Vice President, IT & Cyber Risk Control, Asia Pacific at Santander

Hong Kong

Santander Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Banking, Financial ServicesIndustries

Requirements

  • At least 5 years of proven experience in IT security and controls functions
  • Bachelor’s degree in computer science, Engineering, Physics, Math or related field; post graduate degree a plus
  • IT security certifications CISA, CISM, CRISC, CCNA/CCNP, CISSP, CEH, ITIL/COBIT
  • Knowledge of frameworks and standards related to IT security, ISMS and risk management (FFIEC, FAIR, ISO27001; ISO31000, NIST CSF, 800-53, 800-30, Cobit5, OWASP, CMMI, ITIL, TOGAF, COSO, Mitre ATT&CK, China Cybersecurity Law), knowledge of C-RAF, TM E-1, TMG-1 and TMG-2 is a definitive advantage
  • High English and Mandarin Level
  • Strong organizational, project management, and multi-tasking skills with demonstrated ability to manage expectations and deliver results
  • Ability to understand complex technical systems and the business processes they support and synthesize the corresponding risks and controls and recommend adjustments if required

Responsibilities

  • Use risk management principles to ensure the confidentiality, integrity and availability of information assets and information systems are safeguarded in accordance with the bank's operating model and risk appetite
  • Conducting independent evaluations of technology and cybersecurity capabilities, and provide expertise and advice on the local cyber security plan implementation (example: the IT Asset Management, Obsolescence plan, Access management controls, Physical and data security, Vulnerability and patch management, Network security management, Third parties assessments)
  • Review current policies and procedures to identify process gaps and opportunities for improvement
  • Implement and execute the Cybersecurity risk oversight program
  • Coordinating independent Cyber risk assessments from Group and/or regulators providing oversight and challenge across the risk identified ensuring that action plans are identified and monitored (CRAF, etc.)
  • Lead and Monitor Key IT & Cyber risk indicators and action plans
  • Review that IT and cyber incidents are managed properly (Internal and External)
  • Monitor IT projects ensuring that risk and control or mitigation plans are correctly identified
  • Through walkthroughs and testing, identifies possible internal control breakdowns and gaps and report them to management
  • Oversight the BCP (Business Continuity plan) policies and procedures
  • Lead IT & cybersecurity risk scenarios analysis
  • Monitor, review and update IT & Cyber risk profile and controls on a regular basis

Skills

Cybersecurity
IT Risk Management
Regulatory Compliance
Access Management
Vulnerability Management
Patch Management
Network Security
Third Party Risk
Incident Management
Business Continuity Planning
Risk Assessment
Control Testing

Santander

Provides banking, investment, and insurance services

About Santander

Santander Bank provides a variety of financial services to individuals, small businesses, and large corporations in the United States. Its offerings include savings and checking accounts, loans, credit cards, and investment products. The bank also has specialized services through Santander Investment Services and insurance products via Santander Securities LLC. Santander stands out from its competitors by focusing on community growth, committing $13.6 billion to support initiatives like the 'Cultivate Small Business' program, which aids early-stage entrepreneurs, especially from underrepresented groups. The bank generates revenue through interest on loans, service fees, and commissions, while promoting responsible banking practices and financial education. Santander's goal is to empower individuals and businesses, enhance community prosperity, and provide comprehensive financial solutions.

Boston, MassachusettsHeadquarters
1902Year Founded
$75MTotal Funding
POST_IPO_DEBTCompany Stage
Fintech, Financial ServicesIndustries
10,001+Employees

Benefits

Health, dental, & vision
401k
Flexible PTO
Parental & sick leave
Discounts: technology, travel, auto, fitness, & tuition

Risks

ISO 20022 transition may challenge smaller business partners.
'Quishing' attacks pose a growing threat to consumer security.
Openbank faces competition in the U.S. high-yield savings market.

Differentiation

Santander's Openbank offers a 5.00% APY high-yield savings account nationwide.
The bank's Inclusive Communities Plan pledges $13.6 billion for community initiatives.
Santander's ISO 20022 adoption enhances operational efficiency and data management.

Upsides

Openbank's high-yield savings account attracts more U.S. customers.
Santander's renewable energy financing highlights commitment to sustainable investments.
Proactive cybersecurity measures enhance customer trust and protect digital assets.

Land your dream remote job 3x faster with AI