VP, Technology Risk and Controls
We are seeking experienced Technology Risk & Controls lead to join the first-line governance and controls function within a highly regulated financial services environment. This role will be responsible for strengthening technology and cybersecurity risk management practices, driving regulatory compliance, overseeing control effectiveness, and partnering with technology stakeholders to improve the organisation’s overall risk posture.
The successful candidate will play a key role in technology risk governance, control assessments, audit and regulatory engagement, policy oversight, and risk reporting, while supporting continuous improvement initiatives across technology and cybersecurity domains.
主要职责
Technology Risk Management
- Drive ongoing review and assessment of technology and cybersecurity risks across the organisation.
- Facilitate risk and control self-assessments and identify emerging technology risks arising from business, operational, regulatory, or technology changes.
- Develop and maintain meaningful risk metrics, dashboards, and reporting to provide management visibility into technology and cyber risk exposure.
- Support the development and enhancement of technology risk frameworks, methodologies, and governance processes.
Governance & Controls
- Oversee the governance of technology policies, standards, procedures, and control documentation to ensure they remain current and aligned with regulatory requirements.
- Assess the effectiveness of technology and cybersecurity controls and recommend improvements where necessary.
- Promote a strong technology risk and cybersecurity culture through awareness, engagement, and continuous improvement initiatives.
Audit & Regulatory Compliance
- Partner with internal audit, external audit, risk, compliance, and regulatory stakeholders on technology and cybersecurity-related matters.
- Coordinate audit activities, manage remediation efforts, and track closure of audit findings.
- Support the implementation and monitoring of compliance programmes to ensure adherence to relevant regulatory requirements and industry standards.
- Monitor regulatory developments and assess their impact on technology risk management practices.
Technology & Cyber Risk Oversight
- Partner with technology, cybersecurity, and business stakeholders to identify, assess, and manage technology and cyber risks.
- Support oversight of third-party and vendor risk management activities.
- Drive initiatives to improve cybersecurity resilience, vulnerability management, and technology risk visibility.
- Provide management reporting and recommendations to senior stakeholders on technology and cyber risk matters.
要求:
- Degree in Information Technology, Computer Science, Cybersecurity, Risk Management, Audit, or a related discipline.
- At least 8 years of experience in technology risk, cybersecurity governance, IT controls, audit, compliance, or risk management within financial services or other regulated environments.
- Strong understanding of technology risk management frameworks, governance processes, and control assessment methodologies.
- Experience supporting audits, regulatory reviews, and remediation programmes.
- Familiarity with cybersecurity and technology risk frameworks such as NIST, ISO 27001, CIS Controls, or equivalent.
- Knowledge of cloud risk management, third-party risk, vulnerability management, and cybersecurity governance practices.
- Relevant certifications such as CISA, CISM, CRISC, CISSP, or equivalent would be advantageous.
- Experience with data analytics, risk reporting, and dashboarding tools would be beneficial.
申请
If you’re interested to apply or find out more, please share across your CV or reach out to Chen Yi via LinkedIn or at cy@kerryconsulting.com for a discussion. Due to the confidential nature of this search, we regret to inform that only shortlisted candidates will be notified.
Reg: R1876389
Lic: 16S8060

An organisation operating within a large, complex and mission-critical environment is seeking an experienced leader to head its...
An international financial institution is seeking an experienced leader to head its local Information Security Coordination and...
The Head of Cyber Operations will lead the organisation’s cyber defence capability, overseeing 24×7 Security Operations, Threat Intelligence, Threat Hunting, Detection Engineering and Incident...
We are seeking an experienced and forward-thinking AI Security Engineering SME to lead the design, development, and implementation of enterprise-grade AI security solutions. This role sits at the intersection...
We are looking for an experienced Lead Data Security Engineer to design, implement, and enhance enterprise data security capabilities across on-premises and cloud environments. This...
We are seeking an experienced Head of IT & Cybersecurity to lead the strategy, operations, and continuous improvement of the organisation’s IT infrastructure and cybersecurity posture. This...
We are seeking a Cybersecurity Architect to join a lean and highly collaborative cybersecurity team. This role will be responsible for defining, designing, and driving the implementation of security...
We are partnering with a leading Singapore-based organization seeking a senior Application Security Architecture leader to drive secure-by-design practices, enterprise security architecture and AI security...
We are looking to hire a Cybersecurity Policy Developer to strengthen the organisation’s cyber governance and policy capabilities. This role sits at the intersection of cybersecurity strategy,...
Our client is looking for a Security Governance Lead to drive the governance, risk and assurance function within its cybersecurity...
Our client is seeking an experienced cybersecurity leader to drive enterprise security governance, technology risk and data protection...
A leading multinational organisation is seeking an experienced Security Architect to drive secure architecture and technology initiatives across a regional environment.
This role will be responsible...
The Head of Cyber Operations will lead the organisation’s cyber defence capability, overseeing 24×7 Security Operations, Threat Intelligence, Threat Hunting, Detection...
We are seeking an experienced and forward-thinking AI Security Engineering SME to lead the design, development, and implementation of enterprise-grade AI security solutions. This role sits at the intersection...
We are looking for an experienced Lead Data Security Engineer to design, implement, and enhance enterprise data security capabilities across on-premises and cloud...
In this role, you will be responsible for assessing, monitoring, and managing IT and cybersecurity risks associated with third-party vendors and service providers. You will work closely with cross-functional...
Industry: Multiple Sectors (Financial Services, Technology, Critical Infrastructure, Commercial and Others)
We are currently partnering...
A leading multinational organisation is seeking an experienced Security Architect to drive secure architecture and technology initiatives across a regional environment.
A leading global organisation is looking to hire a Technology Risk & Controls professional to support its enterprise technology environment. This role sits within the Technology function and works...
Our client is a leading organisation operating within a regulated environment, and is seeking an experienced Head of Cybersecurity and Technology Risk to lead its enterprise-wide technology risk and...
This is a hands-on cybersecurity role that sits across security engineering, operations, and design. The position focuses on strengthening the organisation’s security posture by embedding controls...
We are seeking an experienced and forward-thinking AI Security Engineering SME to lead the design, development, and implementation of enterprise-grade AI security solutions. This role sits at the intersection...
We are partnering with a leading Singapore-based organization seeking a senior Security Architecture leader to drive secure-by-design practices, enterprise security architecture...
