About the Role
Responsible for Information Technology Risk Management (IT Risk) and/or Cybersecurity Risk Management, including:
1. Framework, Policies & Governance
- Develop and enhance IT risk management policies and frameworks
- Issue regulations, standards, and control guidelines
- Ensure alignment with State Bank of Vietnam regulations and international best practices
2. IT Risk Management Implementation
- Identify and assess IT risks across systems and operations
- Conduct RCSA (Risk & Control Self-Assessment) and risk assessments
- Develop and maintain risk registers and risk maps
- Monitor and provide early warning on IT risks
- Maintain IT risk management systems/tools
- Track risks across systems and branches
- Establish alert mechanisms and dashboards
- Assess compliance with IT and cybersecurity regulations
- Follow up and enforce remediation actions
- Monitor incidents and analyze risk trends
- Track IT and cybersecurity incidents
- Perform root cause analysis and issue system-wide alerts
3. Training & Risk Culture Development
- Develop training materials and communication programs to strengthen IT operational risk management culture
Qualifications
1. Education
- Bachelor's degree (full-time) in:
- Information Technology, Mathematics, Applied Mathematics, Telecommunications, or related fields
- Specialization in IT Risk Management or equivalent is preferred
2. Professional Knowledge
- Strong understanding of legal frameworks, regulations, and best practices related to IT systems
- Solid knowledge of IT systems and cybersecurity-related risks
3. Experience
- Minimum 2 years of experience in IT or related fields
- Preference for candidates holding international certifications such as:
- COBIT5, ITIL, CISSP, CISA
- Experience in implementing standards such as:
- ISO 27001 (Information Security Management System)
- Circular 09/2020/TT-NHNN (IT system security in banking) is an advantage
4. Skills & Competencies
- Strong ability to work independently and proactively
- Logical thinking with strong analytical and problem-solving skills
- Ability to work effectively under pressure and in teams
- Strong communication and influencing skills
- Good task and time management skills
- Ability to collaborate across departments and branches
- Proficiency in English, with the ability to work independently with international experts