
Senior Officer, IT Risk Management (Life Insurance Project)
- Hanoi
- Permanent
- Full-time
- Manage and monitor Technology and Digital Risk Management (TDRM) to ensure technology and digital risks are managed and mitigated within risk limit
- Develop, propose and implement TDRM programs and activities to manage technology and digital risks
- Provide subject matter advices and design TDRM policies, standards, regulations, procedures and methodologies, risk taxonomies and respective mitigation controls
- Provide subject matter advices related to Technology và Digital innovation and implementation
- Develop TDRM capabilities and improve bankwide TDRM awareness and culture
- Develop, propose and implement TDRM programs and activities to manage technology and digital risks
- Provide subject matter advices and design TDRM policies, standards, regulations, procedures and methodologies
- Develop technology and digital risk taxonomies and respective mitigation controls
- Evaluate technology strategy, business process, control automation and governance and compliance
- Evaluate the effectiveness of controls and oversee and oversight the design and implementation of controls.
- Support in investigation of cyber digital risk incidents and recommend solution/action to mitigate and manage risks
- Conduct/ support training on subject matters to TDRM team members to improve team's capabilities and to fulfil the function's job requirements.
- Support other units to conduct training and communication to improve bank-wide TDRM awareness and culture.
- At least 06 years of relevant work experience
- Extensive knowlegde of technology and digital risks, information systems, information security, information system review
- Extensive knowledge of banking information system landscape and banking business operation
- Understanding the TCB information systems and business operation
- Having a university degree or higher on Information Technology, Information System, Information Security or equivalent
- English: TOEIC 500 or equivalent
- Having professional certification on IT risk, information security, Information system review