Head of Cyber Security/Tech Risk Management | Cyber Security | IT/AI Risk | Governance & Compliance
Send a job offer directly to this candidate
Senior cybersecurity professional with 20+ years of banking and consulting experience, seeking roles in Cybersecurity, Tech Risk Management, and regulatory compliance where deep hands-on technical expertise in cyber security, IT/AI risk, and MAS regulatory compliance can drive organizational cyber security resilience and governance maturity. Most recently served as Head of Technology & Cyber Security Risk Management across 3 MAS-regulated entities — including a Critical Information Infrastructure (CII) — leading second-line risk through multiple MAS Technology Audits. Cross-functional risk background spanning all lines of defense (1st, 1.5th, 2nd and 3rd line), with deep technical hands-on expertise in Cyber Security, IT Risk, IT Audit, Governance, and Information Security.
Proven track record in risk-based audits covering banking infrastructure, business applications, branch operations, vendor relationships, SDLC, and third-party risk — across Investment Banking, Capital Markets, Private Banking, and Asset Management. Familiar with AI governance frameworks including ISO 42001 and actively developing expertise in AI risk management — covering model risk, algorithmic accountability, and evolving MAS/regulatory expectations around AI adoption in financial services.
Experience in industry/regulatory standards: MAS TRM, Cyber Hygiene (FSM-N06), FSM-N13/14, ISO 27001, ISO 42001, ITIL, COBIT and SOX.
Big 4 consultant with Fortune 100 exposure across IT Audit, ERM, VAPT, network and infrastructure security, BCP/DR, and access control. Consistent record of delivering quality engagements on time and translating complex risk findings into actionable business recommendations.
Head of Cyber Security/Tech Risk Management — 3 Entities, including a Critical Information Infrastructure (CII) at NETS SINGAPORE (2022-09 – 2024-12)
Led the Cyber/Tech Risk function across all three NETS entities — a highly MAS-regulated environment — with accountability spanning Cyber/Tech risk identification, governance, regulatory engagement, and crisis response.
Vice President – Cyber Security at BNP PARIBAS (2018-03 – 2021-12)
Spearheaded security policy, control design and reviews, combining strategic advisory with hands-on technical support for SOC, CSIRT, and Security Engineering teams.
Assistant Vice President (AVP) – Cyber Security at BNP PARIBAS (2012-11 – 2018-02)
Delivered Cyber Security engagements across multiple business units.
Assistant Vice President (AVP) – IT Audit Manager at OCBC BANK (2011-08 – 2012-11)
Served as IT Audit Manager at OCBC, leading and participating in infrastructure and application audits.
Senior Consultant – IT Audit & Compliance, Capital Markets at DEUTSCHE BANK (2009-03 – 2011-08)
Engaged as a consultant through HCL Technologies, Singapore, serving as an IT Audit & Compliance professional within Deutsche Bank's Capital Markets division, performing internal IT audits and compliance activities.