JOB SUMMARY
The Group Operational, Technology and Cybersecurity Risk (OTCR) organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's data and IT systems by managing technological, information and cyber security (ICS) risks across the enterprise.
As a critical function reporting into the Group Chief Risk Officer (CRO), Group OTCR serves as the second line of defence for assuring Operational, Technology and ICS controls are implemented effectively and in accordance with the Enterprise Risk Management Framework (ERMF) and the ICS Risk Type Framework, and for instilling a positive culture of Operational, Technology and Cybersecurity risk management within the Bank.
As part of the function, the team of OTCR CISO performs a pivotal role as an extension of the OTCR in supporting the Tech and ICS risk management strategy, governance, advisory and assurance roles that face off to the Client Businesses, Regions, and Functions.
This specific OTCR CISO role has accountability for 2nd Line of Defence oversight over the CISO Global Threat Mgmt and Cyber Defence team. The role therefore requires experience working within such functions and highly sophisticated technical skills across Security Logging and Monitoring, Security Incident Management, Cyber Forensic, Cyber Intelligence and Threat Management.
RESPONSIBILITIES
Strategy
The Operational, Tech and Cybersecurity Risk Officer for Technology & Operations (T&O) is a permanent strategic role that requires strong business acumen, deep knowledge and in-depth experience of Technology and Information and Cyber Security (ICS), particularly in Security Logging and Monitoring, Incident Response and Forensic, Threat Management and Cyber Intelligence complimented by the general knowledge in other ICS areas like Endpoint Detection and Response, Data Leakage Prevention, Insider Threat Management and Purple Team Testing. The successful candidate will have a strong understanding of operating in a second line capacity within an ICS or risk management organisation, and can respond flexibly and collaboratively to evolving business, regulatory and threat requirements. The role reports directly to the Global Head, OTCR TTO. The OTCR for TTO CISO will work with other OTCR Coverage and SME teams to address Tech and ICS as a principal risk types for the Bank and support its integration into the Bank's overall Enterprise Risk Management strategy. The role will provide oversight and challenge of Tech and ICS risk management and control effectiveness as a risk partner to TTO as defined in the Bank's Enterprise Risk Management Framework (ERMF) and ICS Risk Type Framework under delegation from the Global Head of OTCR.
Business
The role delivers services that continually monitor the Tech and ICS threat landscape, undertake constructive and robust oversight of the effectiveness of Tech and ICS controls and risk remediation strategies, and ensure accurate, insightful, and transparent Tech and ICS risk reporting is provided to senior management to provide them appropriate assurance and confidence on the T&O CISO risk profile.
We are seeking an information and cyber security risk specialist to deliver a range of activities associated with the discharging of OTCR second line responsibilities. This role will have considerable engagement with all business units, risk committees, and other stakeholders across the bank, but especially those in T&O covering Cyber Operations and Group Threat Management domains.
Processes
The major functional activities that the OTCR, CISO will lead and manage are:
MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.