Technology Risk & Controls Lead (Assurance Lead)

Sorry, this job was removed at 02:19 p.m. (CST) on Tuesday, Feb 17, 2026
Be an Early Applicant
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, MYS
Hybrid
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Be Yourself at Work, Make a Difference, and Act with Integrity are our values at Capco.
The Role

Company Overview

Capco is an entrepreneurial consulting business with expertise in transformation, technology, and strategy. We specialize in banking and payment; capital markets; wealth & investment management; finance, risk & compliance; and technology, serving our clients from offices in leading financial centers across US, Europe and APAC. We are expanding our business rapidly across Asia (especially Malaysia). You will work on engaging projects with some of the largest banking and insurance clients in the world, projects that will deliver significant transformation and change. Besides, we have exciting growth plans in APAC and some very interesting new service lines opening. We are building the business, so now is a good time to join because you can join at the start, have an impact and play a role in its future success = promotion opportunities, better bonus opportunities and faster career progression.

Through our collaborative and efficient approach, we help our clients successfully increase revenue, manage risk and regulatory change, reduce cost and enhance control. We specialize in banking; capital markets; wealth and investment management; finance, risk & compliance; and technology. We serve our clients from offices in leading financial centers across North America, Europe and APAC.

Role Overview

Capco is seeking a Technology Risk & Controls Lead (Assurance Lead) to provide independent, regulator-defensible assurance to financial institutions against Bank Negara Malaysia (BNM) Risk Management in Technology (RMiT) and related regulatory standards.

This role plays a critical assurance and judgement function, acting as an Independent External Service Provider, with end-to-end ownership of assurance conclusions, materiality decisions, and regulatory attestations. You will work closely with client executive management, boards, regulators, and internal delivery teams to ensure technology, cyber, cloud, resilience, and governance controls meet regulatory expectations and industry best practices.

Key Responsibilities

  • Independent Assurance Ownership
    • Own the end-to-end independent assurance lifecycle for BNM RMiT engagements, from scoping and control interpretation through testing, evaluation, and final attestation.
      • Exercise professional judgement on control adequacy, effectiveness, and materiality, ensuring conclusions are evidence-based, proportionate, and regulator-defensible.
      • Provide final approval of assurance conclusions, opinions, and attestations, maintaining independence from advisory and implementation activities.
  • Regulatory Interpretation & Control Frameworks
    • Translate BNM RMiT Policy (all Parts) into clear, testable control expectations aligned to the bank’s technology, cyber, cloud, resilience, and governance landscape.
      • Interpret and apply related regulatory and industry standards, including:
      – BNM RMiT
      – BNM Outsourcing Policy Document
      – Business Continuity Management (BCM) Policy Document
      – ISO 27001
      – COBIT
      – NIST Cybersecurity Framework
      – ISAE 3000
      • Ensure control expectations are aligned with regulatory intent, industry practice, and proportional risk management.
  • Risk, Materiality & Professional Judgement
    • Apply risk-based prioritisation to focus assurance efforts on areas of highest regulatory, operational, and systemic risk.
      • Make defensible materiality judgements, balancing regulatory expectations, control maturity, and business context.
      • Challenge management where necessary while maintaining constructive, professional relationships.
  • Executive, Board & Regulator Engagement
    • Engage confidently with senior management, Boards, and regulators, articulating assurance scope, findings, and conclusions clearly and credibly.
      • Prepare and deliver executive-level assurance reports, summaries, and regulatory submissions.
      • Act as a trusted assurance authority, capable of standing behind conclusions in regulatory discussions and reviews.
  • Assurance Quality & Ethical Standards
    • Uphold strict independence, ethical, and professional assurance standards, consistent with external assurance expectations.
      • Ensure assurance work is compliant with ISAE 3000 and internal quality standards.
      • Provide oversight and guidance to assurance teams to maintain consistency, quality, and defensibility of outcomes.

Required Experience & Capabilities

  • Extensive experience in technology risk, IT audit, or independent assurance within financial services.
    • Deep exposure to financial-services regulation, particularly BNM technology, cyber, and resilience requirements.
    • Strong capability in regulatory interpretation, control design assessment, and operating effectiveness testing.
    • Proven ability to exercise independent judgement and make materiality decisions in complex environments.
    • Experience engaging Boards, senior executives, and regulators with credibility and authority.
    • Strong written and verbal communication skills, particularly for assurance opinions and executive reporting.

Certifications

  • CISA – required
    • CRISC and/or CISM – preferred

Why join us?

You will join a company that supports and encourages an entrepreneurial outlook and independent thinking. Capco is not about organizational charts and layers –we operate with little hierarchy because we want all employees to feel that Capco is their firm. We warmly value diversity and inclusion and embrace our collective uniqueness –our culture is a strong, fresh, and invigorating difference from our competitors.

What the Team is Saying

Sarvani
Michael
Josh

Similar Jobs

Capco Logo Capco

Associate Business Programme – Early Career Talent (Expression of Interest)

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Hybrid
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, MYS
6000 Employees

Capco Logo Capco

Consultant

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Hybrid
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, MYS
6000 Employees

Capco Logo Capco

Consultant

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Hybrid
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, MYS
6000 Employees

Capco Logo Capco

Product Owner

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Hybrid
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, MYS
6000 Employees
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: London
6,000 Employees
Year Founded: 1998

What We Do

Capco, a Wipro company, is a global management and technology consultancy specializing in driving transformation in the energy and financial services industries. Capco operates at the intersection of business and technology by combining innovative thinking with unrivalled industry knowledge to fast-track digital initiatives for banking and payments, capital markets, wealth and asset management, insurance, and the energy sector. Capco’s cutting edge ingenuity is brought to life through its award-winning Be Yourself At Work culture and diverse talent. TRUSTED ADVISORS - Our collaborative and entrepreneurial approach position us as trusted long-term partners to our clients. DEEP EXPERTISE - Clients look to us for clear guidance, proven expertise, and the support they need to set their companies up for success. DISRUPTIVE SOLUTIONS- We do not provide off -the-shelf answers to clients’ challenges. Instead, we work in close collaboration to understand the issues, and craft disruptive, bespoke solutions. ACCOUNTABILITY AND OWNERSHIP - We recognize every client has distinct needs and expectations, and we take ownership and accountability for the solutions we design, build, and deliver.

Why Work With Us

We support and encourage an inclusive culture, entrepreneurial outlook and independent thinking. Capco is not about organizational charts and rigid hierarchies – we want all employees to feel that Capco is their firm to own and run. We believe diversity powers innovation. Be Yourself At Work (#BYAW) is an integral and underlying part of our culture

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Capco Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: Not Specified
Company Office Image
HQLondon, GB
Company Office Image
Bengaluru, Karnataka
Company Office Image
Bengaluru, Karnataka
Company Office Image
Berlin, DE
Company Office Image
Bratislava, SK
Company Office Image
Brussels, BE
Company Office Image
Charlotte, NC
Company Office Image
Chicago, IL
Company Office Image
Dallas, TX
Company Office Image
Düsseldorf, DE
Company Office Image
Edinburgh, GB
Company Office Image
Frankfurt am Main, DE
Company Office Image
Geneva, CH
Company Office Image
Houston, TX
Company Office Image
Kuala Lumpur, MY
Company Office Image
Milan, IT
Company Office Image
Mumbai, IN
Company Office Image
New York, NY
Company Office Image
Orlando, FL
Company Office Image
Paris, FR
Company Office Image
Singapore, SG
Company Office Image
Toronto, Ontario
Company Office Image
Vienna, AT
Company Office Image
Zürich, CH
Learn more

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account