← The wire

Non-Financial Risk Expert

Julius Baer · Singapore

Posted 18h ago · first seen by the radar 2h ago · last checked on the employer's board 6m ago

Director · Onsite · Full time

At Julius Baer, we celebrate and value the individual qualities you bring, enabling you to be impactful, to be entrepreneurial, to be empowered, and to create value beyond wealth. Let’s shape the future of wealth management together.

The CRO division develops and oversees the global framework for risk identification, control, reporting, and management within the risk tolerance for the various business activities for Julius Baer, aiming at sustainable growth of the franchise.

The incumbent is responsible for supporting the Head of Non-Financial Risk Control (NFRC) Asia in a variety of functional areas within NFRC and Data Loss Prevention (DLP) focusing policy, governance, incident management and escalations, operations, internal controls, risk advisory and electronic discovery (e-forensics) for Asia. This means providing the needed support in developing, driving and managing all NFRC activities (including projects and education) in BJB Asia. The incumbent will also work closely with global counterparts in Switzerland as part of the team to support the rollout of global initiatives in Asia.

As part of the Risk Management function in the Bank, the incumbent will need to work closely with the Front, IT, Corporate Services or other relevant functions together with the Head of NFRC Asia to ensure that NFRC risks are highlighted, mitigated and remediated appropriately.

YOUR CHALLENGE

Data Loss Prevention

  • Maintain, operate and continuously optimize DLP systems covering both data-at-rest and data-in-motion controls across Asia
  • Review and enhance DLP policies, ensuring alignment with business requirements, regulatory obligations, and information security standards
  • Oversee and support DLP platform upgrades, releases, and migrations within Asia
  • Monitor, review, investigate, and follow up on DLP alerts and incidents to ensure timely remediation and risk mitigation
  • Perform end-to-end case management for DLP incidents, including investigation, stakeholder coordination, escalation, and closure, in alignment with the bank's breach management framework
  • Generate and deliver DLP incident metrics, trend analysis, and breach reports to various stakeholder groups
  • Support DLP governance and enhancement initiatives, including roadmap planning, regional engagement with Head Office, and the delivery of ad-hoc business or regulatory projects
  • Work closely with Business Partners and other stakeholders to increase DLP awareness, strengthen data protection practices, and support the effective implementation of DLP controls and policies

Other NFRC Responsibilities

  • Support NFR Asia investigations as required, including the operation of relevant tools
  • Review, maintain, and coordinate updates to Information Security policies and guidelines, and provide guidance and clarification to business stakeholders
  • Provide security risk advisory and risk management support for new initiatives within Asia
  • Take ownership of assigned NFRC controls, ensuring timely completion, effectiveness, and compliance with internal requirements
  • Support internal and external audits by coordinating reviews, facilitating evidence collection, and tracking remediation activities
  • Provide consultation and advisory services on Information Security domains, including Client Identifying Data, Cross-Border Data Transfer, Data Ownership, Data Protection, Data Export Controls, and technology-related initiatives
  • Collaborate with global, regional, and local stakeholders to effectively manage information risk matters, and communicate risk insights, control requirements, and key issues to senior management and other stakeholders
  • Ensure appropriate ethical and compliant behaviour within the area of responsibility by clear demonstration of appropriate values and behaviours including but not limited to standards on honesty and integrity, due care and diligence, fair dealing (treating customers fairly), management of conflicts of interest, competence and continuous development, adequate risk management, and compliance with applicable laws and regulations

YOUR PROFILE

Personal and Social

  • Strong interpersonal and communication skills
  • Self-driven and able to work independently to drive initiatives and tasks
  • Ability to influence stakeholders and resolve conflicts constructively
  • Resilient and able to perform effectively under pressure in a fast-paced environment
  • Confident communicator with the ability to engage stakeholders at all levels, including senior management
  • Strong organizational and prioritization skills, with the ability to deliver results within tight deadlines.

Professional and Technical

  • Bachelor's Degree in Information Security, Computer Science, Computer Engineering, or a related discipline.
  • Relevant Information Security experience within the banking or financial services industry, preferably in Wealth Management.
  • Strong knowledge of Information Security and Risk Governance with hands-on experience
  • Good knowledge of regulatory requirements and industry standards applicable to the banking sector, particularly in Singapore and Hong Kong, is preferred.
  • Professional certification in Information Security (e.g. CISSP, CISM and CISA) and knowledge of security and control frameworks e.g. ISO27001 is advantageous but not required

We are looking forward to receiving your full job application through our online application tool. Further interesting job opportunities can be found on our Career site.

Is this not quite what you are looking for? Set up a job alert by creating a candidate account here.

Listing read directly from Julius Baer's applicant tracking system. Check frequency varies by source. Listings are removed after successful checks confirm they are no longer present.