DBS Bank Ltd Logo

DBS Bank Ltd

VP/AVP, Cybersecurity Governance & Compliance Lead, Information Security Services, Group Technology

Reposted Yesterday
Be an Early Applicant
In-Office
Singapore, SGP
Senior level
In-Office
Singapore, SGP
Senior level
Supports the bank’s cybersecurity governance, risk management, and compliance programs. Responsibilities include monitoring cybersecurity regulations, updating security policies and standards, conducting risk assessments, managing risk registers and key risk indicators, evaluating controls, coordinating remediation, assessing risk acceptances, reporting compliance metrics to senior management, and liaising with auditors and regional security teams.
The summary above was generated by AI

Business Function

Group Technology  enables and empowers the bank with an efficient, nimble and resilient infrastructure through a strategic focus on productivity, quality & control, technology, people capability and innovation. In Group Technology, we manage the majority of the Bank's operational processes and inspire to delight our business partners through our multiple banking delivery channels.

About the role

The candidate will be responsible for supporting the delivery and implementation of the Bank’s cybersecurity risk management and compliance programmes, helping to ensure that the Bank’s technology and information assets comply with relevant cybersecurity regulations.

 

The candidate will work with key stakeholders to monitor and implement practices aligned with the Bank’s cybersecurity risk management policies and standards, and to ensure that identified cybersecurity risks are evaluated, addressed and remediated appropriately.

The candidate will also assist in the updating and reporting of metrics on the Bank’s cybersecurity compliance posture to the Management. This includes:

  • Working with key stakeholders and counterparts within the Bank to ensure compliance against key cyber and information security legislations and regulations

  • Identifying, analyzing, evaluating and treating cybersecurity risks posed to the Bank’s technology and information assets to an acceptable level

Responsibilities

Legislation, regulations and policies

  • Assist in the Bank’s cybersecurity program, including cybersecuity policies, regulatory audits, compliance management, metrics, risk and performance indicators, and reporting to senior management;

  • Track and monitor new security regulatory guidelines, and assess the compliance of and impact to the Bank’s security policy architecture

  • Work with regional information security services teams in the core markets to monitor new cybersecurity legislation and/ or regulation and assess the impact against the Bank’s security policy architecture

  • Develop, review and update information security policies and standards to comply against regulatory requirements

Cybersecurity risk and compliance

  • Conduct cybersecurity risk assessments by identifying, analyzing, evaluating and treating cybersecurity risks to an acceptable level within the Bank
  • Timely coordination and completion of the Bank’s Risk and Compliance program in the identification and assessment of risk
  • Monitor cybersecurity risks, map risk profiles and manage the risk register, as well as enhance Key Risk Indicators for reporting to second line of defense and risk management committees
  • Continuously evaluate cybersecurity controls to ensure their effectiveness, compliance and adherence to policies and standards, while driving remediation efforts
  • Engage Line of Business Technology units to conduct annual cybersecurity risk assessment for key bank systems against regulatory requirements
  • Ensure timely implementation of corporate operational risk policies and standards within the Unit and assist operations teams to identify, report and address any gaps
  • Assess the security deviations and risk acceptances raised by Business Units / Support Units
  • Engage and liaise with auditors and the information security services teams for cybersecurity related audits.

Requirements

  • Information security professional with five (5) or more years of experience, with a background in a financial or technology environment would be preferred.
  • Experience in collation, management and reporting of security metrics such as open security vulnerabilities, penetration testing findings, security alerts and incidents, etc.
  • Experience in information security framework such as ISO27000 framework.
  • Experience and knowledge in regulations such as Cybersecurity Act, Cybersecurity Code of Practice, Technology Risk Management Guidelines and Personal Data Protection Act.
  • Experience in the management of Critical Information Infrastructure systems for compliance against the Cybersecurity Act will be beneficial.
  • Good working knowledge of enterprise security risk management methods and techniques to successfully deliver the security risk management and assessment outcome.
  • Strong background on security technology solutions including IDS, IPS, anti-virus, content filtering, secure email solutions, network sniffing, log analysis, forensics, and VPN.
  • Good verbal and written communication for the generation of security awareness content.
  • Proactive, analytical, performance-oriented, and independent worker with strong organization skills, and effectiveness to track and follow up on the assigned projects.

Location:

DBS Asia Hub

Job:

Technology

Schedule:

Regular

Employee Status:

Full time

DBS Bank Ltd Singapore Office

Similar Jobs

36 Minutes Ago
Hybrid
Singapore, SGP
Senior level
Senior level
Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Design, develop, and productionize scalable AI/ML systems, including data and feature pipelines, model deployment, monitoring, drift detection, retraining, and lifecycle management. Automate MLOps workflows, ensure reliability and responsible AI, optimize model performance, and build production-grade AI services and APIs. Partner with product, data science, and platform teams, lead smaller initiatives, review designs and code, and mentor junior engineers.
Top Skills: Ai/MlAPIsCi/CdFeature StoresMlopsRagVector Stores
38 Minutes Ago
Hybrid
Singapore, SGP
Entry level
Entry level
Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Manage multi-country financial close, forecasting, budgeting, variance analysis, reporting, and KPI development. Partner with finance and business stakeholders on planning cycles, revenue targets, strategic reviews, and leadership presentations. Improve financial processes through automation, reporting solutions, financial tools, and analytical models. Provide business insights, communicate risks and opportunities, and support regional and global initiatives in a matrixed environment.
Top Skills: AlteryxExcelHyperionOraclePower BITableauVBA
52 Minutes Ago
Hybrid
Singapore, SGP
Mid level
Mid level
AdTech • Big Data • Digital Media • Software
Manage and grow strategic publisher relationships across Magnite’s DV+ platform in Asia. Drive revenue growth and retention by analyzing performance data, identifying opportunities, delivering recommendations, and meeting revenue targets. Lead business reviews and strategic engagements while coordinating with commercial, product, technical, and operations teams on integrations, optimization, brand safety, and publisher priorities. Serve as an expert on programmatic advertising, ad technology products, and regional market dynamics.
Top Skills: Analytics PlatformsExcelGoogle SuiteHeader BiddingHeader Bidding WrappersHTMLJavaScriptPrivate Marketplace (Pmp)Real-Time Bidding (Rtb)SalesforceSoftware Development Kits (Sdks)Web ApplicationsWeb FormsWeb Servers

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account