adequacy and effectiveness of IT contingency and disaster recovery strategies and plans
    • Prepare relevant reports and table the same at relevant management or board committee meetings
Participation in IT Projects and Group initiatives
  • Participate or perform reviews of IT projects to ensure that risks are accurately identified and effectively managed
  • Provide advise on technology risks, frameworks, policies and regulatory requirements.
  • Involvement in TRM related projects/program and initiatives by IT, BU, Group or regulator.
Reporting
  • Prepare dashboard reporting on the material technology, information and cyber risk matters, including key risk indicators to the Board and Senior Management.
  • Perform oversight over the IT incident management, reporting and testing.
  • Promote security awareness via education and awareness on technology risks, cyber security and data protection for directors, staff, agents and service providers.
Review and appraise Department Risk Officers and Department Compliance Officers
  • Determine effectiveness of implementation and compliance to laws and regulations and policies.
  • Ensure that frameworks, policies and guidelines are reviewed timely.
  • Provide guidance and training to DROs/DCOs, vendors and agents on technology-related subjects.
  • Promote risk awareness for the company.
  • Takes accountability in considering business and regulatory compliance risks and takes appropriate steps to mitigate the risks.
  • Maintains awareness of industry trends on regulatory compliance, emerging threats and technologies in order to understand the risk and better safeguard the company.
  • Highlights any potential concerns /risks and proactively shares best risk management practices.
Qualifications and Experience
  • Possess a recognised Degree in Computer Science, Information System or related disciplines
  • Relevant certifications such as CISA, CISM, CRISC
  • Good risk identification and management skills
  • Ability to manage, motivate and lead support personnel
  • Ability to manage multiple projects/tasks with given deadlines
  • Possess strong analytical, problem-solving skills
  • Team player and performs well under pressure
  • Excellent people & project management
  • Excellent verbal and written communications skills
  • Good appreciation of IT infrastructure and systems
  • Minimum 5 years experience in IT related environment including risk, security, audit and control related functions
  • Good IT related knowledge in the following areas;
  • Risks management and mitigating controls
  • Cyber Security and controls
  • Regulatory requirements
  • Policies and best IT practices, methodologies and benchmarks
Core Values
  • Champion and embody our Core Values in everyday tasks and interactions.
  • Demonstrate high level of integrity and accountability.
  • Take initiative to drive improvements and embrace change.
  • Take accountability of business and regulatory compliance risks, implementing measures to mitigate them effectively.
  • Keep abreast with industry trends, regulatory compliance, and emerging threats and technologies to understand and highlight potential concerns/ risks to safeguard our company proactively.

Founded in 1908, Great Eastern is a well-established market leader and trusted brand in Singapore and Malaysia. With over S$100 billion in assets and more than 16 million policyholders, including 12.5 million from government schemes, it provides insurance solutions to customers through three successful distribution channels – a tied agency force, bancassurance, and financial advisory firm Great Eastern Financial Advisers. The Group also operates in Indonesia and Brunei. The Great Eastern Life Assurance Company Limited and Great Eastern General Insurance Limited have been assigned the financial strength and counterparty credit ratings of "AA-" by S&P Global Ratings since 2010, one of the highest among Asian life insurance companies. Great Eastern's asset management subsidiary, Lion Global Investors Limited, is one of the leading asset management companies in Southeast Asia. Great Eastern is a subsidiary of OCBC, the longest established Singapore bank, formed in 1932. It is the second largest financial services group in Southeast Asia by assets and one of the world’s most highly-rated banks, with an Aa1 rating from Moody’s and AA- by both Fitch and S&P. Recognised for its financial strength and stability, OCBC is consistently ranked among the World’s Top 50 Safest Banks by Global Finance and has been named Best Managed Bank in Singapore by The Asian Banker.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager - IT Risk and Compliance
Manager - IT Risk and Compliance

Great Eastern • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Manager, Convention and Campaign Fulfillment
Manager, Convention and Campaign Fulfillment

Great Eastern • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Senior Data Scientist
Senior Data Scientist

Great Eastern • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Assistant Manager, Data & Insights Analyst (GETB)
Assistant Manager, Data & Insights Analyst (GETB)

Great Eastern • Kuala Lumpur

On-site
MYR 90,000 - 130,000
Manager - IFRS Financial Reporting
Manager - IFRS Financial Reporting

Great Eastern • Kuala Lumpur

On-site
MYR 70,000 - 100,000
Associate - Policy Servicing & Administration Support
Associate - Policy Servicing & Administration Support

Great Eastern • Kuala Lumpur

On-site
MYR 40,000 - 60,000
Assistant Manager, Pricing and Portfolio Management
Assistant Manager, Pricing and Portfolio Management

Great Eastern • Kuala Lumpur

On-site
MYR 72,000 - 108,000
Senior IT Business Partner
Senior IT Business Partner

Great Eastern • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Manager - IT Security
Manager - IT Security

Great Eastern • Kuala Lumpur

On-site
MYR 180,000 - 280,000
Intern (GELM Operations-Policy Servicing Administration)
Intern (GELM Operations-Policy Servicing Administration)

Great Eastern • Kuala Lumpur

On-site
MYR 60,000 - 90,000