Job Purpose:
- As the second line of defence, responsible for the development, implementation and on-going maintenance of an effective and consistent Third Party Risk Management framework with coverage of outsourcing, partnerships and vendors/suppliers engagements.
- The responsibility includes providing governance, oversight and advisory to support Business Units (BUs) / Business Enablers (BEs) in managing third party risks.
- Responsible to support Head, Regional Third Party Risk Management to oversee the governance and reporting wih respect to third party risks within the Group.
Key Responsibilities:
- Drive the implementation and embedding a robust Third Party Management Framework across the Group ensuring compliance to regulatory requirements where applicable.
- As the 2nd line of defence, provide governance, oversight and advisory on Third Party Risk Management related matters in providing consultation to all BUs/BEs in performing third party risk assessments to identify potential failure points, threats, and vulnerabilities and implement appropriate mitigation controls to minimise the impact to the organisation throughout the engagements with third party with support from other key stakeholders (i.e. Technology Risk Management, Business Continuity Management, Technology, Data Governance, Legal & Compliance, Admin & Property Management, Procurement and Finance).
- To provide management with a view of the Groups Third Party Risk as part of the Groups preparedness and capabilities in the event of a major disruption. Timely reporting and awareness in relation to third party risks to relevant risk committees as per framework requirement.
- To promote a culture in managing third party risk through awareness sessions, engagement sessions, focus group sessions or trainings to BUs/BEs.
- Work closely with Service Recipients (SRs) / Service Owners (SOs) of BUs/BEs Risk Control Units (RCUs) / Risk Control Specialists (RCSs) / Designated Compliance & Operational Risk Officers (DCOROs) to ensure third party risks/incidents/events are promptly identified, escalated and addressed as per Operational Risk Management framework.
Job Specification:
-
Bachelor's Degree or Professional Qualification in the relevant discipline (Information Systems / Business / Banking / Finance / Accounting / Statistics / Economics / IT)
-
>3 - 5 years of experience of compliance, operational risk, outsourcing fields, preferably in established bank / financial institutions
-
Candidates with experience in Supply Chain Management will be an advantage.
-
Strong foundation on process design and operational risk related matters
-
Critical thinking and problem solving skill
-
Have aptitude to dive into details to ensure controls are properly executed
-
Good in planning and organizing
-
Strong presentation and analytical skill
-
Excellent verbal and written skill
-
Good team work
-
Good conflict management
-
Attention to detail
What We Do
CIMB Group is a leading ASEAN universal bank, one of the largest Asian investment banks and one of the world's largest Islamic banks. We are headquartered in Kuala Lumpur, Malaysia and offer consumer banking, commercial banking, wholesale banking, Islamic banking, and asset management products and services. As the fifth largest banking group in ASEAN, we have over 36,000 staff in 16 locations across ASEAN, Asia and beyond. CIMB Bank and CIMB Islamic Bank are members of PIDM.
.jpeg)







