Permanent Contract

IT Risk Officer

Modified on 16/07/2024

  • SHANGHAI - China
  • IT, Digital et Data
  • 2024-91325

Job description

• IT Risk Officer role is to ensure that the Tech risk on IT assets/IT services are properly defined and well controlled. The Tech risk management framework including policies and standards could ensure CACIB Information System Security.

- To setup a Tech risk management framework for providing oversight of the IT Tech risk picture.
- Make sure the potential Tech risk and Technology operational risk were clear defined.
- Leading the Tech risk analysis or engage internal/external 3rd party for a formal tech risk assessment.
- Propose solution, join IT team risk remediation.
- Re-assess the residual risk after the remediation.
- Design, conduct Tech risk control testing, providing KRI visibility in IT risk dashboard.
- Accompanying local IT teams in technical security topics with ITSO, to ensure proper implementation of security standards and best practices
- Ensuring technical security is taken into account in all the projects, contribute to the risk analysis. Deliver Security Architecture and Engineering services for Business and IT projects.
- Responsible for defining and follow-up of necessary KRI’s, controls, processes to identify the potential risks and threats in IT Systems, ensure appropriate application of security standard. Provide management reports that represent the security posture of the business in a timely, regular and accurate manner
- To develop local IT security policies and procedures, ensure through the practices adopted and tools implemented that the policies are properly enforced.
- To develop local strategies to monitor and respond to security incidents and providing methodical post-event analyses.
- To review the system architecture and configurations (Networks, System, Firewalls and other security components such as IPS/IDS, SIEM) are in line with the Security policies & best practices
- To coordinate IT security audit, security reviews, ethical hacking exercises in coordination with ISS HO and ISS Singapore.

In addition to IT Risk management, the role will also act as IT financial controller and backup of ITSO. The function will include:

- Assist Head of IT draft the annual budget plan.
- Proactively monitor the IT spending VS budget forecast.
- Manage the IT Outsourcing activities.
- Backup ITSO as major initiative of IT security responsible party.
- Backup ITSO as Audit and Regulator contact point.
- Backup ITSO in DRP activities

    • Position with management
    • No
    • Minimum level of study
    • Bachelor Degree / BSc Degree or equivalent
    • Training / Specialization
    • Master degree and above, with major in IT related.
      IT Risk Officer related working experience
    • Minimum experience level
    • 11 years and more
    • Languages
    • Chinese and English
  • About Crédit Agricole Corporate and Investment Bank (Crédit Agricole CIB) Crédit Agricole CIB is the corporate and investment banking arm of Crédit Agricole Group, the 10th largest banking group worldwide in terms of balance sheet size (The Banker, July 2022). 8,600 employees in more than 30 countries across Europe, the Americas, Asia-Pacific, the Middle-East and North Africa, support the Bank's clients, meeting their financial needs throughout the world. Crédit Agricole CIB offers its large corporate and institutional clients a range of products and services in capital market activities, investment banking, structured finance, commercial banking and international trade. The Bank is a pioneer in the area of climate finance, and is currently a market leader in this segment with a complete offer for all its clients. For more information, please visit www.ca-cib.com Twitter: https://twitter.com/ca_cib LinkedIn: https://www.linkedin.com/company/credit-agricole-cib/ By working every day in the interest of society, we are a group committed to diversity and inclusion. All our positions are open to people with disabilities.

Crédit Agricole CIB
Crédit Agricole CIB
Crédit Agricole CIB

Crédit Agricole CIB

IT Risk Officer

Published the 16/07/2024

Permanent Contract
  • SHANGHAI - China
  • IT, Digital et Data
  • 2024-91325

These offers may interest you!