Proficient with Monetary Authority of Singapore (MAS) Technology Risk Management (TRM) guidelines and Third Party Risk Management (TPRM).
* Review, assess, and validate IT and cyber-related requests, ensuring full alignment with established policies, processes, and guidelines.
* Ensure audit and governance documentation and evidence are complete, accurate, and audit-ready.
* Manage and review change requests, validating compliance with defined change management processes.
* Actively challenge and reject incomplete, non-compliant, or poor-quality submissions, providing clear feedback and remediation guidance.
* Ensure all activities comply with internal governance frameworks, risk standards, and regulatory requirements.
* Support cyber risk management activities by identifying, documenting, and tracking technology and cyber risks.
* Prepare clear and concise reports, dashboards, and presentations for management and governance forums.
* Engage with stakeholders across IT, Cyber Security, and Business teams, and push back professionally where standards are not met.
* Support continuous improvement of GRC processes, controls, and documentation standards.
* Experienced in vulnerability solutions/tools such as Tenable.
* Required to perform any other related duties as assigned.
Typical Work Schedule
Consultant will work from Monday to Friday 8:45am to 6:00pm (Singapore Standard Time).
Consultant will be required to work extended hours (if deliverables are behind schedule).
[Note] Consultant required to work from office (WFO) for the first 2 months, followed by 1 day working from home (WFH) per week
If you are keen on the above position, reach out to Christopher Shepherdson (EA Licence No: 11C5502 | EAP Registration No: R1877011) at or contact +65 6818 3193 for a confidential chat.
