Company
Jefferies, the global investment banking firm, has served companies and investors for over years. Headquartered in New York, with offices in over cities around the world, the firm provides clients with capital markets and financial advisory services, institutional brokerage, and securities research, as well as wealth management. The firm provides research and execution services in equity, fixed income, and foreign exchange markets, as well as a full range of investment banking services including underwriting, mergers, and acquisitions, restructuring and recapitalization, and other advisory services, with all businesses operating in the Americas, Europe, and Asia.
Summary of Role
Background :
The role of an IT Risk Manager encompasses a broad set of responsibilities, with primary responsibilities to maintain the IT Risk Framework, develop and administer risk policies / procedures for the organization and performing risk and control assessments. This is a role within Jefferies Technology in Hong Kong, while being an integral part of the Global Technology team.
Responsibilities :
- Maintain the IT Risk Framework. In support of this, develop, establish, and implement policies and frameworks for IT risk and security management
- Perform risk and control assessments, which comprise analyzing, identifying, describing, and quantifying risks that impact all business risks
- Monitoring risk trends, areas of concern and develop mitigation plans with Jefferies’ IT stakeholders. Challenge risk mitigation decisions as appropriate
- Maintain engagement with Jefferies’ senior IT risk managers, and run / support relevant risk forums
- Develop and maintain good communication channels with other risk partners, such as Enterprise Risk Management, Operational Risk Management, etc.
- Raise risk awareness, provide education and training to employees inside the organization
Required Qualifications
The following qualifications, skills, and experience are required for this role :
At least five to seven years of relevant work experience in fields of IT Risk Management, IT Audit or Operational Risk with Technology / Cyber focus.Experience in the financial service industry.Familiarity with Technology and Cyber risk assessment and preventionAbility to analyse large sets of data and communicate complex informationAbility to distill risk information for non-technical profiles throughout the companyAbility to brief, train and direct staff in the application of new processes and controlsAbility to formulate constructive feedback to a wide array of different stakeholdersAbility to work autonomously as well as to collaborate in team