Senior Manager Technology Assurance

JOB DESCRIPTION

PURPOSE
Lead the overall technical assurance definition and execution of the Technology Assurance framework and programs that guide, monitor, evaluate and report on the efficiency of the internal controls related to technology.
Be the subject matter and provide expertise level guidance on compliance requirements related to technology for control/process documentation, testing and issue management.
Lead and drive the collaboration with Group InfoSec Governance to effectively assess the critical and key gaps against standards, as well as international and local regulatory requirements related to technology.
Lead and manage the Technology assessment at an expert level and evaluate and advise the overall design and effectiveness of all key technology controls throughout the business cycle.
KEY ACCOUNTABILITIES
Contribute and support the Head of Technology Assurance & Information Security Governance in defining, developing andmaintaining technology assurance framework in all the Company's markets in accordance with the Group Technology Roadmap.
Work closely with senior management of business units and within Group Technology through tracking and reporting function, to ensure regular updates to management on the Technology Assurance programs.
Be accountable for the planning, managemen tand execution of the day-to-day activities of Technology related audit engagements.
Ensure system and control owners are identified; and coordinate with owners to support technology assurance and assessment activities.
Collaborate with key technology, business, risk, audit and compliance teams to identify, evaluate and address critical technology related risks.
Proactively research industry trends anddefine, influence and implement appropriate and practical technology related KRIs, metrics and solutions to create and enhance process efficiency and address key risks.
Define, oversee and ensure all test scenarios for effectiveness of the internal controls and provide guidance to remediate the deficiencies/ weaknesses.
Ensure the Company readiness for IT Security Internal/External audits.
Advise BUs on Technology risk assessment.
KEY PERFORMANCE INDICATORS
Guide the Company's markets in adoption of the technology assurance framework.
Working on a group level work with all stakeholder to gather and organise and deliver key business requirements.
Ensure the accuracy and consistency of the technology assurance program.
Meet the objectives of the program within the defined timelines.
Improve the visibility of technology controls, risks and vulnerabilities.
Ensure Technology controls are compliant against required standards/ benchmarks and best practices.
Ensure timely implementation of recommendations for remediating the weaknesses/deficiencies.
Keep pace with changes in technologies in support of IT/Security compliance programs.
Doing things right, creating synergies for the overall the Company's goals and objectives, along with a people first approach.
EXTERNAL & INTERNAL CONTACTS
Group Head of Information Security Governance and tech assurance
Group IT and IT Security Teams
Business Units Technology Teams
Internal Audit
External Auditors
Vendors and/or Service Providers
Group operational risk
Group legal and Compliance

JOB REQUIREMENT

QUALIFICATIONS / EXPERIENCE
Minimum 6-8 years of experience in IT Audit and Risk Assessment.
Degree from Information Technology or equivalent discipline
One of industry recognized certification such as CGEIT, CISSP, CISM, CISA, ISO 27001, CRISC, PCI DSS etc.
KNOWLEDGE & TECHNICAL SKILLS
Excellent stakeholder management and communication skills.
Project delivering experience
Solid understanding of current and emerging technologies.
Understanding of IT SOX and other IT/IS frameworks and best practices such as COSO, COBIT, ITIL, ISO 27001, SOC 2, 3, etc.
Good knowledge of privacy regulations and data protection.
Detailed oriented and able to work under pressure and accustomed to work under tight deadlines.
Team-oriented, collaborative, diplomatic andflexible.
Strong written and verbal communication skills, strong interpersonal skills and the ability to communicate effectively across business units.

WHAT'S ON OFFER

13th salary
Bonus paid in April next year if joining before Oct 2024
Paid leave up to 22 days per year (prorated for partially joining)
Work remote 1 day per week
Health insurance for employees and direct dependents

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Product

Technical Skills:

Security

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Job ID:

J01573

Status:

Close

Related Job:

Software Engineer (Node.js) - Platform Security

Ho Chi Minh - Viet Nam


Product

  • NodeJS

Create system architectures and coding standards for cloud-native solutions. Write high-quality Node.js code, enhance system security and reliability, and solve complex software integration problems. Develop platform security controls for web applications, APIs, and cloud services, covering authentication, authorization, session management, secrets management, encryption, and audit logging. Identify and address security risks through threat modeling, secure code reviews, automated security testing, dependency scanning, and investigation of security-related issues. Manage the testing, deployment, and documentation of integrated systems. Guide junior engineers, collaborate with cross-functional teams, and ensure solutions align with business needs and international standards. Actively participate in Agile software development phases, including creating user stories and sprint planning. Collaborate with multinational organizations, and be flexible to occasionally adapt to US and EU time zones.

Negotiation

View details

Senior System Engineer

Ha Noi - Viet Nam


Outsource

  • System

Triển khai & Tích hợp: Cài đặt, cấu hình và tích hợp hệ thống máy chủ (Server), tủ đĩa (Storage), giải pháp sao lưu (Backup) và hệ thống giám sát (Monitoring) theo yêu cầu dự án. Thiết kế giải pháp: Đề xuất cấu hình kỹ thuật phù hợp với nhu cầu khách hàng, đảm bảo hiệu quả và khả năng mở rộng. Giải pháp DC/DR & Ảo hóa: Triển khai các giải pháp trung tâm dữ liệu (DC/DR), ảo hóa, clustering và replication. Phối hợp liên phòng ban: Làm việc chặt chẽ với các nhóm Network, Security, Application để đảm bảo tích hợp và tương thích hệ thống. Đào tạo & Chuyển giao: Thực hiện đào tạo và chuyển giao công nghệ cho khách hàng. Quản trị & Tối ưu hóa: Xử lý sự cố, tư vấn nâng cấp và tối ưu hóa hệ thống. Nghiên cứu & Cập nhật công nghệ: Liên tục cập nhật, nghiên cứu công nghệ mới và tham gia đánh giá các giải pháp mới cho công ty.

Negotiation

View details

Account Manager

Ha Noi - Viet Nam


Outsource

  • Account Management
  • Sale

Tìm kiếm và tạo quan hệ với khách hàng mới và duy trì mối quan hệ với khách hàng hiện tại, phát triển cơ hội kinh doanh sản phẩm và giải pháp CNTT cho khách hàng trong lĩnh vực Tài chính, Ngân hàng, Chứng khoán, Bảo hiểm và Doanh nghiệp. Hợp tác với đối tác và nhà cung cấp để đảm bảo tiến độ dự án. Đảm bảo doanh số kinh doanh được giao. Hỗ trợ và theo dõi các bộ phận liên quan trong quá trình thực hiện hợp đồng.

Negotiation

View details