
This role could be based in India or Malaysia When you start the application process you will be presented with a drop down menu showing all countries, please ensure that you select a country where the role is based
To help grow trust with clients and regulators and maximize risk reduction, a Senior Manager of Technology Controls Testing role has been created to execute the testing of key IT controls across the bank’s critical IT systems. The role is integral to the execution of control testing across critical regulatory frameworks, including UK ACG FRCF (Financial Reporting & Controls Framework) and Material Controls (including BAU). These are ongoing regulatory requirements with direct linkage to the bank’s control assurance, financial reporting integrity, and resilience expectations.
This new team will provide planning, execution, reporting, governance, as well as advocating and imparting lessons and good practice to shape the design and implementation of key IT controls testing across all of the bank’s critical IT systems. In addition, determining whether these key controls are operating effectively via an evidence-based testing process.
Strategy
• Maintain effective relationships with stakeholders to facilitate:
• Effective key IT controls testing;
• The provision of timely, expert advice and assurance; and
• Partnerships with other functions to provide professional advice and assurance.
Business
• Execute a consistent, sustainable and re-performable technical control testing framework/methodology for the bank’s critical IT systems.
• Support the provision of timely and accurate control testing MI to the respective risk forums across business and functions.
• Promote compliance with the Bank’s risk framework and policies (e.g. ERMF and O&T RTF)
• Support stakeholders in defining remediation actions to address identified control weaknesses and issues across critical IT systems, and associated processes.
• Track issue remediation, check and challenge delivery status and escalate delays.
• Identify opportunities for automation of controls testing.
Processes
• Support the continuous improvement of risk and control processes, aligning to and avoiding duplication with other assurance functions.
People & Talent
• Provide proactive self-orienting and self-motivating leadership, and work with limited direction
• Lead through example and build the appropriate culture and values. Set appropriate tone and expectations, and work in collaboration with risk and control partners.
• Cultivate the right mix of SME and risk & control skills.
Risk Management
• Adopt an anticipatory approach to risk assessment through stakeholder engagement and monitoring of the external environment.
• Work with other control assurance teams to drive efficiency, effectiveness and reduce duplication.
• Provide robust challenge and escalation to senior management to ensure activities achieve risk reduction.
• Manage and drive continuous improvement of the IT control environment through proactive risk management.
Governance
• Tracking and reporting of risk assessments (e.g. audits, risk assessments etc) and their outputs to ensure oversight and escalation mechanisms are in place to provide MI on obligations.
• Work with the Application/Service Owners of critical IT systems to identify emerging IT risks and ensure they are appropriately addressed by relevant technical controls.
Regulatory & Business Conduct
• Display exemplary conduct and live by the Group’s Values and Code of Conduct.
• Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank.
• Contribute in the Controls team to achieve the outcomes set out in the Bank’s Conduct Principles: The Right Environment.
• Effectively and collaboratively identify, escalate and resolve conduct and compliance matters.
• Provide timely and accurate risk & control information to support regulatory meetings and RFIs.
Key stakeholders
• Head of Controls Testing
• TTO Risk Management
• Group Operational Risk
• Group Internal Audit – Enterprise Technology
• IT / Technology Audit
• IT / Technology Risk & Controls
Desired:
• Tertiary qualifications in Computer Science, Economics, Law or other relevant areas
• 5-8 years in IT Audit and/or IT Risk Management
• Experience in US SOX regime
• Professional qualifications such as CISA / CRISC will be advantageous
• Technical knowledge on IT controls best practices across different platforms, systems and security tools
• Good understanding of security processes, risks and controls, audit and testing methodologies
We're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.
Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.
Together we:
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.

We are a leading international banking group, with a presence in 54 of the world’s most dynamic markets. Our purpose is to drive commerce and prosperity through our unique diversity, and our heritage and values are expressed in our brand promise, here for good.
If you’re interested joining Standard Chartered sign up to our Talent Network.
Link: https://www.sc.com/careers/talentnetwork
Standard Chartered PLC is listed on the London and Hong Kong stock exchanges.