
Search by job, company or skills
Our client who is focus on Capital Markets and Insurance Sector is looking for a TRM (Technology Risk Management) Consultant to join their Compliance team on a 6-month renewable contract. Reporting directly to the Chief Compliance Officer (CCO), you will oversee tech risk governance, maintain regulatory compliance under Monetary Authority of Singapore (MAS) standards, and strengthen our cybersecurity and third-party risk posture.
Job Title: TRM Consultant
Department: Compliance | Position Level: Executive
Employment Type: 6-Month Contract (Renewable based on performance)
Location: Singapore (Central)
Reporting To: Chief Compliance Officer (CCO)
Maintain and update the Technology Risk Register in alignment with MAS TRM Guidelines and SFA / CMS obligations, regularly tracking Key Risk Indicators (KRIs) for executive reporting.
Monitor evolving regulatory requirements, managing regulatory returns, MAS enquiries, and documentation to ensure continuous audit and examination readiness.
Support the CSO in executing the cybersecurity framework aligned with the MAS Cyber Hygiene Notice.
Coordinate Vulnerability Assessments and Penetration Testing (VAPT) remediation, while supporting cyber incident response, documentation, and post-incident reviews.
Conduct tech risk due diligence on critical outsourcing partners and vendors, ensuring strict compliance with contractual and regulatory security obligations.
Assist in refining and elevating the vendor technology risk assessment framework.
Periodically review and update internal technology risk and cybersecurity policies to reflect updated MAS notices, guidelines, and industry best practices.
Education: Degree in Computer Science, Information Technology, Information Security, or a related discipline.
Experience & Knowledge: Demonstrated track record (3-6 years) in technology risk, IT audit, or compliance within regulated financial institutions.
Regulatory Expertise: Strong familiarity with MAS TRM Guidelines, MAS Cyber Hygiene Notice, and Singapore financial market regulations.
Technical Skills: Hands-on experience in vendor risk evaluations, VAPT tracking, and risk register management.
Certifications (if any): Relevant credentials such as CISA, CRISC, CISM, or CISSP are highly advantageous.
Next Step:
Please submit your updated resume in MS Word format by clicking the QUICK APPLY button.
Only shortlisted applicants will be contacted. By submitting your application, you agree and consent to GYK TalenSync Pte Ltd and its related entities collecting, using, and/or disclosing your personal data to relevant third parties, where necessary, for purposes including job application processing, career guidance, research, and other administrative matters, in accordance with our Privacy Policy at www.gykco.com
Gabriel Pang
Registration Number: 22105639
GYK TalenSync Pte Ltd
EA License No: 23C1806
Job ID: 152499965
Skills:
Windows Server, Networking, Cybersecurity, project management, Active Directory, Epicor Kinetic ERP
Skills:
technology risk , Cloud Security, Vulnerability Management, Infrastructure Security, Cybersecurity, IT Security, Project Management, Financial Planning, Regulatory Compliance, Resource Planning, Security Operations
Skills:
renewable energy systems , Predictive Analytics, Industrial communication protocols, Forecasting, Cybersecurity fundamentals, AI-enabled optimisation, Technical solutioning, Digital solutions for renewable energy, Electrical power systems, SCADA
Skills:
Vulnerability Assessments, Java, Sso, Security Compliance, Load Balancer, Dns, SSL, Auto Scaling, On-premise infrastructure
Skills:
Uat Testing, Json, Rest Apis, Security Compliance, Data Privacy, Data Quality Governance, Alerting, Solutioning Architecture, Event Architecture, Training, System Calibration, Process Optimization, Issue Resolution, Regulatory Compliance