Senior Technology Risk Analyst

SPH Media Trust  

Job Description

Job Summary:

As a Senior Technology Risk Analyst,  you will support the Tech Risk Manager in all risk & compliance related activities for SPH Media Technology division. You will work with our stakeholders (the Heads and nominated Subject Matter Experts across the Technology Division) and Cybersecurity team to manage all IT risks and support process improvement activities.

 

Job Description:

  • supporting stakeholders in understanding the risk process and risk assessment criteria
  • work with key stakeholders to establish compliance with policies & standards, ensuring that identified risks and gaps are adequately addressed and remediated
  • Continuously evaluate risk mitigation measures to ensure effectiveness, compliance and adherence to key controls and policies and to support teams on the remediation efforts
  • maintaining the division’s risk register
  • working with stakeholders to update the risk register to add new risks and ensure existing risks stay relevant tracking and updating risk mitigation & remediation action plans
  • managing the policy waiver/exception process
  • preparing regular reports on risks, action plans and waiver/exception status
  • compiling and analysing risk data to prepare graphs and dashboards for management
  • supporting the Tech Risk Manager in risk meetings within Tech and with the organisation’s risk department
  • supporting the Tech Risk Manager in the roll out of Risk & Compliance tool for the organisation
  • supporting process improvement activities, including creating and updating process documents, especially in SDLC and IT policy areas
  • Collaborate with internal and external audit teams, to manage and effect audits from a compliance & point-in-time perspective, to a risk-driven, continuous proactive compliance approach
  • Participate in the review and refinement of cybersecurity policies, standards, processes, procedures and guidelines in accordance with cybersecurity best practices

 


Job Requirements

Job requirements:

  • Bachelors in Computer Science or Information Technology
  • 4+ years of experience in IT Risk or a related role
  • Good knowledge of risk management policies, standards, processes, governance model and risk analysis approaches
  • Good knowledge of risk management concepts including risk assessments, risk treatment and 3rd party risks
  • Good experience in cybersecurity risk management, governance or compliance
  • Knowledge of SG regulations such as Cybersecurity Act, MAS TRM Guidelines or PDPA
  • Experience with Waterfall and Agile SDLC methodologies
  • Good to have experience implementing/using risk management system
  • Excellent attention to detail
  • Team player, proactive with strong organisational skills
  • Strong analytical and data analysis skills
  • Excellent written and verbal communication
  • CISM, CISSP, CISA or CRISC certification is a plus

Knowledge of cybersecurity management frameworks such as ISO27001, NIST 800-53 is a plus

  • Permanent / Full Time
SPH Media Trust  
Work Location
  • Toa Payoh
More from this company
Strategic Planning, Transformation Office

SPH Media Trust

The Strategic Planning function supports the Chairman and CEO to develop and implement the companys business strategies so that business...

More Info
Android Mobile App Developer (Fresh Grad)

SPH Media Trust

We are looking for passionate mobile developer to develop user friendly Android apps for SPH. Besides helping to develop test...

More Info
Manager/Senior Manager, Performance Specialist (Marketing & Media Solutions)

SPH Media Trust

Business Function The team is responsible for planning, co-developing, and co-managing effective digital initiatives across the board to grow digital...

More Info
Multi-Platform Sub-Editor (Lianhe Zaobao)

SPH Media Trust

As a multi-platform sub-editor, you will: ensure that the style of final copies matches that of the publications and that...

More Info
Photojournalist (Lianhe Zaobao)

SPH Media Trust

As a photojournalist, you will capture newsworthy events and people thorough the lens to make news reports more interesting. You...

More Info