Logo
  • Pro Profile
  • Jobs
  • Career
    Career PathwayGrowthEducationInspirationPersonality
    Jobs & IndustriesJob SearchResume & PortfolioSalaryWell-being
  • Education
    Online CoursesMasters Programs
  • Resume Builder
  • Corporate Users



  • Jobcadu Logo

    Best career platform for job search, recruitment, career assessment & education

    10,000+

    Jobs

    Jobs Functions

    Administration & Office

    Marketing

    Customer Service

    Information Technology (IT)

    Accounting & Finance

    Human Resources & People

    Production & Supply Chain

    Engineering

    For Job Seekers

    Jobs

    Resume Builder

    Education Resources

    Resume Resources

    For Corporate Users

    Post Jobs

    Pricing

    Resources

    About Us

    Terms of Use

    Privacy Policy


    © 2025 Jobcadu. All rights reserved

    Information Technology Security Risk Management

    Hybrid
    , Thailand
    Posted: August 22, 2024
    Position Details

    Job description

    • Participate in the Risk and Control Self-Assessment (RCSA) and Control Framework (CF) development and review workshops / processes to provide updates on Information Risk Policy, related minimum standards, views on IT / cyber risks and information system controls, and challenge the first line-of-defence functions on risks and key remediation controls during the RCSA and/or CF revisit workshops
    • Monitor the new and/or updated IT / cybersecurity laws, regulations, and international standards and review the existing Information Risk Policy, and related minimum standards to identify gaps and propose the required action plans
    • Work with team members to review and update Information Risk Policy and related minimum standards according to the defined periodic review cycle to ensure compliance with laws, regulations and in line with international standards or frameworks
    • Review and update the contents on e-learning platform for the annual cyber risk awareness training delivery to all staff and concerned parties
    • Provide supports to the subordinate specialist team members for the execution of Annual Key Control Testing (KCT) - Quality Assurance (QA) Plan, and review the quality of works done by the subordinate team members as part of KCT QA plan execution
    • Coordinate with all relevant parties for IT Non-Financial Risk Committee (IT NFRC) quarterly meeting readiness preparation
    • Attend the meetings and provide consult and/or views on IT risk / cyber risk and information system controls to the business units that are product / service owner in the initiative / strategic projects.
    • Be the coordinator and provide supports to the Compliance and Internal Audit functions in the annual self-assessment programs and/or IT audits.
    • Be the coordinator and provide supports to the regulators e.g., in the Annual IT Examination visit by Bank of Thailand (BOT) and to the external auditors in the independent reviews
    • Participate the annual Business Continuity and/or IT Disaster Recovery plans exercises
    • Manage special assignments (if any)


    Qualifications

    • Master or bachelor’s degree in computer related or equivalent fields
    • 8-10 years of professional experienced in Information Security related fields
    • 5-10 years of working experienced in banking or financial service industry
    • Knowledge and skills in the areas of IT governance, IT / cyber risk, and information systems control
    • Knowledge and skills in the areas of system development life cycle,
    • Good knowledge and understanding in IT and/or Cybersecurity related laws and regulations such as BOT’s IT Risk Management Implementation, BOT’s Cyber Resilience Assessment Framework (CRAF), Computer Crime Act, Personal Data Protection Act (PDPA), etc.
    • Good knowledge and understanding in international standards such as NIST 800-53, ISO 27000 series, ISO 22301, PCI DSS, COBIT, ITIL, etc.
    • Certified Information Security Manager (CISM), Certified in Risk and Information System Control (CRISC), Certified Information Systems Auditor (CISA) or Certified Information System Security Professional (CISSP) is an advantage
    • Good English communication skills are required
    • Good consulting skills and managerial skills, can work under pressure or manage multiple assignments simultaneously to provide deliverables on time
    • In depth technical knowledge of: Data Centre Resilience (TIA-942), IT Security (ISO 27001), BCM (ISO 25999), Computer Networks
    • Proven management experience on departmental and project level.



    Skills
    System Development
    Cybersecurity
    Information Security
    Consulting

    Functions
    Information Technology (IT)

    Job Overview

    Job Type:

    Hybrid


    Company

    TTB logo

    TTB

    205 active jobs

    Industry:

    Banking & Finance

    Ready to Apply?

    Submit your application now and take the next step in your career journey.

    Similar Jobs

    Công ty cổ phần cơ khí và kỹ thuật Đông Nam

    Công ty cổ phần cơ...

    28 days ago

    Kỹ Sư Điện & Tự Động Hóa | Lương 12–14 Triệu/Tháng – Đi Làm Ngay

    2 years
    Hà Nội, Vietnam

    Salary

    VND 12,000,000 - 14,000,000

    Skills & Functions

    Consulting
    Information Technology (IT)
    Arise by INFINITAS

    Arise by INFINITAS

    12 months ago

    Security Operations Lead - Associate Director

    No experience
    Bangkok, Thailand

    Salary

    Let's discuss

    Skills & Functions

    Information Security
    Information Technology (IT)
    KASIKORN Business-Technology Group

    KASIKORN Business-...

    about 1 year ago

    Senior Software Engineer (Go & Java)

    No experience
    Thailand

    Salary

    Let's discuss

    Skills & Functions

    System Development
    Information Technology (IT)
    Ocean Life Insurance

    Ocean Life Insuran...

    about 1 year ago

    IT Solution Architecture

    No experience
    Bangkok, Thailand

    Salary

    Let's discuss

    Skills & Functions

    System Development
    Information Technology (IT)
    CardX Thailand

    CardX Thailand

    11 months ago

    Enterprise Architecture and Cyber Security Architecture

    No experience
    Bangkok, Thailand

    Salary

    Let's discuss

    Skills & Functions

    Cybersecurity
    Information Technology (IT)
    Tata Consultancy Services

    Tata Consultancy S...

    11 months ago

    Change Management Manager

    No experience
    Thailand

    Salary

    Let's discuss

    Skills & Functions

    Consulting
    Information Technology (IT)
    BSI

    BSI

    11 months ago

    IT Auditor-Client Manager

    No experience
    Bangkok, Thailand

    Salary

    Let's discuss

    Skills & Functions

    Information Security
    Information Technology (IT)
    Trung tâm Dịch vụ số MobiFone - Chi nhánh Tổng Công ty Viễn Thông Mobifone

    Trung tâm Dịch vụ ...

    28 days ago

    Chuyên viên Kinh doanh Dịch vụ MobiPOS – Nghỉ thứ 7 & Chủ Nhật, thu nhập hấp dẫn

    1 years
    Hà Nội, Vietnam

    Salary

    Let's discuss

    Skills & Functions

    Consulting
    Information Technology (IT)
    SeaMoney

    SeaMoney

    about 1 year ago

    Cybersecurity & IT Compliance

    No experience
    Bangkok, Thailand

    Salary

    Let's discuss

    Skills & Functions

    Information Security
    Information Technology (IT)
    Công ty TNHH Lotte Property & Development Việt Nam

    Công ty TNHH Lotte...

    28 days ago

    Nhân Viên Kỹ Thuật Bảo Trì Tòa Nhà Cao Cấp – Thu nhập lên đến 20 Triệu – Nhận việc ngay tại Hà Nội

    1 years
    Hà Nội, Vietnam

    Salary

    VND 9,000,000 - 20,000,000

    Skills & Functions

    Consulting
    Information Technology (IT)