Senior Professional, Information Technology (Governance, Risk and Compliance) (Based in Shangha[...]
Senior Professional, Information Technology (Governance, Risk and Compliance) (Based in Shangha[...]

Senior Professional, Information Technology (Governance, Risk and Compliance) (Based in Shangha[...]

London Full-Time 43200 - 72000 £ / year (est.) No home office possible
N

At a Glance

  • Tasks: Lead IT governance, risk, and compliance projects while ensuring alignment with industry standards.
  • Company: Join the New Development Bank, a key player in global finance for emerging economies.
  • Benefits: Enjoy competitive perks, a dynamic work environment, and opportunities for professional growth.
  • Why this job: Make an impact in a collaborative culture focused on innovation and excellence in IT.
  • Qualifications: 7+ years in IT risk management; relevant master's degree and certifications preferred.
  • Other info: Based in Shanghai, this role offers a chance to work with diverse teams globally.

The predicted salary is between 43200 - 72000 £ per year.

Senior Professional, Information Technology (Governance, Risk and Compliance) (Based in Shanghai)

Closing on: July 17 Duty Station: Shanghai, China

Job description: Senior Professional, Information Technology (Governance, Risk and Compliance)

The Information Technology Division, under the Office of the Vice President for Administration, is functionally responsible for developing the Bank\’s IT strategy, policies and guidelines and operating IT process and systems. The division leads in the setting up, analysis and review of IT systems, services and solutions in domains of specialization (i.e., Business Applications, Technology Infrastructure, Workspace and Facility, Application Development, Data and Analytics,InformationSecurity, IT Supply and Demand) ensuring that the Bank\’s IT systems and services are built and aligned with “best in class” industry norms. These systems and services are critical to accelerating and expanding the Bank’s operations, strengthening its reputation as an innovative International Financial Institution (IFI).

The Senior Professional, GRC (Governance, Risk and Compliance) position will be responsible to ensure the coherence with internal policies and guidelines, applicable regulations, and industry best practices. The IT GRC senior professional will lead and manage IT GRC projects and initiatives, identify and mitigate IT risks, and develop and implement IT policies, guidelines and procedures, and coordinate the solution to resolve audit issues and risk findings. The staff works as the focal point to various internal stakeholders, including Internal Audit and Risk Management. The staff shall also have oversight of Information Security risk including IT system disaster recovery.

Duties and Responsibilities:

  • Maintain IT risk management framework as first line of defense, conduct IT risk assessments and identify relevant issues and mitigation measures.
  • Oversee, implement and maintain IT polices and controls to ensure conformance with applicable regulations and industry practices.
  • Serve as a subject matter expert on IT governance, risk management, and compliance frameworks such as COBIT, ISO, NIST, and GDPR, etc.
  • Develop and deliver IT GRC training and awareness programs to educate stakeholders on IT risk and compliance requirements.
  • Monitor and analyze industry trends and regulatory developments related to IT governance, risk management, and compliance, and recommend appropriate actions.
  • Lead and manage IT GRC projects and initiatives, including project planning, resource allocation, and progress tracking.
  • Prepare and present IT GRC reports and metrics to Senior Management and other related stakeholders.
  • Collaborate with internal and external auditors and the internal control and risk mangement unit to facilitate audits and control testing and ensure compliance with relevant requirements and recommendations.
  • Collaborate with stakeholders to understand their needs, negotiate requirements, and present solutions.
  • Identify areas for improvement, analyze business objectives, and develop technology interventions based on rigorous research and prioritization.
  • Design, propose, source, and implement cost-effective, cloud-based solutions aligned with business needs, applying sound business acumen and technology assessments.
  • Coordinate internal resources, lead domain-specific solution design, and ensure high-quality, integrated implementation of technology solutions that align with the organization\’s business, technology, and control environment.
  • Identify and assemble structured and unstructured datasets from various sources to meet business requirements.
  • Conduct training, workshops, and presentations for business units.
  • Perform other assigned duties and responsibilities.

Target Skill Profile

Substantive Knowledge

  • Demonstrated capacity gained through education and experience in this field reflecting conceptual understanding in an operational setting.
  • Understand the program framework and the integration of different programmatic elements into the project/service portfolio.
  • Develop and execute program plans across a range of well-defined and established programmatic elements aligned with broader organizational objectives.

Communication Skills

  • Demonstrated Skill gained through exposure/experience in relationship management.
  • Excellent written and verbal communication skills in English.
  • Ability to work well under pressure and meet deadlines, demonstrating high motivation, integrity, and responsibility.
  • Strong analytical and critical thinking skills with a meticulous attitude.
  • Ability of multi-tasking and managing projects in parallel.
  • Exceptional strategic thinking, leading change, problem solving, communication, conflict management and resolution and interpersonal skills with high resilience and drive in achieving objectives and goals.
  • Relevant experience in a multi-cultural work environment fostering a climate of teamwork and collaboration.
  • Advise team on possible impediments to sustaining delivery standards to develop strategies.
  • Engage clients proactively to define expectations/needs and build an informed framework for service delivery.

Execution Skills

  • Demonstrated Achievement in the consistent delivery of programs/services through adaptation.
  • Meet consistently the program delivery standards on timing and the deployment of resources.
  • Meet consistently program delivery standards in terms of quality/relevance.

Requirements

  • A minimum of 7 years relevant experience in Information Security, IT risk management, governance, and compliance frameworks, preferably in a multilateral development bank or regulated private/public sector financial institution, global financial services organization, or large corporate enterprise.
  • Master\’s degree or equivalent in a relevant professional field from a reputed university. A degree in computer science, cyber security, IT general control and security audit, IT risk management, compliance management, data privacy or related domain is preferable.
  • Ability to objectively critique business processes, scenarios and controls.
  • Possession of security and risk certifications, such as CISSP, CISM, CISA, CRISC, etc. is preferred.
  • Knowledge and experience in security, risk, and compliance frameworks such as COBIT, NIST, ISO, SOX, etc.
  • Good understanding and practical experience working with privacy and legal requirements, such as GDPR, PIPL, data security, sanction, embargo, etc.
  • Solid skills in evaluating IT risks and controls and developing IT governance policies and processes to support organization development and implement management solutions.
  • Good knowledge in information security, architecture and performance, system resilience, access control, privileged account management, monitoring, and log management.
  • Proven experience with ITIL, project management (PMP), architecture, information security, and governance processes.
  • Excellent communication and presentation skills. Ability to work collaboratively and effectively with IT, business units and other organizations.
  • Effective in building partnerships with organizational leaders and reporting to senior management.

For candidates based in Russia, if you face any technical difficulties, please email your resume and cover letter the Job Title and Requsition Number in the email subject line.

The Premier Bank for Emerging EconomiesThe New Development Bank (NDB) is a multilateral development bank established by Brazil, Russia, India, China…

Boost your career

Find thousands of job opportunities by signing up to eFinancialCareers today.

#J-18808-Ljbffr

Senior Professional, Information Technology (Governance, Risk and Compliance) (Based in Shangha[...] employer: New Development Bank

The New Development Bank (NDB) is an exceptional employer, offering a dynamic work environment in Shanghai that fosters innovation and collaboration. With a strong commitment to employee growth, NDB provides comprehensive training programs and opportunities for professional development in the field of IT governance, risk, and compliance. Employees benefit from a supportive culture that values diversity and teamwork, making it an ideal place for those seeking meaningful and rewarding careers in a leading international financial institution.
N

Contact Detail:

New Development Bank Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Professional, Information Technology (Governance, Risk and Compliance) (Based in Shangha[...]

Tip Number 1

Familiarise yourself with the specific governance, risk, and compliance frameworks mentioned in the job description, such as COBIT, ISO, and NIST. This knowledge will not only help you understand the role better but also allow you to speak confidently about how your experience aligns with these frameworks during interviews.

Tip Number 2

Network with professionals in the IT GRC field, especially those who have experience in multilateral development banks or similar institutions. Engaging with them can provide insights into the company culture and expectations, which can be invaluable when preparing for interviews.

Tip Number 3

Stay updated on the latest trends and regulatory developments related to IT governance and compliance. Being able to discuss current events and their implications for the role will demonstrate your proactive approach and genuine interest in the field.

Tip Number 4

Prepare to showcase your project management skills by thinking of specific examples where you've successfully led IT GRC initiatives. Highlighting your ability to manage resources and track progress will resonate well with the responsibilities outlined in the job description.

We think you need these skills to ace Senior Professional, Information Technology (Governance, Risk and Compliance) (Based in Shangha[...]

IT Governance
Risk Management
Compliance Frameworks
COBIT
ISO Standards
NIST
GDPR
IT Risk Assessments
Information Security
Project Management
Data Privacy
Analytical Skills
Communication Skills
Training and Development
Stakeholder Engagement
Problem-Solving Skills
Multi-tasking
Strategic Thinking
Interpersonal Skills
Cloud-based Solutions

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in Information Security, IT risk management, and compliance frameworks. Use keywords from the job description to demonstrate your fit for the role.

Craft a Compelling Cover Letter: In your cover letter, explain why you are passionate about governance, risk, and compliance in IT. Mention specific projects or experiences that align with the responsibilities outlined in the job description.

Showcase Your Skills: Clearly outline your skills related to IT governance, risk management, and compliance frameworks like COBIT and ISO. Provide examples of how you've successfully managed IT GRC projects in the past.

Proofread Your Application: Before submitting, carefully proofread your application materials for any spelling or grammatical errors. A polished application reflects your attention to detail and professionalism.

How to prepare for a job interview at New Development Bank

Understand the GRC Frameworks

Make sure you have a solid grasp of governance, risk management, and compliance frameworks like COBIT, ISO, and NIST. Be prepared to discuss how you've applied these in your previous roles, as this will demonstrate your expertise and relevance to the position.

Showcase Your Analytical Skills

Highlight your analytical and critical thinking abilities during the interview. Prepare examples of how you've identified IT risks and implemented mitigation strategies in past projects. This will show that you can handle the responsibilities of the role effectively.

Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving skills. Think about potential IT risk situations and how you would address them. This will help you illustrate your strategic thinking and execution skills.

Communicate Effectively

Since excellent communication skills are crucial for this role, practice articulating your thoughts clearly and concisely. Be ready to explain complex IT concepts in simple terms, especially when discussing your experience with stakeholders or presenting reports.

Senior Professional, Information Technology (Governance, Risk and Compliance) (Based in Shangha[...]
New Development Bank
N
  • Senior Professional, Information Technology (Governance, Risk and Compliance) (Based in Shangha[...]

    London
    Full-Time
    43200 - 72000 £ / year (est.)

    Application deadline: 2027-07-15

  • N

    New Development Bank

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>