SVP/VP - Information Security/ Cybersecurity, Technology Risk Manager, Tech COO, Group Technology

DBS Bank

SVP/VP - Information Security/ Cybersecurity, Technology Risk Manager, Tech COO, Group Technology - (WD75037)

Job Summary

  • Technology is key to enabling the DBS vision of being the leading bank in Asia. To meet the challenges arising from the ever-evolving technological advancements and increasing sophistication and demands of customers, there is a need for deft Technology Risk Managers to ensure robust risk governance.
  • As a member of the Technology Risk Management team, you will oversee a global portfolio of technology risk management activities (includes participating in any technology risk management related initiatives), with a focus on:
    • Targeted Risk Reviews
    • Policy/Standard/Guide enforcement validation
    • Thematic risk analysis for IT risks
  • This role ensures that DBS Bank’s technology risk framework aligns with global regulatory requirements (MAS, HKMA, RBI, GDPR, etc.)and industry best practices (NIST, ISO 27001, COBIT), and internal policies while identifying vulnerabilities and recommending mitigation strategies.
  • The position requires a strategic leader who can identify systemic risks, drive audit remediation, and enhance governance across all regions where DBS operates.

Job Duties & Responsibilities

  • Accountable for managing internal and external reviews/audits from audit planning (such as request for information (RFI), opening meeting, etc.), fieldwork (such as RFI, issue discussion, etc.), to reporting and closing meeting.
  • Responsible for monitoring and validating the closure of management actions, arising from internal and external reviews/audits, including regulator inspection reviews.
  • Perform review of new / revised processes, provide risk opinion and ensure proper approvals and documentations.
  • Collaborate with the different technology teams to conduct post implementation review of new / revised processes to provide assurance.
  • Prepare and develop technology risk insights (such as IT audit thematic and trend analysis) to be presented at forums (such as technology risk forums, etc.).
  • Engage and collaborate with technology stakeholders to proactively identify risks at a detailed and technical level and ensure that IT is effectively driving remediation activities and to continuously improve IT risk posture.
  • Stay ahead of cyber threats, regulatory changes, and digital banking risks.
  • Drive automation (e.g., data analytics, AI/ML) for continuous auditing.
  • Provide risk assessment and advisory as required:
    • Evaluate the effectiveness of IT risk governance, security policies, and control frameworks.
    • Assess cyber resilience, red-team exercises, and penetration testing outcomes.
    • Provide actionable recommendations to senior management for risk mitigation.
  • Manage technology risk initiatives and perform targeted reviews focusing on, but not limited to, the following domain areas:
    • Cybersecurity controls (e.g., network security, endpoint protection, cloud security, IAM, encryption)
    • Regulatory compliance (MAS, GDPR, RBI, HKMA, etc.)
    • Third-party/vendor risk management
    • Incident response & threat intelligence capabilities
    • Emerging risks (AI, fintech, API security)

Required Qualifications & Experience

Required Experience

  • At least 12 years (SVP) / 8 years (VP)in technology risk management, IT audit, or cybersecurity governance, preferably in global banking/financial services.
  • Deep expertise in:
    • Regulatory frameworks (MAS TRM, Basel III, GDPR, SOX-ITGC)
    • Cloud security (AWS, Azure, GCP) and DevSecOps controls
    • Third-party & supply chain risk management
    • Data analytics for risk monitoring (Excel, Power BI, Tableau, SIEM tools)
  • Proven track record in leading global risk programs and managing cross-regional stakeholders.
  • Demonstrated experience in Identifying, assessing and advising on technology risks.
  • Excellent organizational, problem solving, interpersonal and operating skills to effectively drive the IT Risk agenda with IT functions.
  • Strong communication skills at all levels -- able to effectively communicate with IT and senior management, as well as line staff to drive IT risk mitigation initiatives and other IT risk management related areas.
  • Ability to leverage on data analytics to present trends, explain complex issues in a presentable and logical manner
  • Experience in driving IT risk management in digital age, leveraging Gen AI and Machine Learning tools, a plus.
  • Knowledge of Information Security, System Resiliency & Availability & Software development practices and frameworks and regulatory requirements preferred.
  • Good technical competencies and exposure to IT application or infrastructure development, support and management.
  • Demonstrated experience of leveraging data and analytics to get stakeholder buy-in is a plus.

Soft Skills:

  • Strong executive communication(for Technology EXCO-level reporting).
  • Ability to translate technical risks into business impact.
  • Leadership in driving cultural change toward risk awareness.

Education & Certifications:

  • Bachelor’s/Master’s in Cybersecurity, IT Risk, Computer Science, or related field.
  • Certifications (Required):CISA, CISSP, CRISC, CISM, or equivalent.
  • Preferred:ISO 27001 Lead Auditor, AWS/Azure Security, CCSP.
  • en

Primary Location

: Singapore-DBS Asia Hub

Job

: Technology

Schedule

: Regular

Employee Status

:

Full-time

:

Job Posting

: Jun 20, 2025, 2:40:59 AM

Read Full Description
Confirmed 22 hours ago. Posted a day ago.

Discover Similar Jobs

Suggested Articles