Associate Director, CS Risk & Control; Malaysia, India
Listed on 2026-01-13
-
IT/Tech
Cybersecurity, Information Security, IT Consultant
Job Summary
When you start the application process you will be presented with a drop down menu showing all countries, please ensure that you select a country where the role is based. This role could be based in Malaysia and India.
The TTO ICS Risk and Governance has been set-up to provide best in class risk & control execution from both a ‘Vertical’ and ‘Horizontal’ perspective. Central Risk & Governance is one of the horizontal functions in the TTO ICS team with the objective to ensure effective application of relevant Principal Risk Type Frameworks across TTO ICS, including the provision of relevant information to Risk Management and Oversight Forums, and to oversee the timely identification and resolution of emerging risks, issues, and findings.
In addition, to raise the effectiveness and efficiency of risk and control management across all ICS domains.
Associate Director, ICS Risk and Control LRM role is created under Cyber Security Service Risk and Control team for managing and responding to regulatory & external audit requests for information (RFI) related to vulnerability management infrastructure security & Application Security. This role requires an understanding of regulatory requirements, vulnerability assessment processes, and effective communication.
Key Responsibilities- Regulatory RFI Management
- Serve as the primary point of contact for regulatory RFI requests related to vulnerability management infrastructure security & Application Security domains.
- Coordinate with internal teams to gather necessary information and documentation to respond to RFI requests.
- Ensure timely and accurate submission of responses to regulatory bodies.
- Vulnerability Management
- Collaborate with the Vulnerability Management team to understand current vulnerability management processes, tools, and methodologies.
- Documentation and Reporting
- Prepare comprehensive and clear documentation to support RFI responses, including detailed reports, summaries, and supporting evidence.
- Ensure all documentation meets regulatory requirements and is presented in a professional manner.
- Stakeholder Communication
- Communicate effectively with internal stakeholders to gather necessary information and ensure alignment on RFI responses.
- Process Improvement
- Identify opportunities to improve the efficiency and effectiveness of the RFI response process.
- Implement best practices and standard operating procedures to streamline RFI management.
- Audit Support
- Assist with external audits related to vulnerability management and regulatory compliance.
- Provide documentation and evidence to support audit activities and findings.
- Support liaison with LRM AIC team and any third party or regulatory inspections.
- Be adept in the vulnerability management infrastructure security & Application Security processes to be able to respond to RFI queries on their own.
- Escalating significant risks and issues to the group process Owners and control owners.
- Display exemplary conduct and live by the Group’s Values and Code of Conduct.
- Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank. This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct.
- Head Vulnerability Management and Infrastructure Security
- Head Application Security and Assurance
- AIC LRM team
- Country CISO POCs.
- Perform other responsibilities as assigned by the Risk & Control Lead
- EDUCATION:
Bachelor / Honours Degree in Information Technology, Computer Science, Cyber Security or other technology related qualifications - LANGUAGES:
English
- Technology / Cyber Security Risk Management
- Vulnerability Management
We’re an international bank, nimble enough to act, big enough for impact. For more than 170 years, we’ve worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).