Julius Baer

Head of IT Governance and Risk

Singapore
ISO 27001 ITIL COBIT
Description

Head IT Governance and Risk Asia

Location: Singapore

Time Type: Full time

Job Description

At Julius Baer, we celebrate and value the individual qualities you bring, enabling you to be impactful, to be entrepreneurial, to be empowered, and to create value beyond wealth. Let’s shape the future of wealth management together.

GENERAL DESCRIPTION
IT Governance and Risk Management is a regional function in Asia responsible for technology governance across key pillars and overseeing risk management. This function works in close collaboration across IT functions to foster strong risk culture and awareness. Primary responsibilities include risk management and control assurance activities with the aim to continuously strengthen IT operational /security /regulatory posture and provide risk transparency to our management.

Service Offering
• Provide first line ownership of technology governance and risk for the private bank, ensuring IT services, projects, and operations are well controlled, resilient, and aligned to business strategy, risk appetite, and MAS expectations
• Lead the design, implementation, and ongoing enhancement of the bank’s IT governance and risk framework, including policies, standards, and procedures for IT operations, change, projects, outsourcing, and cloud etc.
• Oversee and challenge the effectiveness of first line IT controls (e.g., access management, change management, incident/problem, vulnerability and patch management, EUC governance, EOL technology), driving remediation where gaps are identified

YOUR CHALLENGE

KEY RESPONSIBILITIES OF THE POSITION

  • Own and maintain the IT risk register, drive regular risk identification with IT service, platform, and project owners, and ensure appropriate assessment, treatment plans, and timely closure of risk actions
  • Coordinate and execute key IT risk processes such as RCSAs, risk scenario analysis, KRIs/KPIs, and providing clear, data‑driven insights on technology and cyber risk exposure
  • Translate MAS and internal policy requirements (e.g., TRM, Cyber Hygiene, outsourcing/third‑party, operational risk) into practical first line controls and procedures, and lead gap assessments and remediation programmes
  • Act as primary IT interface with internal and external auditors for first line topics, coordinating evidence, management responses, and sustainable closure of findings related to IT governance, risk, and security
  • Partner closely with Information Security, Non-Financial Risk, Compliance and COO to ensure consistent risk treatment, clear RACI across the three lines, and robust governance for high‑risk initiatives and changes
  • Chair or play a leading role in IT Risk Management Forum in Asia ensuring effective escalation, challenge, and decision‑making for material risks, incidents, and exceptions.
  • Oversee IT risk and governance dashboards and reports for senior IT management and relevant risk committees, covering incidents, audit/regulatory issues, key risk indicators, and remediation status
  • Drive continuous improvement of IT processes and controls, promoting automation and simplification while maintaining a strong control environment
  • Lead or support training and awareness for IT staff on technology risk, security, and governance requirements, reinforcing first line ownership and a strong risk culture
  • Responsible for risk reporting to IT Risk Management Committee as well as Operational Risk Committees in Singapore and Hong Kong.

Stakeholder Management

  • IT stakeholders include IT Service Owners, IT Infrastructure, IT Application Managers, IT Architecture and Project Managers
  • CRO functions – including Business Operational Risk, Information Security and Compliance functions
  • COO – Third Party Risk Management, Business Continuity
  • Global functions – IT Governance, IT Risk Management, Information Security
  • Establish strong relationship with key stakeholders

Regulatory Responsibilities &/OR Risk Management

  • Ensure appropriate ethical and compliant behaviour within the area of responsibility by clear demonstration of appropriate values and behaviours including but not limited to standards on honesty and integrity, due care and diligence, fair dealing (treating customers fairly), management of conflicts of interest, competence and continuous development, adequate risk management, and compliance with applicable laws and regulations

YOUR PROFILE

SKILLS REQUIREMENTS OF THE POSITION

Personal and Social

  • Excellent communication and stakeholder‑management skills, with a track record of engaging auditors, regulators, and senior management on complex technology risk topics
  • Demonstrated ability to operate at senior level, influencing senior stakeholders, challenging constructively, and driving change across multiple IT domains

Professional and Technical

  • Extensive experience in IT governance, technology risk, or IT control roles within banking, preferably private banking or wealth management
  • Strong understanding of MAS technology and operational risk expectations, as well as industry frameworks (e.g., ISO 27001, ITIL, COBIT) and cyber risk practices

Regulatory (where applicable)

  • Familiarity with technology regulatory framework and guidelines in Singapore (MAS) and Hong Kong (HKMA, SFC etc.)

We are looking forward to receiving your full job application through our online application tool. Further interesting job opportunities can be found on our Career site.

Is this not quite what you are looking for? Set up a job alert by creating a candidate account here.

Julius Baer
Julius Baer

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say