Senior Control Manager, Technology Risk and Governance

Salary
S$8,000 - S$15,000 - Per Month
Location
- None Specified -
Type
Contract
Workplace
Hybrid
Published
Jul 28, 2026
Ref
172589
Share this

Location: Singapore

Salary: SGD $8,000 – $15,000 per month

The Opportunity

Reporting to the Chief Information Officer, you will strengthen the bank’s technology risk management framework, ensuring adherence to regulatory requirements, internal technology controls, and industry best practice. You will identify, assess, monitor, and report on technology risks, driving compliance initiatives across the technology landscape to safeguard information assets and maintain a robust control environment.

Key Responsibilities

  • Conduct technology risk assessments across applications, infrastructure, cloud, and third parties to identify vulnerabilities, threats, and control gaps.
  • Evaluate control effectiveness and recommend enhancements; maintain and update the technology risk register and remediation plans.
  • Monitor Key Risk Indicators (KRIs) and technology risk metrics to provide early warning of emerging issues.
  • Participate in project lifecycle/SDLC reviews to embed security and risk-by-design principles.
  • Interpret, implement, and monitor compliance with Singapore regulatory requirements and relevant standards covering cyber security, data governance, business continuity, outsourcing, and incident management.
  • Support regulatory inspections and audits; track findings and drive timely remediation.
  • Assist in developing and updating technology risk policies, standards, procedures, and guidance; drive awareness and adoption across the organisation.
  • Support incident management from a risk perspective, including root cause and impact assessment; contribute to BCP/DR plan reviews and testing.
  • Act as a key contact for regulatory notifications, including incident reporting.
  • Assess vendor/service provider technology risks; ensure contracts include appropriate security and compliance clauses; monitor ongoing compliance.
  • Prepare dashboards and reports for senior management and governance forums; communicate risk posture, compliance status, and emerging threats.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, Information Systems, Business, or related discipline (Master’s is advantageous).
  • Minimum 10 years’ experience in Technology Risk Management, IT Audit, Information Security, or IT Compliance within financial services.
  • Mandatory: Strong knowledge and practical experience with MAS Technology Risk Management (TRM) Guidelines.
  • Working knowledge of PDPA and familiarity with other regulatory expectations and industry frameworks (e.g. ISO 27001, NIST, COBIT, ITIL; AML/CFT awareness is advantageous).
  • Strong understanding of banking technology, IT general controls (ITGC), application controls, and infrastructure security.
  • Proficiency in risk assessment methodologies and tools; excellent analytical and problem-solving skills.
  • Excellent written and verbal communication skills, able to translate technical concepts for non-technical stakeholders.
  • Certifications advantageous: CRISC, CISM, CISA, CISSP.
  • Proactive, curious, and able to work independently and collaboratively in a fast-paced environment.

Apply

Gravitas Recruitment Group
Follow us
© Gravitas Group 2026Site by