Head of Technology Risk

4 weeks ago


Central And Western District, Hong Kong SAR China AIA Hong Kong and Macau Full time
At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone.It’s about finding new ways to not only better people's lives, but to better the communities and environments we live in. And we build on this every day with our ambition to engage one billion people to live Healthier, Longer, Better Lives by 2030.And to get there, we need leaders with the courage, clarity and humanity to inspire, guide and support their teams to thrive every day - in the work they do and the life they live. Our leaders always have and will play a vital part in our journey to help more people live Healthier, Longer, Better Lives, build healthier societies and cultivate healthier environments that better everyone.If you sound like that leader, read on.About the RoleThe Head of Technology Risk will lead and oversee the professional Technology Risk colleagues and specialists and act as a second line defence in partnership with the business owner to manage the concerning risks involving or affecting technology, and ensures that technology risks are appropriately identified, measured, assessed, and mitigated in the right priority.He/ She is expected to take lead on the development and implementation of technology risk management governance programmes for AIA Hong Kong and Macau business which includes AIAI HK, AIAI Macau, AIA Everest, Blue Cross, U-Care and Blue Care. In addition, the role covers the optimal security implementation and implementation of operation model which are in alignment with the Group Technology Risk’s strategic directions.Roles and Responsibilities:Implementation of Technology Risk Governance Program (50%)Responsible to develop and manage technology risk governance framework & risk portfolio, in accordance with AIA Group policies and guidelines.Proactively identify and effectively communicate emerging technology risks and opportunities to stakeholder at all levels of the organisation.Conduct gap analysis on various regulatory requirement and drive program to bridge the gap.Develop and implement the plans to uplift the technology risk standard and resiliency across the organisation.Collaborate with risk owners to drive the identification and assessment, management and response, monitoring, and controls of data and technology risks on key initiatives and projects.Champion and advocate the ownership of technology risk management, ensure risks are understood and managed within approved risk thresholds.Partner with Group Office to evaluate new tech risk solutions and assess the implementation risk of the group-wide projects.Increase awareness and enhance risk culture across the organisation and provide day to day risk and control advice as trusted 2nd line subject matter expert.Reporting and Monitoring (as second line) (40%)Define and monitor relevant KRIs related to IT risks and provide regular update to Operational Risk Committee, and update Group Technology Risk when necessary.Monitor security incident response, handling, and investigation process.Manage the communications with Group Office, business partners, corporate clients and other external parties on IT security matters.Interface and liaise with business key stakeholders (e.g. HR, PD, Customer Experience and Transformation, Health & Wellness Strategy Management etc) to roll out new Technology Risk initiatives and uplift the security of the business applications.Serve as subject expert in examining Risk Papers of key projects.Regular reporting to senior management and relevant committees on technology risk and security matters, including developments in the organization’s technology risk profile in line with developments within and outside the organization, to ensure that the information security, cyber risks and threats are within the company’s risk tolerances.Lead the technology risk and control assessment and effective risk management practices and recommend actions to be taken for execution.Staff Development (10%)Responsible for structuring, coaching, and developing team members to strengthen the capabilities of Technology Risk function.Minimum Job Requirements:Degree holder in Computer Science, Information Systems/ Security, or related discipline.At least 15 years of relevant and solid experience in technology risk management and control, gained from sizable multi-national banks and insurance companies.Solid understanding of IT security products and solutions. Knowledge of SailPoint IIQ and CyberArk are definite advantages.Subject matter expert in mobile and web application security -- Authentication, Access Control, Data Encryption and Data Loss Prevention.Equipped with IT security certifications -- Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified Information Systems Manager (CISM), Certified Information Forensic Investigator (CIFI).Knowledge of PCI-DSS and implementing information security frameworks or standards, such as NIST, ISO 27001, COBIT.Analytical and objective; able to elaborate on, characterize, assess, and evaluate risks.Confident and trustworthy; keen to earn the respect and trust of, and inspire, others. Independent and have a strong sense of taking one own’s initiative to solve problems.Others:You are required to obtain relevant license if your job involves in regulated activities.Build a career with us as we help our customers and the community live Healthier, Longer, Better Lives.You must provide all requested information, including Personal Data, to be considered for this career opportunity. Failure to provide such information may influence the processing and outcome of your application. You are responsible for ensuring that the information you submit is accurate and up-to-date.Do you believe in better?

At AIA, we don’t believe in simply being ‘The Best’. We believe in Better - because there’s no limit to how far ‘better’ can take us.We believe that empowering our leaders to lead in their own unique way enables them - and their teams - to thrive and make a greater difference, every day.So that together we can support even more people - including our own - to live Healthier, Longer, Better Lives.If you believe you can help guide us towards a better tomorrow, we'd love to hear from you.

#J-18808-Ljbffr

  • Central And Western District, Hong Kong SAR China AIA Hong Kong and Macau Full time

    At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone.It's about finding new ways to not only better people's lives, but to better the communities and environments we live in. And we build on this every day with our ambition to engage one billion people to live Healthier, Longer, Better Lives by 2030.And to get...


  • Central And Western District, Hong Kong SAR China KOS International Limited Full time

    Head of Security Governance & Technology Risk (60464) Hong KongAbout the ClientOur client is a reputable company that has strong business in Hong Kong and China. With an increasing growth and a vision to diversify their portfolio, they are now seeking a Head of Security Governance & Technology Risk to join their team.About the RoleThis is a newly established...


  • Central And Western District, Hong Kong SAR China AIA Hong Kong And Macau Full time

    At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone. It’s about finding new ways to not only better people's lives, but to better the communities and environments we live in. And we build on this every day with our ambition to engage one billion people to live Healthier, Longer, Better Lives by 2030. And...


  • Central And Western District, Hong Kong SAR China Bank of China Full time

    Technology Risk Manager (Information Security Control Division)Job No.:499438Employment Type:Full timeDepartments:Information Technology DepartmentJob Functions:Information TechnologyRoles and Responsibilities & Specific Requirements (Application Security):Assist in reviewing IT initiatives and provide advisory from technology risk perspectives.Assist to...


  • Central And Western District, Hong Kong SAR China China Construction Bank (Asia) Corporation Limited Full time

    - Responsible for overseeing and implementing the Bank's Information Security program and enforcing its Information Security policy.- Facilitate the information security risk management process in the Bank.- Formulate strategies and policies on IT security risk management to ensure the standard and process are fully complied with related regulatory...


  • Central And Western District, Hong Kong SAR China International Executive Service Corps Full time

    Assist Group COO and Group Head of ITD in maintaining/exercising oversight functions on key risks, controls and enhancement initiatives, to ensure proper governance and control are in place and in line with the control strategy and objectives set out by the ITD; Play an active role in identifying compliance and internal control issues within the ITD; Conduct...


  • Central And Western District, Hong Kong SAR China International Executive Service Corps Full time

    Assist Group COO and Group Head of ITD in maintaining/exercising oversight functions on key risks, controls and enhancement initiatives, to ensure proper governance and control are in place and in line with the control strategy and objectives set out by the ITD; Play an active role in identifying compliance and internal control issues within the ITD; Conduct...


  • Central And Western District, Hong Kong SAR China RecruitFirst Full time

    Executive Director/Head of Technology Risk (FS industry Circa 1.8M-2.5M)Main Responsibilities:Oversee and guide the company’s approach to technology risk governance, ensuring that insights and observations are effectively reported. This includes preparing materials for regular meetings with the Board and executives, defining the Group's risk appetite,...


  • Central And Western District, Hong Kong SAR China Bank Of China Full time

    Technology Risk Manager (Information Security Control Division)Job No.: 499438 Employment Type: Full time Departments: Information Technology Department Job Functions: Information Technology Roles and Responsibilities & Specific Requirements (Application Security): Assist in reviewing IT initiatives and provide advisory from technology risk perspectives....


  • Central And Western District, Hong Kong SAR China Liberty Mutual Insurance Full time

    Head of Technology Strategy & Planning, APACThe Liberty International Insurance (LII) APAC Technology Head of Strategy and Planning is responsible for setting the overall strategic direction for the APAC Technology organization; leading strategic transformational initiatives; driving the Tech innovation and process excellence strategy; and quarterbacking the...


  • Central And Western District, Hong Kong SAR China KOS International Limited Full time

    Head of Security Governance & Technology Risk (60464) Hong Kong About the Client Our client is a reputable company that has strong business in Hong Kong and China. With an increasing growth and a vision to diversify their portfolio, they are now seeking a Head of Security Governance & Technology Risk to join their team. About the Role This is a newly...


  • Central And Western District, Hong Kong SAR China Bank of China Full time

    Senior / Technology Risk Manager (Cyber Security Control Division)Job No.:494307Employment Type:Full timeDepartments:Information Technology DepartmentJob Functions:Information Technology, Risk ManagementRoles and Responsibilities & Specific Requirements (Application Security):Assist in reviewing IT initiatives and provide advisory from technology risk...


  • Central And Western District, Hong Kong SAR China HSBC Full time

    Some careers grow faster than others.If you’re looking for a career that will give you plenty of opportunities to develop, join HSBC and your future will be rich with potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you...


  • Central And Western District, Hong Kong SAR China The Bank Of East Asia, Limited Full time

    1 day ago Be among the first 25 applicants Direct message the job poster from The Bank of East Asia, Limited (BEA)Senior Talent Acquisition Manager at The Bank of East Asia Position Summary The incumbent will supervise the Retail Credit Risk team to manage the credit risk of retail lending portfolios at each stage of credit cycle, i.e. from acquisition,...


  • Central And Western District, Hong Kong SAR China The Bank of East Asia, Limited (BEA) Full time

    1 day ago Be among the first 25 applicantsDirect message the job poster from The Bank of East Asia, Limited (BEA)Senior Talent Acquisition Manager at The Bank of East AsiaPosition SummaryThe incumbent will supervise the Retail Credit Risk team to manage the credit risk of retail lending portfolios at each stage of credit cycle, i.e. from acquisition,...


  • Central And Western District, Hong Kong SAR China Bank of China Full time

    Head of Digital WealthJob No.:499398Employment Type:Full timeDepartments:Personal Digital Banking Product DepartmentJob Functions:Business Development, Information Technology, Project Management, FinTechResponsibilities:Closely and proactively collaborate with product managers to explore online product sales opportunities.Manage product UX/UI design to earn...


  • Central And Western District, Hong Kong SAR China Bank of China Full time

    Head of Digital WealthJob No.:499398Employment Type:Full timeDepartments:Personal Digital Banking Product DepartmentJob Functions:Business Development, Information Technology, Project Management, FinTechResponsibilities:Closely and proactively collaborate with product managers to explore online product sales opportunities.Manage product UX/UI design to earn...


  • Central And Western District, Hong Kong SAR China Bank of China Full time

    Senior Dealer (Head of Southeast Asia)Job No.:492462Employment Type:Full timeDepartments:Global MarketsJob Functions:Dealing & TradingResponsibilities:Manage Southeast Asian branches’ trading business.In charge of the risks/positions/market making business in the Southeast Asia market.Be responsible for supervising, leading, and training the subordinates...


  • Central And Western District, Hong Kong SAR China Bank of China Full time

    Senior Dealer (Head of Southeast Asia)Job No.:492462Employment Type:Full timeDepartments:Global MarketsJob Functions:Dealing & TradingResponsibilities:Manage Southeast Asian branches' trading business.In charge of the risks/positions/market making business in the Southeast Asia market.Be responsible for supervising, leading, and training the subordinates of...


  • Central And Western District, Hong Kong SAR China Bank Of China Full time

    Head of Digital Wealth Job No.: 499398 Employment Type: Full time Departments: Personal Digital Banking Product Department Job Functions: Business Development, Information Technology, Project Management, Fin Tech Responsibilities: Closely and proactively collaborate with product managers to explore online product sales opportunities. Manage product UX/UI...