{"id":1167762,"url":"https://alion.io/job/prudential-singapore-technology-risk-management-manager-quan-ly-quan-tri-rui-ro-cong-nghe-thong-tin","title":"Technology Risk Management Manager (Quản lý Quản trị rủi ro Công nghệ thông tin)","company":{"id":232568,"name":"Prudential Singapore","domain":"prudential.com.sg","url":"https://alion.io/company/prudential-2","size_band":"1001-5000","is_staffing_agency":false,"is_intermediary":false,"ats_vendor":"Workday","truth_index":{"grade":"A","score":90,"open_postings":85,"ghost_share":0,"stale_share":0.2,"repost_share":0,"time_to_fill_p50_days":120,"computed_at":"2026-09-24T05:45:00Z"}},"role":"Finance","role_family":"Finance","seniority":"senior","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"hiring_geo_confidence":"structured","locations":["Ho Chi Minh City, Vietnam"],"countries":["VN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":33000,"max_usd":72000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":2825},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Agile","optional":false},{"name":"Azure","optional":false},{"name":"DLP","optional":false},{"name":"Incident Management","optional":false},{"name":"ITIL","optional":false},{"name":"Power BI","optional":false},{"name":"Python","optional":false},{"name":"SQL","optional":false},{"name":"Windows","optional":false}],"status":"live","first_seen_at":"2026-09-24T04:35:27Z","employer_posted_date":"2026-09-24","last_verified_at":"2026-09-21T21:10:26Z","board_verified":false,"closed_at":null,"days_open":0,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":0},"description":"Prudential’s purpose is to be partners for every life and protectors for every future. Our purpose encourages everything we do by creating a culture in which diversity is celebrated and inclusion assured, for our people, customers, and partners. We provide a platform for our people to do their best work and make an impact to the business, and we support our people’s career ambitions. We pledge to make Prudential a place where you can Connect, Grow, and Succeed.\nJob Purpose / Mục tiêu vị trí\nThis role is to:\nVị trí này giúp:\nProvide assurance and oversight on information and technology risks that might pose a threat to the business. Đảm bảo và giám sát các rủi ro thông tin và công nghệ có thể gây ra mối đe dọa cho doanh nghiệp.\n Provide Local Business Units (LBU) management with objective analysis, detailed observations and recommendations relating to key information and technology risk areas to mitigate the spectrum of risks relating to the achievement of the LBU’s business operations. Cung cấp cho ban quản lý công ty những phân tích khách quan, quan sát chi tiết và đề xuất liên quan đến các lĩnh vực rủi ro công nghệ và thông tin trọng yếu để giảm thiểu các rủi ro liên quan đến việc đạt được các hoạt động kinh doanh của LBU.\nProvide oversight and assurance within the LBU that processes, tools, and technologies are operating effectively to mitigate risks to information and technology assets. Giám sát và đảm bảo trong công ty rằng các quy trình, công cụ và công nghệ đang hoạt động hiệu quả để giảm thiểu rủi ro đối với thông tin và tài sản công nghệ.\nMonitor and review the effectiveness of implementation of information technology, security and data protection standards, policies, and procedures within the LBU to ensure compliance with regulatory, Group, and LBU specific policy requirements. Theo dõi và đánh giá hiệu quả của việc triển khai các tiêu chuẩn, chính sách và thủ tục về công nghệ thông tin, bảo mật và bảo vệ dữ liệu trong công ty để đảm bảo tuân thủ các yêu cầu chính sách cụ thể của cơ quan chức năng, của Tập đoàn và của công ty.\nSupport LBU operational functions as required to manage risks to information and technology assets appropriately. Hỗ trợ các chức năng vận hành của công ty theo yêu cầu để quản lý rủi ro đối với tài sản công nghệ và thông tin một cách phù hợp\nProvide independent, objective assurance that information and technology risks are being managed to ensure they are within the risk appetite approved by the Board. Đảm bảo tính độc lập, khách quan rằng các rủi ro thông tin và công nghệ đang được quản lý để đảm bảo những rủi ro này nằm trong khẩu vị rủi ro đã được Hội đồng quản trị phê duyệt.\nWork closely with the Group Technology Risk Management team to roll out and ensure the effective implementation of information and technology risk frameworks, policies, processes, and other initiatives. Phối hợp chặt chẽ với nhóm Quản lý Rủi ro Công nghệ của Tập đoàn để triển khai và đảm bảo triển khai hiệu quả các khuôn khổ, chính sách, quy trình và các sáng kiến khác về rủi ro công nghệ và thông tin\nJob Responsibilities / Phạm vi công việc\nThực hiện các hoạt động quản trị/ kiểm tra kiểm soát / tư vấn cho doanh nghiệp:\nPerform oversight of information technology incidents including security and privacy incidents. Ensure proper escalation of incidents as per LBU incident management process and group Cyber Security Incident Respond Plan. Review the recovery, remedial, and preventive actions taken by 1st Line is effective in managing IT incidents. Giám sát sự cố CNTT bao gồm sự có bảo mật và quyền riêng tư. Đảm bảo báo cáo sự cố đúng theo quy trình quản lý sự cố cấp Công ty và cấp Tập đoàn CSIRP. Kiểm tra lại các hành động khôi phục, khắc phục và phòng ngừa do tuyến phòng ngự số 1 thực hiện có hiệu quả trong việc quản lý các sự cố.\n Review the effectiveness and completeness of the Risk and Control Self-Assessment (RCSA). Ensuring that risks are properly articulated, controls are effective in ensuring risk are adequately managed. Performs control testing for key Technology and Privacy related risk as part of RCSA. Xem xét tính hiệu quả và tính đầy đủ của quy trình RCSA (Quy trình tự đánh giá rủi ro và kiểm soát). Đảm bảo rằng rủi ro được xác định rõ rang, các biện pháp kiểm soát có hiệu quả trong việc đảm bảo rủi ro được quản lý đầy đủ. Thực hiện kiểm tra kiểm soát đối với rủi ro chính liên quan đến Công nghệ và Quyền riêng tư như một phần của RCSA.\n Review accuracy/ completeness of reporting, ensuring Technology risks are properly identified and articulated. Prepare and submit Technology Risk update to LBU risk committee/ relevant forum. Collect data for Key Risk Indicators (KRI) reporting. Xem xét tính chính xác/ đầy đủ của báo cáo, đảm bảo các rủi ro về CNTT được xác định và trình bày rõ ràng. Chuẩn bị và gửi bản cập nhật rủi ro CNTT cho ủy ban rủi ro LBU/ diễn đàn có liên quan. Thu thập dữ liệu cho báo cáo KRI.\n Review Business Information Security Governance (BISG) metrics trend and review the effectiveness of actions/ controls implemented by 1st line. Escalate overdue issues and gaps to senior management/ and Risk Committee where appropriate. Xem xét xu hướng các chỉ số quản trị BISG và đánh giá hiệu quả của các hành động/ kiểm soát được thực hiện bởi tuyến đầu tiên. Báo cáo các vấn đề và lỗ hổng quá hạn cho quản lý cấp cao/ và Ủy ban quản lý rủi ro khi thích hợp.\nReview the completeness and effectiveness of the training and awareness session conducted by 1st line. Enhance TRM in 1st line by conducting training/coaching. Xem xét tính đầy đủ và hiệu quả của buổi đào tạo và nâng cao nhận thức do tuyến 1 thực hiện. Tăng cường TRM ở tuyến đầu tiên bằng cách tiến hành đào tạo/huấn luyện.\n Pre-audit review of effectiveness of controls (ideally should be on on-going basis). Review completeness of Issue Self-identified and Being Actioned by Management (ISBAM). Đánh giá trước về tính hiệu quả của các biện pháp kiểm soát (lý tưởng nhất là nên thực hiện liên tục). Đánh giá tính đầy đủ của ISBAM.\nConduct frequent deep dive review on the completeness and adequacy of documentation, controls, ensuring that risk is properly articulated, and controls are in place e.g., Risk and Materiality Assessment, Critical System Assessment, Cloud Risk Assessment, Could Consultation Presentation, Internet Insurance Attestation, etc. Tiến hành đánh giá sâu thường xuyên về tính đầy đủ và thỏa đáng của tài liệu, các biện pháp kiểm soát, đảm bảo rằng rủi ro được trình bày rõ rang và các biện pháp kiểm soát được áp dụng, ví dụ: Đánh giá rủi ro và tính trọng yếu, Đánh giá hệ thống trọng yếu, Đánh giá rủi ro Cloud, Trình bày tư vấn Cloud, Chứng nhận bảo hiểm Intetnet, v.v\n Review and ensure access (e.g., Cloud Storage, SFTP, RMD) are properly reviewed and approval is valid with proper business justification. Xem xét và đảm bảo quyền truy cập (ví dụ: Lưu trữ đám mây, SFTP, RMD) được xem xét đúng cách và phê duyệt hợp lệ với lý do kinh doanh phù hợp.\nReview the completeness and adequacy of the review performed by 1st line for Privacy Impact Analysis and SIT. Xem xét tính đầy đủ và thỏa đáng của đánh giá do tuyến đầu tiên thực hiện đối với PIA và SIT.\nReview the completeness and adequacy of the review performed by 1st line for TISQ. Xem xét tính đầy đủ và thỏa đáng của đánh giá được thực hiện bởi dòng đầu tiên cho TISQ.\nFor DLP rules, review and ensure access is properly reviewed and approval is valid with proper business justification. Review DLP rules and effectiveness of DLP controls. Đối với các quy tắc DLP, xem xét và đảm bảo quyền truy cập được xem xét đúng cách và phê duyệt hợp lệ với lý do kinh doanh phù hợp. Xem xét các quy tắc DLP và hiệu quả của các biện pháp kiểm soát DLP.\nProvide SME support to identify technology risks from the early stages of digitalization projects /process in the Company. Tư vấn, hỗ trợ nhận diện sớm các rủi ro CNTT liên quan đến các dự án / quy trình số hóa trong công ty.\nOthers / Các công việc khác:\nProactively look for better ways to improve the effectiveness of the risk management activities. Chủ động tìm kiếm những cách thức giúp tăng cường tính hiệu quả của các hoạt động QTRR\n Other tasks to be assigned by the Line manager or CRO of Company’s management (if any). Các công việc khác theo sự phân công của Quản lý trực tiếp hoặc Phó Tổng Giám đốc Khối Tuân thủ, Pháp lý, Rủi ro hoặc Ban Lãnh đạo Công ty (nếu có) \nJob Accountability / Trách nhiệm chính\nThis role is accountable for:\nCác trách nhiệm chính của vị trí này bao gồm:\nEnsure the formation of LBU Technology Risk Management framework and the successful rollout and implementation within the LBU. Đảm bảo hình thành khuôn khổ Quản lý Rủi ro Công nghệ tại Công ty và triển khai và thực hiện thành công.\nProvide technical and best practice guidance on information and technology risk taking into account specific platform and regional complexities and issues. Cung cấp hướng dẫn kỹ thuật và thực tiễn tốt nhất về rủi ro thông tin và công nghệ có tính đến các vấn đề và sự phức tạp của nền tảng cụ thể cũng như của Tập đoàn\nSupport the LBU Technology Risk Management Department in ensuring periodic reporting of information and technology risk matters to LBU risk committee. Hỗ trợ Phòng Quản Lý Rủi Ro CNTT trong việc đảm bảo báo cáo định kỳ về các vấn đề rủi ro công nghệ và thông tin cho Ủy ban quản lý rủi ro ở cấp Công ty.\nWork closely with LBU operational risk management team in managing LBU information and technology risk. Phối hợp chặt chẽ với nhóm quản lý rủi ro hoạt động cấp Công ty trong việc quản lý rủi ro công nghệ và thông tin của Công ty.\nEnsure the formation of the information and technology risk appetite and key risk metrics for management oversight and the successful rollout within the LBU. Đảm bảo hình thành khẩu vị rủi ro công nghệ và thông tin cũng như các chỉ số rủi ro chính để giám sát quản lý và triển khai thành công trong Công ty.\nProactively monitor LBU risk register and to escalate any potential risk area for Group level risk reporting. Chủ động theo dõi Sổ đăng ký rủi ro cấp Công ty và báo cáo bất kỳ khu vực rủi ro tiềm ẩn nào cho cấp Quản trị Rủi ro Tập đoàn\nWork closely with LBU ORM to review LBU risk register to ensure the risk rating, treatment plan and target completion date are able to reduce/mitigate the risk on reasonable basis. Phối hợp chặt chẽ với nhóm quản lý rủi ro hoạt động cấp Công ty để xem xét Sổ đăng ký rủi ro cấp Công ty nhằm đảm bảo xếp hạng rủi ro, kế hoạch xử lý và ngày hoàn thành mục tiêu có thể giảm/giảm nhẹ rủi ro trên cơ sở hợp lý.\nPromote a risk culture to LBU stakeholders in managing information and technology risk. Thúc đẩy văn hóa rủi ro cho các bên liên quan trong Công ty trong việc quản lý rủi ro thông tin và công nghệ. \nPerformance measures/Kết Quả Công Việc\nDeliver the Group Technology Risk Management activities such as KRI reporting and RCSA (Risk and Control Self-Assessment) as per plan.\nOversight of material IT incidents including timely escalation and complete independent review of recovery, remediation and prevention actions.\nOversight of self-identified issues; timely identification and escalation of control weaknesses\nOn-time submission and good quality of committee reporting, including complete and accurate KRI data, threshold breaches and risk elaborations.\nActive engagement at early project stages; good quality of technology-risk advice ensuring material risks identified before key decisions.\nDeliver cross-function support to Group or LBU strategic projects, investigation cases and ad-hoc tasks as required by Line Manager and CRO.\nAligned with the other annual goal-setting objectives and reviewed on basis to ensure continuous improvement and strategic alignment.\nJob Requirements / Yêu cầu\nMandatory Qualifications/ Bằng cấp Bắt buộc:\nBachelor ‘degree in Technology, Information systems, Data science or related subjects. Bằng Cử nhân về Công nghệ, Hệ thống thông tin, Khoa học dữ liệu hoặc các môn học liên quan.\nGood awareness of Enterprise Risk Management. Nh...","description_format":"text","description_chars":17816,"description_truncated":true,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[{"language":"English","level":"All levels","optional":true}]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Financial Services","Hardware","Insurance"],"lifecycle":[{"event":"open","at":"2026-09-24T04:35:27Z"}],"liveness":{"score":90,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.903,"p_room":1,"age_days":0,"expected_fill_days":120,"reasons":["conf:1","velocity","win:early","comp:brand"],"computed_at":"2026-09-24T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/prudential-singapore-technology-risk-management-manager-quan-ly-quan-tri-rui-ro-cong-nghe-thong-tin","json_url":"https://alion.io/job/prudential-singapore-technology-risk-management-manager-quan-ly-quan-tri-rui-ro-cong-nghe-thong-tin.json","meta":{"generated_at":"2026-09-24T07:37:34Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}