Assistant Manager, IT Risk
About the Company Our client is a well-established Malaysian banking group undergoing continuous digital transformation and technology advancement. With a strong emphasis on governance, risk management, and information security, the organization is committed to delivering secure and reliable banking services to customers across Malaysia.
What You'll Be Doing
IT Security & Cyber Risk
- Monitor and assess technology and cybersecurity risks across the organization.
- Review security incidents, cyber threats, and security monitoring reports.
- Track key risk indicators and support risk reporting.
- Participate in cyber drills, security testing, and post-incident reviews.
- Conduct reviews on areas such as ransomware readiness, system upgrades, and technology resilience.
Third-Party Risk Management
- Perform risk assessments on IT vendors and outsourcing service providers.
- Review vendor security controls and ensure compliance with internal policies and regulatory requirements.
- Monitor and report on third-party risk exposures.
- Support IT risk and control assessments.
Risk Advisory & Governance
- Provide independent risk reviews for technology-related projects and initiatives.
- Advise stakeholders on cybersecurity, IT infrastructure, business continuity, disaster recovery, and regulatory requirements.
- Assess risks associated with emerging technologies, including AI, automation, and digital platforms.
- Support the development and maintenance of IT risk policies and frameworks.
- Prepare risk reports for management and regulatory purposes.
What We're Looking For
Experience
- At least 5 years of experience in Risk, Compliance, IT Risk, or a related field within banking or financial services.
- Minimum 2 years of experience in IT Security, Cyber Risk, Cloud Risk, or Third-Party Risk Management.
- Experience in vendor risk management and outsourcing governance is an advantage.
- Familiarity with banking regulations and risk management practices.
Skills & Knowledge
- Good understanding of IT systems, cybersecurity controls, and technology risk management.
- Knowledge of cyber incident management and security best practices.
- Familiarity with risk management tools and frameworks.
- Strong analytical, communication, and stakeholder management skills.
Preferred Certifications Professional certifications such as CISSP, CISM, CRISC, CCSK, or ISO 27001 are a plus.
Why Join This Opportunity?
- Be part of a well-established Malaysian banking institution.
- Gain exposure to enterprise-wide IT and cybersecurity risk management.
- Work closely with business, technology, and risk stakeholders.
- Enjoy strong career development opportunities within Group Risk Management.
Interested? Apply now or send me a PM with your updated resume. Let's connect!
Do note that we will only be in touch if your application is shortlisted.
Agensi Pekerjaan Robert Walters Sdn Bhd
Business Registration Number : 729828-T
Licence Number : JTKSM 423C
About the job
Contract Type: Perm
Specialism: Tech & Transformation
Focus: Cyber Security & Information Security
Industry: IT
Salary: Negotiable
Workplace Type: Hybrid
Experience Level: Associate
Location: Kuala Lumpur
FULL_TIMEJob Reference: UR1L23-3999F53E
Date posted: 28 July 2026
Consultant: Kimberly Chan
kuala-lumpur tech-transformation/it-security 2026-07-28 2026-09-26 it Kuala Lumpur MY Robert Walters https://www.robertwalters.com.my https://www.robertwalters.com.my/content/dam/robert-walters/global/images/logos/web-logos/square-logo.png true