Tech Risk Management

Tech Risk

We are seeking a highly skilled and motivated individual to join our team as a Technology Risk Management. In this role, you will be responsible for assessing, monitoring, and mitigating technology-related risks within our organization. You will play a crucial role in safeguarding our technology infrastructure, data assets, and operations against potential threats and vulnerabilities. As a Technology Risk Management, you will collaborate with cross-functional teams to ensure adherence to industry best practices and regulatory requirements while maintaining an effective risk management framework.


  • Provide consultancy advice to business and project teams to ensure security standards and requirements are considered and implemented.
  • Perform deep dive reviews focused on Cybersecurity Risk, Technology Risk, and Emerging Risk.
  • Effective management of all technology risk and cybersecurity framework including technology policies and standards based on the Group’s risk appetite.
  • Closely monitor technology and cyber related KPIs, KRIs, KCIs and drive remediation actions as Group perspective.
  • Timely update on all material technology risk and cybersecurity topics including a set of risk indicators to the relevant Group Risk Committees and forums.
  • Oversight the result of control testing from subsidiaries to ensure Cybersecurity and technology controls meet internal and external compliance requirements.
  • Conduct technology risk assessments: Identify and evaluate potential risks Management with the organization’s technology systems, infrastructure, and processes. Assess the adequacy of controls, identify vulnerabilities, and recommend risk mitigation strategies.
  • Develop and implement risk management strategies: Collaborate with stakeholders to develop comprehensive risk management strategies that align with business objectives and regulatory requirements. Implement controls and procedures to mitigate identified risks effectively.
  • Monitor technology risk exposure: Continuously monitor technology systems, networks, and processes to identify emerging risks, vulnerabilities, and trends. Stay up-to-date with industry developments, emerging technologies, and regulatory changes to proactively address potential risks.
  • Perform risk analysis and reporting: Analyze risk assessment findings, internal control evaluations, and audit reports to identify trends, root causes, and areas of improvement. Prepare detailed reports on risk exposure, mitigation strategies, and recommendations for management and relevant stakeholders.
  • Collaborate with cross-functional teams: Work closely with IT teams, compliance officers, cybersecurity professionals, and other stakeholders to develop and implement risk management frameworks, policies, and procedures. Provide guidance and recommendations on technology-related risk management activities.
  • Conduct technology risk training and awareness programs: Develop and deliver training programs to educate employees on technology risk management best practices, policies, and procedures. Raise awareness about emerging threats and provide guidance on incident response protocols.
  • Assist in incident response and recovery: Support the organization in managing technology-related incidents, including data breaches, system failures, and cybersecurity threats. Coordinate response efforts, assist in recovery measures, and contribute to post-incident reviews and lessons learned.
  • Stay updated on industry standards and regulations: Keep abreast of industry trends, emerging technologies, and regulatory requirements related to technology risk management. Provide recommendations on incorporating best practices into the organization’s risk management framework.


  • Minimum of 5 years’ experience in Technology and Cyber Risk.
  • Bachelor’s degree or above in related discipline.
  • Working experience or familiar in a group public company.
  • Understanding of regulatory requirements such as BOT, OIC, and SEC; industry standards such as COBIT, NIST, ISO27001, ITIL, and PCIDSS.
  • Experience in one or more emerging technologies such as Artificial Intelligence, Machine Learning, Distributed Ledger Technology, Robotic Process Automation, Cloud computing.
  • Excellent communication and relationship building skills; proven ability to influence senior management.
  • Good command of written and spoken in English is preferable.

You agree to our Privacy Policy