Job Summary Reporting to the Validation Lead, the Line 1.5 assurance role provides independent, control-focused assurance within Technology. The role evaluates the design and operating effectiveness of controls across te…
Skills: Control Assurance, Technology Risk Management, Cybersecurity, IT Audit, Data Governance
Senior Associate - Information Security: Identity & Access Management
Singapore, Singapore · On-site
Senior
Job Summary SGX is seeking a driven and capable Information Security professional to join the Identity and Access Management (IAM) function. This role will play a key part in strengthening identity and access management,…
Senior Associate, Sales Business Support, Global Sales & Origination
Singapore, Singapore · On-site
Mid level
Job Summary The Sales Business Support role enables sales effectiveness and governance by delivering data‑driven insights, AI‑enabled process improvements, and strong commercial controls. Partnering closely with Sales an…
Skills: Sales Operations, Business Analysis, CRM Management, Process Automation, AI Prompt Design
Job Summary The successful candidate will lead IT Controls (Tec & Cyber Controls) team in the ONT - Operations (OPS) & Technology (TEC) Group’s Control & Validation (C&V) Function. ONT Control & Validation Function compr…
Skills: Technology Risk Management, IT Governance, Cybersecurity Awareness, Audit and Regulatory Compliance, Stakeholder Management
Vice President - Information Security, Security Tool Management & Optimization
Singapore, Singapore · On-site
Senior
Job Summary SGX is seeking Vice President/Senior Vice President (Information Security) lead to shape and deliver stability to our Security Platforms. The Security Tools Optimization & Engineering Specialist is responsibl…
Job Summary The Senior Member Readiness Manager owns leadership for ongoing member testing and conformance, including Industry Wide Testing (IWT) as well as member readiness for complex, multi-stakeholder platform upgrad…
Job Summary SGX is hiring DevOps Engineers who treat operations as a software problem. You'll keep production healthy, but more importantly you'll build the automation, tooling, and agentic workflows that make running ou…
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Full-time
bachelor degree, professional certificate
Posted 1d ago
Apply by Jul 31
~40 hrs/week
Responsibilities
Perform independent validation of technology controls across cybersecurity, IT operations, and data governance to ensure regulatory alignment. Develop continuous validation use cases and prepare risk reports for senior management and risk committees.
Requirements
Requires a bachelor's degree and 5 to 7 years of experience in technology risk, audit, or governance within financial institutions. Must possess professional certifications like CISA or CISSP and have a strong understanding of AI risks and Singapore regulatory expectations.
Full job description
Job Summary
Reporting to the Validation Lead, the Line 1.5 assurance role provides independent, control-focused assurance within Technology. The role evaluates the design and operating effectiveness of controls across technology and processes. It partners closely with First Line control owners, leveraging data-driven and continuous assurance to identify control gaps earlier and strengthen regulatory control alignment.
Job Responsibilities
Control Assurance and Testing
Perform independent validation of key Technology controls, assessing design and operating effectiveness of controls related to areas such as cybersecurity, IT operations, data governance, change management, outsourcing, and access management.
Assess adherence to internal policies, standards, and regulatory requirements (e.g., MAS TRM, MAS Cyber Hygiene Notices, Outsourcing Guidelines, CCoP).
Document validation findings and providing clear, actional recommendations.
Develop and implement continuous validation use cases to provide more timely control gap identification and reduce reliance on manual testing.
Regulatory Compliance
Support the interpretation and implementation of regulatory expectations (e.g., MAS TRM, MAS Cyber Hygiene Notices, Outsourcing Guidelines, CCoP).
Risk Governance, Reporting, and Stakeholder Engagement
Prepare validation reports for Technology management and risk committees with clear risk articulation, prioritised recommendations, and target implementation dates.
Engage constructively with stakeholders across Line 1, 2, and 3, promoting a strong risk and control culture.
Job Requirements
Bachelor’s Degree with 5 to 7 years of relevant experience within financial institutes in the areas of Technology Risk Management/ Audit/ Governance, and Data Analytics.
Relevant professional certifications such as CISA, CISM, CISSP, CRISC or equivalent.
Strong understanding of IT processes such as SDLC, change management, cloud, infrastructure operations, and cybersecurity.
Understanding of AI and Generative AI concepts, associated risks, and governance considerations, including model risk, data privacy, security, explainability, bias, accountability, and human oversight.
Experience participating in AI governance, technology risk, model risk management, or assurance reviews involving AI or Generative AI solutions.
Familiarity with Singapore regulatory expectations (e.g., MAS TRM, MAS Cyber Hygiene Notices, Outsourcing Guidelines, CCoP).
Preferred Skills:
Good communication and writing skills, especially in summarising risks and controls clearly for senior stakeholders.
Ability to independently conduct reviews, perform control design assessment, process walkthroughs, evidence, and identify root causes.
Ability to provide constructive challenges while maintaining a strong relationship with stakeholders and control owners.
Independent, detail-oriented, and capable of managing multiple priorities.
Familiarity with industry AI governance frameworks and regulatory guidance, such as MAS FEAT Principles, NIST AI Risk Management Framework (AI RMF), or equivalent frameworks will be an advantage.
Experience in applying data analytics and automation using BI Tools (such as Power BI, Tableau, QlikView), and Programming/ Scripting Languages (such as SQL, Python, Alteryx) to enhance control testing will be an advantage.
Related keywords
MAS TRMMAS Cyber Hygiene NoticesOutsourcing GuidelinesCCoPCISACISMCISSPCRISCSDLCGenerative AIModel RiskMAS FEAT PrinciplesNIST AI RMFPower BITableauQlikView
SGX Group (Singapore Exchange) is Asia's leading and trusted securities and derivatives market infrastructure, operating equity, fixed income and derivatives markets to the highest regulatory standards. We also operate a multi-asset sustainability platform, SGX FIRST or Future in Reshaping Sustainability Together.
We are committed to facilitating economic growth in a sustainable manner, leveraging our roles as a key player in the ecosystem, a business, a regulator and a listed company. With climate action as a key priority, we aim to be a leading sustainable and transition financing and trading hub offering trusted, quality, end-to-end products and solutions.
As Asia's most international, multi-asset exchange, we provide listing, trading, clearing, settlement, depository and data services, with about 40% of listed companies and over 80% of listed bonds originating outside Singapore. We are the world's most liquid international market for the benchmark equity indices of China, India, Japan and ASEAN. In foreign exchange, we are Asia's leading marketplace and the most comprehensive service provider for global FX over-the-counter and futures participants. Headquartered in AAA-rated Singapore, we are globally recognised for our risk management and clearing capabilities.
Offices: 2 Shenton Way, #02-02 SGX Centre, Singapore, Singapore 068804, SG · 11 North Buona Vista Drive, #06-07 The Metropolis Tower 2, Singapore, Singapore 138589, SG · 201 Kent St, Level 6, Sydney, New South Wales 2000, AU · No. 1 Jian Guo Men Wai Avenue, Chaoyang District, Unit 09-12, Level 33, China World Trade Centre, Tower A, Beijing, 100004, CN · No. 33 Des Voeux Road, Central, Unit 12B, 12/F, Hong Kong SAR, HK
SGX Group (Singapore Exchange) is Asia's leading and trusted securities and derivatives market infrastructure, operating equity, fixed income and derivatives markets to the highest regulatory standards. We also operate a multi-asset sustainability platform, SGX FIRST or Future in Reshaping Sustainability Together.
We are committed to facilitating economic growth in a sustainable manner, leveraging our roles as a key player in the ecosystem, a business, a regulator and a listed company. With climate action as a key priority, we aim to be a leading sustainable and transition financing and trading hub offering trusted, quality, end-to-end products and solutions.
As Asia's most international, multi-asset exchange, we provide listing, trading, clearing, settlement, depository and data services, with about 40% of listed companies and over 80% of listed bonds originating outside Singapore. We are the world's most liquid international market for the benchmark equity indices of China, India, Japan and ASEAN. In foreign exchange, we are Asia's leading marketplace and the most comprehensive service provider for global FX over-the-counter and futures participants. Headquartered in AAA-rated Singapore, we are globally recognised for our risk management and clearing capabilities.
Offices: 2 Shenton Way, #02-02 SGX Centre, Singapore, Singapore 068804, SG · 11 North Buona Vista Drive, #06-07 The Metropolis Tower 2, Singapore, Singapore 138589, SG · 201 Kent St, Level 6, Sydney, New South Wales 2000, AU · No. 1 Jian Guo Men Wai Avenue, Chaoyang District, Unit 09-12, Level 33, China World Trade Centre, Tower A, Beijing, 100004, CN · No. 33 Des Voeux Road, Central, Unit 12B, 12/F, Hong Kong SAR, HK