Clera home
·Dashboard

Jobs at Bank of China (Now Hiring) — 9 open

Bank of China logoBank of China

Chief Information Security Office-Strategy, Programs & GRC AVP

New York, New York, United States · On-site

$65k–$150k/yr

Senior$8.0B raised

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutiona…

Skills: Information Security Strategy, GRC, Risk Assessment, Project Management, Data Privacy

Bank of China logoBank of China

Human Resources Department - Consultant Management Associate

New York, New York, United States · On-site

$42k–$90k/yr

Mid level$8.0B raised

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutiona…

Skills: Consultant Management, Vendor Management, Full-cycle Recruitment, Workforce Analytics, Contract Negotiation

Bank of China logoBank of China

Operation Service Department-Custody Associate/AVP

New York, New York, United States · On-site

$42k–$90k/yr

Mid level$8.0B raised

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutiona…

Skills: Securities Settlement, Asset Servicing, Daily Reconciliation, Corporate Actions, Tax Withholding

Bank of China logoBank of China

Operation Service Department-Custody Associate

New York, New York, United States · On-site

$42k–$90k/yr

Mid level$8.0B raised

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutiona…

Skills: Securities Settlement, Asset Servicing, Daily Reconciliation, Corporate Actions, Tax Withholding

Bank of China logoBank of China

Legal & Compliance Department-Compliance Monitoring and Testing Group (CMTG) AVP

New York, New York, United States · On-site

$65k–$150k/yr

Senior$8.0B raised

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutiona…

Skills: Compliance Testing, BSA/AML, OFAC, Regulatory Compliance, Auditing

Bank of China logoBank of China

Chicago Branch-Business Development Associate

Chicago, Illinois, United States · On-site

$42k–$90k/yr

Mid level$8.0B raised

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutiona…

Skills: Credit Analysis, Due Diligence, Financial Statement Spreading, Cash Flow Projection, KYC

Bank of China logoBank of China

Legal & Compliance Department-Regulatory Affairs Office (RAO) AVP/VP

New York, New York, United States · On-site

$110k–$230k/yr

Senior+$8.0B raised

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutiona…

Skills: Regulatory Affairs, Compliance Management, Risk Management, Stakeholder Management, Project Management

Bank of China logoBank of China

Human Resources Department-Employee Relations Associate/Assistant Vice President

New York, New York, United States · On-site

$42k–$150k/yr

Mid level$638M raised

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutiona…

Skills: Employee Relations, Internal Investigations, Employment Law, EEOC Compliance, Stakeholder Management

Bank of China logoBank of China

Enterprise Risk Management Department-Risk Data Aggregation and Risk Reporting (RDA) AVP/Associate

New York, New York, United States · On-site

$65k–$150k/yr

Mid level$638M raised

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutiona…

Skills: SQL, Python, Data Analysis, Risk Reporting, Business Intelligence Tools

Bank of China logo

Chief Information Security Office-Strategy, Programs & GRC AVP

Bank of China

New York, New York, United States • On-site

Apply
Senior

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

  • $65k–$150k/yr
  • Full-time
  • bachelor degree, professional certificate
  • Posted 5d ago
  • Apply by Jul 24
  • ~40 hrs/week

Responsibilities

The role is responsible for coordinating information security strategy, managing GRC functions, and overseeing data privacy and identity access management. It involves conducting risk assessments, ensuring regulatory compliance with US banking standards, and managing CISO-led projects and reporting.

Requirements

Requires a Bachelor's degree in a technical or business field with at least 5 years of experience in risk management or IT operations. Candidates must have specific experience with US banking regulations and IT/IS risk frameworks, with certifications like CISSP or CRISC preferred.

Full job description

Introduction

Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutional weight and global breadth provide our clients with a stable and reliable financial partner, whether in Corporate or Personal Banking or our Trade Services, Commodities, Financial Institutions and Global Markets lines of business.

Overview

This incumbent will provide Strategy, Programs, Governance, Risk and Compliance functions as required to fulfill BOCNY information security program requirements. This incumbent will provide Strategy Coordination, CISO Projects Management, Training & Culture, Metrics & Reporting, Governance, Risk Assessments, Compliance, Data Privacy and Identity functions as detailed below.

Responsibilities

Strategy

  • Coordinate Information Security strategy in alignment with the BOCNY branch strategy.
  • Maintain strategic initiatives tracking and associated KRIs to track progress and execution of the objectives.
  • Conduct quarterly strategy reviews with the CISO team to ensure alignment and momentum continue. Adjust strategy as necessary.
  • Provide end-to-end project management function for all CISO led projects. 

Programs

  • Manage all CISO programs, including but not limited to: Information Security Program, Data Privacy Program, and Training & Culture Program including Security Training, Phishing Campaigns, and Tabletop Exercises.

Governance

  • Establish and maintain Information Security policies and procedures.
  • Ensure CISO roles and responsibilities are clearly delineated and documented to ensure efficiency, create synergies and ensure TISR is being properly managed across first and second lines.
  • Periodically refresh and update TISR controls guidance in relevant policies and supporting procedures with detailed implementation guidance.
  • Develop, monitor, and track CISO policy adherence measures and metrics.
  • Provide all administrative functions for the Information Security Committee and all its sub-committees. 

Risk

  • Establish and enhance a TISR framework that consists of the appropriate components to effectively manage TISR.
  • Conduct risk assessments of TISR for Projects, Third-Party, New Activities and Applications.
  • Develop and execute an TISR annual work plan of risk identification, assessment, and control evaluation and testing activities.
  • Review and contribute to the development and maintenance of the taxonomy for Risk, Process and Controls for TISR domains.
  • Catalog and oversee remediation of TISR issues include those arising from Audit and Regulatory exams, ITRM deep dives, root cause analyses and control testing.
  • Track observed control gaps and root causes and annually refresh CISO policy and procedures to reflect new and enhanced controls. 

Compliance

  • Prepare and submit Audit Requests for evidence.
  • Anticipate audit requests and prepare comprehensive approach to for CISO policy and standards and associated implementation.
  • Prepare response evidence for IT/IS related regulatory exams.
  • Recommend changes to policy, process or procedures to align with OCC and other federal guidelines and regulations.
  • Evaluate and provide evidence of compliance for BOCNY Branch.
  • Liaison with LCD/RAO/IAD to ensure collaboration and partnership so that CISO can meet regulatory IT/IS requirements. 

Data Privacy

  • Develop and implement strategies to ensure compliance with relevant privacy laws and regulations.
  • Stay up-to-date with changes in data privacy legislation and industry best practices.
  • Assist in the development and maintenance of privacy policies, standards and procedures.
  • Provide oversight and monitoring of privacy risk assessments by the FLUs.
  • Ensure all relevant processes reflect privacy requirements and comply with laws and regulations.
  • Plan and implement privacy training programs and communications.
  • Identify and assess privacy risks within the organization. 

Metrics & Reporting

  • Manage all metrics and reporting for CISO, including: Operational, Executive & Board, Budget & Headcount, Dashboards.

Identity & Access Management

  • Establish and periodically update policies, procedures, and guidelines related to access recertification, incorporating industry best practices.
  • Manage the end-to-end process of user access reviews, including planning, execution, tracking, and resolution of identified issues.
  • Conduct periodic User Recertification & Access Reviews throughout all BOC applications to ensure consistency and accuracy.
  • Collaborate with cross-functional teams, including IT, OSD, and business units, to align access governance with broader organizational goals.
  • Conduct periodic assessments of user access governance processes, identifying opportunities for improvement and implementing necessary enhancements.

Qualifications

  • Bachelor’s Degree in Business, Risk, Data, Computer Science, Management Information Systems, Engineering, Mathematics, or related field
  • Minimum 5 years of work experience in Risk Management, Audit, IT/IS Operations, or other relevant functions
  • Minimum 3 years of experience in developing and executing IT/IS Risk programs, projects, and policies
  • Minimum 1 year of experience working with US Banking Regulations, financial industry standards, and industry standard IT/IS Risk Frameworks
  • Strong program, frameworks, project management development, implementation, and maintenance skills
  • Strong writing skills, especially in the context of governing documents, such as policies and standards
  • Strong verbal and interpersonal skills when working with a diverse group of stakeholders that can include senior management, business staff, and technical staff
  • Creative problem-solving skills
  • Strong organizational understanding and ability to navigate complex organizations
  • Results oriented and metrics driven
  • Understanding of financial services business and related processes and IT/IS risks and how to mitigate with well-designed, commercially sound controls
  • Operational and IT/IS risk assessment and management skills in first, second, and/or third line capacity
  • Sound and practical IT/IS risk management and program knowledge
  • Financial / banking industry, business line, and product knowledge
  • Familiarity with IT/IS Risk Management regulations, standards, and frameworks including NIST, ISO27002, FFIEC Guidelines, etc.
  • Risk identification and assessments of different types that are commensurate with the size and complexity of the financial institution
  • IT/IS risk management and audit principles and industry standard practices
  • CISSP/CRISC/ or IT related certifications preferred

Pay Range

Actual salary is commensurate with candidate’s relevant years of experience, skillset, education and other qualifications.

USD $65,000.00 - USD $150,000.00 /Yr.

Related keywords

CISOGRCTISRNISTISO27002FFIECCISSPCRISCOCCData PrivacyIdentity & Access ManagementRisk ManagementIT AuditBanking RegulationsInformation SecurityPhishing Campaigns

About Bank of China

LinkedInVisit site
Industry
Banking
Company size
5,001-10,000 employees
Founded
1912
Headquarters
Beijing
LinkedIn followers
192,983
Total funding
$8.0B

Bank of China, include BOC Hong Kong, BOC International, BOCG Insurance and other financial institutions, providing a comprehensive range of high-quality financial services to individual and corporate customers as well as financial institutions worldwide. Over the past century, Bank of China played an important role in China’s financial history. It was established in 1912 pursuant to the approval of DR. Sun Yat-sen. In the following 37 years the Bank served as the central bank, international exchange bank and specialized foreign trade bank successively. In 1949, Bank of China became the state-designated specialized foreign exchange bank. In 2003, it was named by the State Council as one of the pilot banks for joint-stock reform of wholly state-owned commercial banks. On August 26, 2004, Bank of China Limited was formally incorporated in Beijing as a state-controlled joint stock commercial bank. Bank of China is the most internationalized commercial bank in China. BOC London Branch, the first overseas branch of the Chinese banks, was established in 1929. Currently, it had over 10000 domestic operations and over 600 overseas operations. In 1994 and 1995, Bank of China became the note issuing bank in Hong Kong and Macao respectively. The Bank prepared a new strategic development plan which was approved by the Board of Directors in March 2009. Strategic Positioning: To be a large multinational banking group based on a diversified and integrated cross-border business platform, with a core business of commercial banking. Strategic Goals: To be a leading international bank delivering growth and excellence.

Offices: Bank of China Head Office Building, No. 1, Fuxingmennei Dajie, Xicheng District, Beijing, 100818, CN

BankingTrade financingand Investment bankingFinanceBankingPaymentsVenture Capital
View all jobs at Bank of China

About Bank of China

LinkedInVisit site
Industry
Banking
Company size
5,001-10,000 employees
Founded
1912
Headquarters
Beijing
LinkedIn followers
192,983
Total funding
$8.0B

Bank of China, include BOC Hong Kong, BOC International, BOCG Insurance and other financial institutions, providing a comprehensive range of high-quality financial services to individual and corporate customers as well as financial institutions worldwide. Over the past century, Bank of China played an important role in China’s financial history. It was established in 1912 pursuant to the approval of DR. Sun Yat-sen. In the following 37 years the Bank served as the central bank, international exchange bank and specialized foreign trade bank successively. In 1949, Bank of China became the state-designated specialized foreign exchange bank. In 2003, it was named by the State Council as one of the pilot banks for joint-stock reform of wholly state-owned commercial banks. On August 26, 2004, Bank of China Limited was formally incorporated in Beijing as a state-controlled joint stock commercial bank. Bank of China is the most internationalized commercial bank in China. BOC London Branch, the first overseas branch of the Chinese banks, was established in 1929. Currently, it had over 10000 domestic operations and over 600 overseas operations. In 1994 and 1995, Bank of China became the note issuing bank in Hong Kong and Macao respectively. The Bank prepared a new strategic development plan which was approved by the Board of Directors in March 2009. Strategic Positioning: To be a large multinational banking group based on a diversified and integrated cross-border business platform, with a core business of commercial banking. Strategic Goals: To be a leading international bank delivering growth and excellence.

Offices: Bank of China Head Office Building, No. 1, Fuxingmennei Dajie, Xicheng District, Beijing, 100818, CN

BankingTrade financingand Investment bankingFinanceBankingPaymentsVenture Capital
View all jobs at Bank of China

Similar companies hiring

Kotak Mahindra Bank (4862)Bank of America (3301)TD (1651)Scotiabank (1644)U.S. Bank (1428)RBC (1397)Barclays Corporate Banking (967)Santander (863)United Fidelity Bank (861)IDFC FIRST Bank (800)DBS Bank (783)ING (733)
Clera home

Your AI-talent agent. Connecting talents with dream jobs.

Earn $5,000

Tools

  • Salary Calculator
  • Resume Review
  • Startup Map

Explore

  • Jobs
  • Discover Jobs
  • Companies
  • Case Studies
  • Referral

Platform

  • Pricing
  • Integrations
  • Partners
  • Acquihire

Clera

  • Manifesto
  • Engineering
  • We are hiring!
  • FAQs
  • Blog
  • Press

Tools

  • Salary Calculator
  • Resume Review
  • Startup Map

Explore

  • Jobs
  • Discover Jobs
  • Companies
  • Case Studies
  • Referral

Platform

  • Pricing
  • Integrations
  • Partners
  • Acquihire

Clera

  • Manifesto
  • Engineering
  • We are hiring!
  • FAQs
  • Blog
  • Press

© 2026 Clera Labs, Inc.

PrivacyTermsBug Bounty