Associate / Associate Director, First Line Risk

2 days ago


Hong Kong, Central and Western District, Hong Kong SAR China Rabobank Gruppe Full time

This is a risk management role predominantly covering Information Security domain (including Cyber Security) and Business Continuity. However, it also touches other non-tech domains such as Third Party risk, Privacy risk, Risk and Control framework, Regulatory compliance review and staff awareness. The candidate will be responsible for providing oversight and advisory in risk-related matters. This role will be the point of contact and provide guidance for matters relating to the above-mentioned domains within the region. One of the key tasks is to coordinate with various stakeholders (global/local) for implementation of global initiatives within the bank. Preparing MIS/Information packs/Reports on a regular basis and presenting the same to senior management.

Key Responsibilities and Accountabilities:

Information Security and Cybersecurity Management

  • Implement Global/Regional Information Security Policies, Standards, Processes & Procedures.
  • Systems Security Risk and Compliance Management.
  • Execute security assessments (system, business partner, infrastructure, regulatory, other) in line with Rabobank security baselines and relevant technology and cyber regulatory requirements. Assess the residual risk and identify remedial actions. Ensure adherence to global industry standards (NIST, ISO) by participating in the group maturity assessment exercise.
  • Coordinate and facilitate system penetration tests.
  • Support the security monitoring on a routine basis by covering Data Leakage Prevention (DLP) controls.
  • Liaise with the Security Operations Centre (SOC) on security incident and event management, oversight on vulnerability management & accountable for incident response/recovery if necessary.
  • Execute both automated and manual system access recertification.
  • Validation role in Operational processes (e.g., Firewall rule change reviews, Production data extraction requests, Robotic automation, etc.).
  • Supervise IT changes and represent security functions in the change board.
  • Participation in cybersecurity projects, enhancements; providing security advisory (i.e., definition of technical solutions to specific security requirements; identifying specific security implications).
  • Review and assess new, extension and closure of IT findings.
  • Facilitate the IT risk acceptance approval. Evaluate the risk and advise on action plans for non-compliant items.
  • Support internal/external and audit requests from the first line risk perspective.
  • As the secretary, coordinate and facilitate the Asia CIOO In Control meeting.
  • Prepare and present IT, Cyber and Business Continuity Risk Profile to relevant forums and committees for management oversight.
  • Monitor and provide regular reporting on security risk and compliance (e.g., IT KRI/KPI, IT Risk Dashboard, Global COO In Control Meeting, Asia quarterly in control, etc.). Provide challenge and escalation as a Subject Matter Expert where necessary.
  • Monitor and follow up on open findings under Asia COO domain to ensure closure within the timeline.
  • Capable of producing quality MIS/information packs/reporting for senior management.

Regulatory Compliance and Change:

  • Monitoring regulatory changes with regards to Technology, Cyber Security and Business Continuity and recommend respective changes and enhancements to the Global/Regional Policies, Standards, Processes, Procedures and Risk and Control framework.
  • Remain up to date with Global Policies and Standards; ensure that changes are well understood and align with the regulatory requirements.

Risk and Control Activities:

  • Represent as Risk and Control Partner for COO domain. Participate actively in the dynamic risk identification and assessment in conjunction with IT and Operations team.
  • Assist with the continuous embedding of the Operational Risk Management framework for Technology, Cyber security and Business Continuity Risk and Control within the Technology and Business Continuity function, in collaboration with the First Line teams and Head Office.
  • Perform Control Self-assessment (CSA) testing of the Technology, Cyber Security and Business Continuity controls.
  • Promote security, cyber and business continuity awareness within the region.
  • Design training and security awareness campaign for IT teams and colleagues.

Business Continuity Management (BCM):

  • A member of Damage Assessment Team (DAT) representing Business Continuity domain.
  • Act as BC Coordinator (key advisor) for business continuity management and operational resilience in Asia. Linking pin between Asia and Global BCM team.
  • Perform oversight of departments' Business Impact Analysis (BIA) and Business Continuity Plan (BCP) annual review. Ensure they are reviewed and up-to-date.
  • Supervise IT Disaster Recovery (DR) activities and Business Continuity (BC) exercises.
  • Facilitate tabletop/simulation exercises (Cyber, operational resilience) and present the results to senior management.
  • Accountable for resilience and risk reporting to head office.
Qualifications:
  • Minimum of 5 to 10 years' experience in the Information Risk and Security field.
  • Experience in Information Security in a financial industry with regional coverage is preferred.
  • Involvement in Business Continuity activities would be a plus.
  • Holder of professional certification such as CISSP, CISA, CISM, CRISC or equivalent.
  • Understanding of banking business and technology environment, application and process.
  • Proficiency in deck design for making effective presentations to senior management.
  • Understanding of industry standards such as NIST, ISO 27001, etc.
  • Strong understanding of requirements from Asian regulators such as MAS, HKMA, CBIRC/PBOC and RBI.
  • Demonstrable experience of leveraging best practice and industry standards.
  • Understanding of systems development practices and lifecycle management.
  • Understanding of IT Governance within an organization including its components, benefits and practices.
  • Understanding of the operational processes and technology challenges within the financial industry.
  • Ability to deliver clear and effective communication between organizational functions, business units and branches, locally and globally.
  • Knowledge of Microsoft 365 platform.
  • Microsoft Power Platform (Power BI, Power Apps, Power Automate).
  • Proficient in use of SharePoint.
  • Understanding of common cloud strategies including architecture and resilience.
  • Experience with GRC tool such as Archer.
  • Understanding of various security tools such as SIEM, PIM, WAF, Vulnerability scanning & reporting.
  • Understanding of the relevant outsourcing and third-party management in MAS and HKMA.

Diversity & Inclusion

At Rabobank Asia, we:

Believe a diverse and inclusive workplace is the foundation of our performance.

Embed diversity in everything we do on a daily basis, whether it be our hiring, culture, development opportunities or our policies.

Value differences in our people which is represented in terms of gender identity, age, sexual orientation, religion, ethnicity, disability, background, education, expertise or character.

Embrace people from all walks of life to build a strong, creative, innovative and dynamic workforce that is reflective of the diversity of our community.

Treat everyone equally so that everyone can be themselves, and each individual feels respected and valued on the basis of who they are.

The Application Process

This is our standard application process. It may vary by role.

Step 1: You Apply

Thanks for applying You will always receive a confirmation of your application by email. We review all the CVs and covering letters that we receive. We will let you know as soon as possible if we invite you for an interview.

Step 2: Interview

We invite you for one or more (online) interviews. We want to know if you fit the role and the team. You probably have many questions for us too. For some positions, we may also ask you to complete an assignment or assessment.

Step 3: Our Offer

Are you the new colleague we are looking for, and do you also feel happy with us? Congratulations You will receive a good offer from us. Before you start, we conduct a legal screening to ensure that our employees do not pose a risk to us and our customers.

Step 4: Welcome

Welcome to Rabobank We look forward to seeing you and can't wait to work together.

Apply for this job Associate / Associate Director, First Line Risk #J-18808-Ljbffr

  • Hong Kong, Central and Western District, Hong Kong SAR China Standard Chartered Full time

    Associate Director, FI & Fintech Client Risk AdvisoryThe FI and Fintech Client Risk Advisor is responsible for contributing to the Global Initiatives and BAU tasks for the Financial Institution ("FI") Risk Advisory team, particularly the management of risks associated with the products and services offered and sold to those Clients and how they support the...


  • Hong Kong, Central and Western District, Hong Kong SAR China ConnectedGroup Full time

    Associate Director, Treasury (KK-ATD) Hong Kong Salary: HKD85000 - HKD100000 per month + Bonus Associate Director, Treasury We are assisting a well-known Property Developer in their search for an Associate Director, Treasury. This role is vital for ensuring effective financial management and supporting the company's growth in property development....


  • Hong Kong, Central and Western District, Hong Kong SAR China Barson Executive Search Ltd Full time

    Direct message the job poster from Barson Executive Search Ltd Our independent trust and fiduciary services firm client wants to grow their Trust Advisory team in Hong Kong. Reporting to the CEO, the Trust Associate/Manager/Director, Business Development, Hong Kong will build, manage, and take responsibility for trust structures administered by the...


  • Hong Kong, Central and Western District, Hong Kong SAR China First Page Full time

    Job Description Looking to take your digital career to a whole new level? Then this role is for you First Page is a certified "GREAT PLACE TO WORK" and is a global digital marketing firm that transforms the way companies do business online. Since 2011, our mission has been to create amazing digital experiences by implementing game-changing digital...


  • Hong Kong, Central and Western District, Hong Kong SAR China Generali Hong Kong Full time

    Risk Management Associate - Job Summary:We are seeking a highly skilled Risk Management Associate to join our team. The successful candidate will be responsible for managing claims related to Travel and Accident & Health Insurance.As a key member of our claims department, you will work closely with internal stakeholders to resolve claims-related issues and...


  • Hong Kong, Central and Western District, Hong Kong SAR China Ogilvy Full time

    Ogilvy Hong Kong, China Job Posted Date: 02/26/2025 About Ogilvy Ogilvy has been creating impact for brands through iconic, culture-changing, value-driving ideas since the company was founded by David Ogilvy 75 years ago. It builds on that rich legacy through Borderless Creativity – innovating at the intersections of its advertising, public relations,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pure Search Full time

    About UsWe are a leading MNC seeking a seasoned professional to join our regional team as an Associate Director/Senior Manager - FP&A. As a key member of our finance team, you will be responsible for developing and implementing financial planning and analysis strategies that drive business growth and improvement.Key Responsibilities: Develop and maintain...

  • Associate Director

    4 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China BRG Full time

    Berkeley Research Group provides independent advice, data analytics, authoritative studies, expert testimony, investigations, and regulatory and dispute consulting to Fortune 500 corporations, financial institutions, government agencies, major law firms, and regulatory bodies around the world. BRG experts provide sophisticated economic, financial, and...

  • Associate Director

    1 day ago


    Hong Kong, Central and Western District, Hong Kong SAR China Marketing Management Analytics, Inc. Full time

    We are recruiting an enthusiastic and drivenAssociate Director , who thrives on being part of a high-performing team and with a proven, strong track record of working in a research agency in a quantitative role. Overview of the successful candidate You must possess experience in building great relationships with clients beyond the transactional,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Chubb Full time

    **Job Summary**We are seeking a highly motivated and detail-oriented Risk Management Associate to join our team at Chubb. As an integral part of our underwriting process, you will be responsible for managing assigned renewals, handling new submissions, and communicating with producers to obtain necessary information.Key Responsibilities:Manage assigned...


  • Hong Kong, Central and Western District, Hong Kong SAR China Malvern College Hong Kong Full time

    Associate Director of University & Careers Guidance With strong links to Malvern College, a leading independent school in Worcestershire, England, Malvern Colleges Asia seeks to appoint an inspirational Associate Director of University & Careers Guidance to lead and facilitate the University Careers Guidance across campuses in Chengdu, Hong Kong and Tokyo....


  • Hong Kong, Central and Western District, Hong Kong SAR China CCB International (Holdings) Limited Full time

    Vice President/Associate Director (AMO) – Wealth Investment Services Get AI-powered advice on this job and more exclusive features. Responsibilities: Develop and implement investment strategies tailored to clients' financial goals and risk tolerance. Build and maintain strong & long-term client relationships through effective communication and regular...


  • Hong Kong, Central and Western District, Hong Kong SAR China First Page Full time

    About First Page\First Page is a certified GREAT PLACE TO WORK and a global digital marketing firm that transforms the way companies do business online.\We have seen insane growth and won numerous awards over the past 3 years as APAC's highest-rated digital agency.


  • Hong Kong, Central and Western District, Hong Kong SAR China TransPerfect Full time

    APAC Partnerships Associate (Japanese Speaker) 3 weeks ago Be among the first 25 applicants About Us TransPerfect is a leading provider of globalization solutions, enabling businesses to effectively communicate and engage with their audiences worldwide. With a comprehensive suite of services, including translation, localization, and AI-driven technologies,...

  • Senior Associate

    4 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China ALL-STAR AGENCY Full time

    Senior Associate - Treasury Operation (FX & MM) Overview: We are assisting our banking client, an expanding corporate bank known for its commitment to innovation and exceptional client service, in their search for a Senior Associate in Treasury Operations with a focus on FX & Money Market (MM). This is an exciting opportunity to join a dynamic team that...

  • Strategy Associate

    2 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China Crypto Full time

    Strategy Associate (Business Operations) We are seeking a Strategy Associate to join the Strategy team at Crypto.com, focusing on business operations . The ideal candidate is someone who is fluent with making business recommendations based on data analysis, detail-oriented & organized, and able to collaborate effectively with internal teams to improve...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pinpoint Asia Full time

    IT Governance Associate - Insurance Group Our client is a leading insurance group with a sizeable Technology presence in Hong Kong. We are currently looking for an IT Governance Associate to join the firm and look after the IT Control and related IT Compliance matters. This role will work closely with the IT Management team and drive firmwide policy. Great...

  • Business Associate

    7 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China Wellington Management Company, LLP Full time

    About Us Wellington Management offers comprehensive investment management capabilities that span nearly all segments of the global capital markets. Our investment solutions, tailored to the unique return and risk objectives of institutional clients in more than 60 countries, draw on a robust body of proprietary research and a collaborative culture that...


  • Hong Kong, Central and Western District, Hong Kong SAR China Standard Chartered Life and Careers Full time

    The role holder will be responsible for proactively managing the credit risk & risk/return benefit and act as a portfolio manager of a complex portfolio of Global Banking (GB) accounts in close co-ordination with the originating deal team. The products comprise of Leveraged & Acquisition Finance (LBO, structured finance, dividend recapitalisation, hold-co...


  • Hong Kong, Central and Western District, Hong Kong SAR China Airwallex Full time

    About Airwallex Airwallex is the only unified payments and financial platform for global businesses. Powered by our unique combination of proprietary infrastructure and software, we empower over 100,000 businesses worldwide – including Brex, Rippling, Navan, Qantas, SHEIN and many more – with fully integrated solutions to manage everything from business...