ICT & Operational Risk Manager
Our client, a prominent global insurer, is in need of an ICT & Operational Risk Manager to provide support for their Asia business. This role holds significant regional impact, offering exposure to senior stakeholders within Hong Kong and various Asian markets.
If you thrive in a dynamic environment that encompasses technology, cyber risk, and business strategy, and enjoy working at the crossroads of these elements, this position may be an excellent match for you.
In this role, you will be instrumental in shaping and fortifying ICT and cyber risk oversight throughout the region. Collaborating closely with Group and regional leadership, your responsibilities will include translating intricate risk data into clear, actionable insights for decision-makers.
Duties include:
- Leading the full ICT risk reporting cycle, managing monthly monitoring and quarterly reporting tasks
- Assisting with the ongoing improvement and implementation of ICT risk frameworks in Asia
- Spearheading regional projects like cyber risk quantification and analysis initiatives
- Collaborating with Group and regional stakeholders to interpret evolving digital and cyber risk requirements and ensuring consistent application across markets
- Working alongside local risk teams to guarantee high-quality, accurate, and timely reporting that aligns with global standards
- Offering constructive guidance and challenging assessments to enhance risk reporting practices
- Performing detailed analyses and thematic reviews on critical risk areas
- Contributing to broader operational risk activities, encompassing enterprise-wide risk assessments
Requirements:
- Approximately 5+ years of experience in operational, ICT, digital, or cyber risk, preferably within financial services or insurance
- Demonstrated ability to operate in a regional or multinational setting, involving engagement with stakeholders across multiple countries
- Sound comprehension of technology and cyber risk frameworks, controls, and mitigation strategies
- Excellent analytical capabilities, enabling the interpretation of complex data and identification of significant trends and insights
- Skilled communicator adept at simplifying complex topics for senior stakeholders
- Proactive, self-motivated, and comfortable functioning in a fast-paced, evolving environment
Highly preferred:
- Familiarity with frameworks such as ISO 31000, ISO 27001, COBIT, and ITIL
- Exposure to cloud transformation, AI, or digital initiatives
- Relevant certifications such as CISA, CISM, CRISC, CGEIT, ITIL, and ISO 27001
- Broader experience in enterprise risk management and risk assessments