At a Glance
- Tasks: Join our team to manage IT risk and enhance cybersecurity controls.
- Company: MUFG, a leading global financial group committed to innovation.
- Benefits: Flexible working options, competitive salary, and a focus on professional growth.
- Why this job: Make a real impact in cybersecurity while collaborating with diverse teams.
- Qualifications: Experience in IT security and risk management; certifications like CRISC or CISA preferred.
- Other info: Inclusive culture that values diversity and encourages continuous learning.
The predicted salary is between 36000 - 60000 £ per year.
Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.
With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career. Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.
The IT Risk, Security and Control (RSC) department works across Technology and the Business to perform Cybersecurity and Technology protection, governance, risk management and reporting. The department is made up of a number of specialist teams ultimately responsible for managing Cybersecurity and Technology risks in line with MUFG risk tolerance.
IT Risk & Control (ITRC) is one team within RSC responsible for Technology risk and control management. Key responsibilities of ITRC include the risk and control framework, risk and control self-assessment (RCSA), key control testing, key risk indicators, governance and reporting and internal and external audit oversight.
MAIN PURPOSE OF THE ROLETo be an integral member of the ITRC team with a primary focus on planning and executing key control testing, reporting and enhancing key risk indicators, and monthly governance and reporting, which will involve liaising with all Technology departments and some business functions and other teams as necessary.
KEY RESPONSIBILITIES- Perform control testing to assess the design and operating effectiveness of key cybersecurity and technology controls, and report conclusions to risk and control owners.
- Support efforts to sustain and enhance our risk and control framework to ensure material regulatory requirements are being assessed, tested and reported on.
- Manage and enhance key risk indicators that support risk appetite and residual risk measurement and reporting to the firm's executive leadership and risk committees.
- Support the execution of cybersecurity and technology risk management and its strategic roadmap, including management and development of new key risk indicators to enable our stakeholders to understand risk posture.
- Play an active role in monthly governance and reporting activities, in particular managing materials and actions relating to the monthly ITRMC meeting.
- Support complex, firm-wide initiatives towards successful completion and develop reports to communicate progress to senior management, risk committees, and Board of Directors.
- Work closely with cybersecurity and technology teams, in particular risk and control owners to enhance control effectiveness, drive remediation and closure of open issues.
- Understand current cybersecurity and technology strategy and help to mature it on a continuous basis through targeted initiatives.
- Collaborate with stakeholders to understand gaps and process improvements to enhance business operations.
- Analyse and measure the effectiveness of existing business processes and develop sustainable, repeatable, and quantifiable improvement recommendations (business requirements definition, gap analysis, cost-benefit analysis).
- Recommend solutions (in terms of both technology and business outcomes) based on root cause analysis, cost / benefits, feasibility analysis, and research of sound industry practices.
- Leverage industry frameworks, best practices, and changes in financial services sector that may impact reporting for cybersecurity and technology program and project developments.
- Stay abreast on current state understanding of information security program developments, industry frameworks, and changes in the company that may impact reporting.
- Experience in IT security and risk management, preferably in financial services sector.
- Experience in IT controls assurance and testing.
- Experience in IT controls governance and reporting.
- Experience in developing and providing executive level reporting.
- Certified CRISC / CISA or other relevant qualifications desirable.
- Excellent communication skills.
- Identifies multiple paths to success using analytical and critical thinking as well as decision-making skills.
- Exercises sound judgement, prioritises effectively, and strives for continuous improvement.
- Effectively collaborates with colleagues.
- Leverages available technology to drive efficiency and results.
- Understands and applies industry trends and best practices.
- Exhibits optimism, resilience, flexibility, and openness to others' ideas.
- Values learning as a lifelong professional objective.
- Engages inclusively and with intent.
- Always acts with integrity.
- Iterative problem-solving.
- Acts as a trusted advisor.
- Strong interpersonal skills.
- Strong organisational, critical thinking and problem solving skills.
- Ability to articulate key messages to a range of audiences.
We are open to considering flexible working requests in line with organisational requirements. MUFG is committed to embracing diversity and building an inclusive culture where all employees are valued, respected and their opinions count. We support the principles of equality, diversity and inclusion in recruitment and employment, and oppose all forms of discrimination on the grounds of age, sex, gender, sexual orientation, disability, pregnancy and maternity, race, gender reassignment, religion or belief and marriage or civil partnership.
We make our recruitment decisions in a non-discriminatory manner in accordance with our commitment to identifying the right skills for the right role and our obligations under the law.
Assistant Vice President, IT Risk and Control employer: MUFG Bank, Ltd.
Contact Detail:
MUFG Bank, Ltd. Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Assistant Vice President, IT Risk and Control
✨Tip Number 1
Network like a pro! Reach out to current employees at MUFG on LinkedIn or through mutual connections. Ask them about their experiences and any tips they might have for landing the Assistant Vice President role.
✨Tip Number 2
Prepare for the interview by brushing up on your knowledge of IT risk management and cybersecurity trends. Be ready to discuss how you can enhance key risk indicators and support governance activities.
✨Tip Number 3
Showcase your problem-solving skills during interviews. Use examples from your past experience where you identified gaps in processes and implemented improvements, especially in IT controls assurance.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows you’re genuinely interested in joining the MUFG team.
We think you need these skills to ace Assistant Vice President, IT Risk and Control
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Assistant Vice President, IT Risk and Control role. Highlight relevant experience in IT security and risk management, and don’t forget to showcase your analytical skills and decision-making abilities.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about this role and how your background aligns with MUFG’s values. Be sure to mention your experience with IT controls assurance and governance.
Showcase Your Communication Skills: Since excellent communication is key for this role, make sure your application reflects that. Use clear and concise language, and structure your documents well to demonstrate your ability to articulate key messages effectively.
Apply Through Our Website: We encourage you to apply through our website for the best chance of success. It’s the easiest way for us to keep track of your application and ensure it gets the attention it deserves!
How to prepare for a job interview at MUFG Bank, Ltd.
✨Know Your Stuff
Make sure you brush up on your knowledge of IT risk management and cybersecurity. Familiarise yourself with the key responsibilities of the role, especially around control testing and risk indicators. Being able to discuss specific frameworks or regulations relevant to the financial services sector will show that you're serious about the position.
✨Showcase Your Experience
Prepare to share examples from your past work that demonstrate your experience in IT controls assurance and governance. Use the STAR method (Situation, Task, Action, Result) to structure your answers, making it easy for the interviewer to see how your skills align with their needs.
✨Ask Smart Questions
Come prepared with insightful questions about the team dynamics, current challenges in IT risk management, or how they measure success in this role. This not only shows your interest but also helps you gauge if the company culture aligns with your values.
✨Be Yourself
While it's important to be professional, don't forget to let your personality shine through. The interviewers are looking for someone who fits into their collaborative culture, so being genuine and approachable can make a big difference. Show them your enthusiasm for the role and the company!