IT Risk Head (Banking) - Makati - up to 170K

weSource Management Consultancy Firm


Date: 1 week ago
City: Makati City
Contract type: Full time
Job brief

We are looking for an IT Risk Head,for our client in Makati

Applicants MUST have at least 8 years of IT risk management, Cybersecurity, or IT governance, with at least 4 years in a leadership or managerial role. (non negotiable)

Role: IT Risk Head

Level: Individual Contributor

Industry: Banking

Location: Makati

Set up: Onsite

Schedule: Mon to Fri, Dayshift

Salary: 120k to 170k

Responsibilities

  • Risk Management Strategy:
    • Develop and implement a comprehensive IT risk management framework aligned with business objectives, regulatory requirements, and industry standards (e.g., ISO 27001, NIST, GDPR).
    • Define and maintain IT risk policies, procedures, and controls to identify, assess, and mitigate risks in information systems, networks, and technologies.
    • Advise senior management on key IT risk exposures and help prioritize risk mitigation efforts based on potential business impact.
  • Risk Identification and Assessment:
    • Lead the identification and evaluation of technology-related risks, including cybersecurity threats, data breaches, system failures, and third-party risks.
    • Conduct regular risk assessments, audits, and vulnerability assessments to proactively identify emerging risks and weaknesses in the IT environment.
    • Develop and maintain risk registers to track identified risks, assessment results, and mitigation efforts.
  • Cybersecurity and Data Protection:
    • Oversee the development and enforcement of cybersecurity policies, including threat detection, incident response, and data protection strategies.
    • Monitor and respond to cyber threats and attacks, ensuring the organization's IT systems are secure and resilient.
    • Ensure compliance with data protection regulations (e.g., GDPR, CCPA, HIPAA) and manage risks related to data privacy.
  • Governance, Compliance, and Reporting:
    • Collaborate with internal and external auditors, regulators, and third-party vendors to ensure compliance with IT risk management standards and regulations.
    • Prepare and present regular reports to senior management and the board of directors on the status of IT risk management, including key risk indicators and mitigation progress.
    • Ensure IT policies, procedures, and controls are in place to meet industry standards and compliance requirements.
  • Incident Management and Response:
    • Lead the IT risk response to major incidents, such as data breaches, system outages, or cyberattacks, ensuring appropriate mitigation and recovery plans are in place.
    • Coordinate with incident response teams and stakeholders to resolve incidents quickly, minimize damage, and prevent recurrence.
    • Conduct post-incident reviews and analysis to identify lessons learned and improve risk management practices.
  • Team Leadership and Collaboration:
    • Build and lead a team of IT risk professionals, providing mentorship and fostering continuous development.
    • Collaborate with other departments (e.g., IT, legal, compliance, operations) to ensure cross-functional coordination in risk management efforts.
    • Promote a risk-aware culture across the organization by conducting training and awareness programs on IT risk, cybersecurity, and compliance.
  • Technology and Vendor Risk Management:
    • Evaluate and manage risks related to the organization's technology stack, including software, hardware, cloud services, and third-party vendors.
    • Assess vendor risks, ensuring third-party contracts contain appropriate risk mitigation clauses and service level agreements (SLAs).
    • Monitor third-party vendors for compliance with organizational security and risk policies.


Requirements

  • Education:
    • Bachelors degree in Information Technology, Cybersecurity, Risk Management, Computer Science, or related field. A Masters degree or certifications (e.g., CISSP, CISM, CRISC, CISA) is preferred.
  • Experience:
    • 8-12 years of experience in IT risk management, cybersecurity, or IT governance, with at least 4 years in a leadership or managerial role.
    • Extensive experience in risk assessments, incident management, and regulatory compliance.
    • Experience with risk management frameworks (e.g., NIST, ISO 27001, COBIT) and IT governance best practices.
    • Strong background in cybersecurity, data protection, and IT infrastructure.
  • Skills and Competencies:
    • Excellent analytical, problem-solving, and critical-thinking skills.
    • Strong leadership and team-building abilities.
    • In-depth knowledge of IT risk management tools and techniques.
    • Effective communication and stakeholder management skills.
    • Ability to manage multiple complex projects simultaneously and meet deadlines.
    • Strong understanding of emerging IT risks, such as cloud computing, AI, and IoT.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Creative Senior Manager

edamama, Makati City
23 hours ago
edamama is the #1 online-to-offline (O2O) platform focused on products and services for parents and families in the Philippines! We're a mama-led company (with dads, aspiring parents, and kid-at-hearts on board too!) on a mission to make parenting easier. Think content, commerce, and community wrapped up in one supportive space. We've reached another milestone in 2023 when we started to...

Junior Research Analyst (Fresh Graduates)

ISS | Institutional Shareholder Services, Makati City
2 days ago
Let’s be #BrilliantTogetherOverviewISS STOXX is hiring! We seek a Junior Research Analyst to join the ISS Research Team. The main responsibility is to analyze proxy statements to complete proxy analyses for shareholders' meetings of publicly traded companies covered by ISS' Research team. This position will be based in Ayala North Exchange Makati and will report to the lead of Research...

Retail Area Manager

PUMA Group, Makati City
6 days ago
SPEED & SPIRIT is what we look for in our candidates, defined by some simple values that inspire us to BE DRIVEN in our performance, BE VIBRANT in our sporting legacy, BE TOGETHER in our team spirit, and BE YOU to let our individual talent and experience shine. Applying for a job at PUMA is easy and all genders are...