Enable job alerts via email!

Assistant Manager to Senior Manager, Technology Risk Management (Ref: RMD-TRM-SH-ICBCA)

Industrial and Commercial Bank of China ( Asia ) Limited

Hong Kong Island

On-site

HKD 600,000 - 1,200,000

Full time

30+ days ago

Job summary

A leading financial institution is seeking an Assistant Manager to Senior Manager for Technology Risk Management. The role involves developing IT control policies, conducting risk assessments, and ensuring compliance with regulatory requirements. Candidates should have a degree in IT or Risk Management, 3-7 years of relevant experience, and familiarity with cybersecurity frameworks. Strong policy writing and bilingual communication skills are essential.

Qualifications

  • Degree holder preferably in Information Technology or Risk Management.
  • Minimum 3-7 years of experience in Technology Risk Management.
  • ECF-C certification such as CISA, CISM, CISSP desired.

Responsibilities

  • Lead and develop IT control policies and ensure compliance.
  • Conduct regular IT key risk assessments and monitor key risk indicators.
  • Implement technology risk awareness and training programs for staff.

Skills

Policy writing
IT risk management
Cybersecurity knowledge
Knowledge of Windows OS
Knowledge of Unix OS
MS Office skills
Spoken English
Spoken Chinese

Education

Degree in Information Technology or Risk Management
Job description
Assistant Manager to Senior Manager, Technology Risk Management (Ref: RMD-TRM-SH-ICBCA)

Responsibilities:

  • Lead and develop a set of IT control policies which establish the ground rules for IT controls. Review regularly, and where necessary update the IT control policies to accommodate changing operating environments and technologies.
  • Ensure business units and IT functions awareness of, and compliance with, the Bank’s IT control policies.
  • Manage to conduct regular IT key risk assessments (KRA) and develop/ monitor effective Key Risk Indicator (KRI), recommend to senior management and risk management committees the identified key risk points.
  • Assist business units and IT functions to perform the technology risk management process which identifies, measures, monitors and controls technology-related risks of existing/new systems and processes.
  • Implement technology risk awareness and training program for the Bank staff.
  • Drives the implementation of HKMA’s Cybersecurity Fortification Initiative (CFI) including risk and maturity assessment, intelligence sharing platforms and professional development.

Requirements:

  • Degree holder preferably in Information Technology discipline or Risk Management or related discipline.
  • Minimum 3-7 years working experience in Technology Risk Management or Technology Audit or Information Security Management.
  • ECF-C certification such as CISA, CISM, CISSP.
  • Familiar to regulatory requirements such as HKMA (TM-E-1, TM-G-1, TM-G-2, SA-2).
  • Strong understanding of control frameworks and industry standards including ISO27001, COBIT and SANS TOP 20.
  • Proven experience in writing policies, procedures and reports.
  • Strong knowledge of Windows and Unix OS.
  • Strong knowledge of IT infrastructure, networks and databases.
  • Good command of MS Office skills especially Microsoft Word and Excel.
  • Good command of spoken and written English and Chinese including spoken Putonghua.

To apply, please send full resume including present and expected salary to

Personal data collected will be used for recruitment purposes only
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.