Job ID: 42430
Location: Singapore, SG
Area of interest: Governance, Risk Management & Compliance
Job type: Regular Employee
Work style: Office Working
Opening date: 17 Oct 2025
JOB SUMMARY
The Group Operational, Technology and Cybersecurity Risk (OTCR) organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank's data and IT systems by managing technological, information and cyber security (ICS) risks across the enterprise.
As a critical function reporting into the Group Chief Risk Officer (CRO), Group OTCR serves as the second line of defence for assuring Operational, Technology and ICS controls are implemented effectively and in accordance with the Enterprise Risk Management Framework (ERMF) and the ICS Risk Type Framework, and for instilling a positive culture of Operational, Technology and Cybersecurity risk management within the Bank.
As part of the function, the team of OTCR CISO performs a pivotal role as an extension of the OTCR in supporting the Tech and ICS risk management strategy, governance, advisory and assurance roles that face off to the Client Businesses, Regions, and Functions.
This specific OTCR CISO role has accountability for 2nd Line of Defence oversight over the CISO Global Threat Mgmt and Cyber Defence team.
The role therefore requires experience working within such functions and highly sophisticated technical skills across Security Logging and Monitoring, Security Incident Management, Cyber Forensic, Cyber Intelligence and Threat Management.
RESPONSIBILITIES
Strategy
The Operational, Tech and Cybersecurity Risk Officer for Technology & Operations (T&O) is a permanent strategic role that requires strong business acumen, deep knowledge and in-depth experience of Technology and Information and Cyber Security (ICS), particularly in Security Logging and Monitoring, Incident Response and Forensic, Threat Management and Cyber Intelligence complimented by the general knowledge in other ICS areas like Endpoint Detection and Response, Data Leakage Prevention, Insider Threat Management and Purple Team Testing.
The successful candidate will have a strong understanding of operating in a second line capacity within an ICS or risk management organisation, and can respond flexibly and collaboratively to evolving business, regulatory and threat requirements.
The role reports directly to the Global Head, OTCR TTO.
The OTCR for TTO CISO will work with other OTCR Coverage and SME teams to address Tech and ICS as a principal risk types for the Bank and support its integration into the Bank's overall Enterprise Risk Management strategy.
The role will provide oversight and challenge of Tech and ICS risk management and control effectiveness as a risk partner to TTO as defined in the Bank's Enterprise Risk Management Framework (ERMF) and ICS Risk Type Framework under delegation from the Global Head of OTCR.
Business
The role delivers services that continually monitor the Tech and ICS threat landscape, undertake constructive and robust oversight of the effectiveness of Tech and ICS controls and risk remediation strategies, and ensure accurate, insightful, and transparent Tech and ICS risk reporting is provided to senior management to provide them appropriate assurance and confidence on the T&O CISO risk profile.
We are seeking an information and cyber security risk specialist to deliver a range of activities associated with the discharging of OTCR second line responsibilities.
This role will have considerable engagement with all business units, risk committees, and other stakeholders across the bank, but especially those in T&O covering Cyber Operations and Group Threat Management domains.
Processes
The major functional activities that the OTCR, CISO will lead and manage are:
Assuring the 1st line implements controls to comply with applicable laws and regulations as defined by the ICS Policy, Standards and escalate significant regulatory non-compliance matters and developments to the Global Head, OTCR, T&O.
Overseeing implementation of the controls to mitigate risks related to Security Logging and Monitoring, Security Incident Management and Cyber Forensic, Cyber Intelligence and Threat Management.
People & Talent
Risk Management
Governance
Regulatory & Business Conduct
Key Stakeholders
Other Responsibilities
Embed Here for good and Group's brand and values in OTCR, CISO & COO team; Perform other responsibilities assigned under Group, Country, Business or Functional policies and procedures within OTCR TTO covering other domains beyond main domains of responsibility.
Our Ideal Candidate
Role Specific Technical Competencies
About Standard Chartered
We're an international bank, nimble enough to act, big enough for impact.
For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other.
We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before.
If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you.
You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.
Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours.
When you work with us, you'll see how we value difference and advocate inclusion.
Together we:
What we offer
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.
Recruitment Assessments
Some of our roles use assessments to help us understand how suitable you are for the role you've applied to.
If you are invited to take an assessment, this is great news.
It means your application has progressed to an important stage of our recruitment process.
Visit our careers website