company logo

Assistant Vice President, Risk - Third Party Risk Management

CIMB.com

Office

Malaysia

Full Time

Job Purpose:

  • As the second line of defence, responsible for the development, implementation and on-going maintenance of an effective and consistent Third Party Risk Management framework with coverage of outsourcing, partnerships and vendors/suppliers engagements.
  • The responsibility includes providing governance, oversight and advisory to support Business Units (BUs) / Business Enablers (BEs) in managing third party risks.
  • Responsible to support Head, Regional Third Party Risk Management to oversee the governance and reporting wih respect to third party risks within the Group.

Key Responsibilities:

  • Drive the implementation and embedding a robust Third Party Management Framework across the Group ensuring compliance to regulatory requirements where applicable.
  • As the 2nd line of defence, provide governance, oversight and advisory on Third Party Risk Management related matters in providing consultation to all BUs/BEs in performing third party risk assessments to identify potential failure points, threats, and vulnerabilities and implement appropriate mitigation controls to minimise the impact to the organisation throughout the engagements with third party with support from other key stakeholders (i.e. Technology Risk Management, Business Continuity Management, Technology, Data Governance, Legal & Compliance, Admin & Property Management, Procurement and Finance).
  • To provide management with a view of the Groups Third Party Risk as part of the Groups preparedness and capabilities in the event of a major disruption. Timely reporting and awareness in relation to third party risks to relevant risk committees as per framework requirement.
  • To promote a culture in managing third party risk through awareness sessions, engagement sessions, focus group sessions or trainings to BUs/BEs.
  • Work closely with Service Recipients (SRs) / Service Owners (SOs) of BUs/BEs Risk Control Units (RCUs) / Risk Control Specialists (RCSs) / Designated Compliance & Operational Risk Officers (DCOROs) to ensure third party risks/incidents/events are promptly identified, escalated and addressed as per Operational Risk Management framework.

Job Specification:

  • Bachelor's Degree or Professional Qualification in the relevant discipline (Information Systems / Business / Banking / Finance / Accounting / Statistics / Economics / IT)
  • 6 - 8 years of experience of compliance, operational risk, third party risk, outsourcing fields, preferably in established bank / financial institutions.
  • Preferably 1-2 years experience dealing with regulator bodies such as BNM.
  • Candidates with experience in Supply Chain Management advisory or practice or legal contract management will be an advantage.

Assistant Vice President, Risk - Third Party Risk Management

Office

Malaysia

Full Time

October 15, 2025

company logo

CIMB

CIMB.com

CIMB_Assists