Jobs / Standard Chartered / Vice President, OTCR, Tech & Architecture
chevron_leftBack
Vice President, OTCR, Tech & Architecture
Standard Chartered
placeBangalore, IN
Posted on Standard Chartered website on 09 Apr 2025 (14 days ago)
Standard Chartered logo

Job Summary

  • The purpose of the role is to help deliver an independent and effective second line of defence for Technology Risk and Information and Cyber Risk as part of the Operational, Technology & Cyber Risk (OTCR) function. OTCR cover second line responsibilities for non-financial risks and report into the Chief Risk Office. 

This is a permanent single contributor role based in India Bengaluru that requires broad knowledge of Technology Risk and Information & Cyber Security along with specific expertise in the first line activities undertaken by Technology & Architecture function (“T&A”) to provide effective oversight and challenge. T&A deliver enterprise technology for the rest of the bank and define common technology processes and controls for business CIO teams to follow in the following disciplines:

  • Architecture management
  • System and software delivery lifecycles, including modern techniques (e.g. DevOps) 
  • IT Service Management (e.g. problem, incident, change, asset management, etc)
  • Infrastructure management, including both on-premises and cloud
  • Data platforms (infrastructure only)
  • Workplace services

The role will be expected to focus on one or more of the above disciplines and oversee the follow regular cycle of operational risk activities:

  • Risk Assessments – Challenge Risk & Control Self Assessments (RCSA) for Technology Risk and Cyber Risk including Treatment Plans and Closures.
  • Risk Events – Challenge Operational Risk Events for technology and cyber incidents and monitor related significant financial losses. Challenge Treatment Plans for Root Cause Reviews.
  • Change Governance - Challenge-Approve Change Risk Assessments and Go Lives for Technology initiatives. 
  • Policy and Standards – Support owners of Technology and ICS Policy and Standards to oversee the effectiveness of their requirements, including oversight of any country variations (as required). 
  • Risk Committees – Support OTCR management with risk insights for escalation to risk committees and related forums. 

Key Responsibilities

Strategy

  • Awareness and understanding of the Group’s and Function’s business strategy and model appropriate to the role

Business

  • Awareness and understanding of the wider business, economic and market environment in which the Group operates

Processes

  • Responsible for executing risk management responsibilities of the second line of defence as defined within the Operational Technology and Cyber Risk function. 

People & Talent

  • Responsible for individual training and familiarisation of knowledge relevant to the role and subject matter areas of work that is assigned. 
  • Working in collaboration with stakeholders, whilst upholding and reinforcing the independence of the second line 
  • Establishing constructive relationships with Key Stakeholders (as defined below)

Risk Management

  • Understanding the role’s responsibilities with respect to the relevant risk policies/standards, risk framework owner role, and second line operational risk role.

Governance

  • Rsponsible for supporting the OTCR Framework and Policy for the role’s select

Skills and Experience

  • Display exemplary conduct and live by the Group’s Values and Code of Conduct. 
  • Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank. This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct.
  • Effectively and collaboratively identify, escalate, mitigate and resolve risk, conduct and compliance matters.

Key stakeholders

INTERNAL

  • Technology & Architecture Process Owners and Teams
  • Technology & Architecture first line Risk Management Teams
  • OTCR Coverage Teams for other areas of the bank
  • OTCR Coverage Teams for countries
  • OTCR Policy Owners
  • Risk Framework Owners and Policy Owners for Compliance risk types 
  • Group Internal Audit 
  • Compliance

Other Responsibilities

  • Embed Here for good and Group’s brand and values in team; Perform other responsibilities assigned under Group, Country, Business or Functional policies and procedures; Multiple functions (double hats);

Skills and Experience

  • Information & Cybersecurity Risk Management
  • Emerging Technologies
  • Industry Knowledge
  • Information Security Architecture
  • Operational and Technology Risk
  • Information Technology (IT) Security Policies
  • Operational & Technology Risk Management
  • Regulatory Environment – Financial Services
  • Change Management Risk

Qualifications

  • EDUCATION- Degree in Information and Cyber Security or Technology or equivalent
  • CERTIFICATIONS- Profession Certifications related to project management, software delivery lifecycles, technology processes and security considered an advantage or equivalent practical “on the job” experience (e.g. CISSP, CCSP, CISA, CISM or equivalent).
  • LANGUAGES- Excellent written and oral communication and reporting skills in English

Qualifications

  • Candidates are particularly welcome that have performed first line technical delivery roles and wish to make a transition into risk management. Such candidates should be able to demonstrate transferable technical skills in the Technology & Architecture disciplines and a passion to become a risk professional. 
  • Minimum 10 years’ experience in financial institutions and/or highly regulated technology dependent industries.
  • Previous experience in second line (risk) and third line (audit) roles are an advantage, but not a pre-requisite. 
  • Deep knowledge of general computer controls for both technology and information security across the full lifecycle of technology “build” and “run” activities. 
  • Strong knowledge of the latest modern computing techniques such as cloud, agile and DevOps, APIs, modern architecture principles, etc.
  • Passion and interest in keeping pace with emerging technologies and an interest to stay abreast of industry developments.
  • Knowledge of IT and security frameworks (COBIT, ISF, COSO, NIST, ISO, etc).

LONGDESCRIPTION section. 4 of 12.Section Title:

 

  • Strong negotiation and collaboration skills along with the ability to work effectively in a complex multicultural and multi-time zone organization with many different stakeholders.
  • Comfortable being proactive and looking beyond a purely task-driven approach and able to take ownership of the wider objective, while seeking for support when required.
  • Demonstrates competency in Critical Thinking, Non-Financial Risk Management, managing change and Stakeholder Management.
  • Profession Certifications related to project management, software delivery lifecycles, technology processes and security considered an advantage or equivalent practical “on the job” experience (e.g. CISSP, CCSP, CISA, CISM, PMP or equivalent).

About Standard Chartered

We're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.

Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.

Together we:

  • Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
  • Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
  • Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term

What we offer

In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.

  • Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
  • Time-off including annual leave, parental/maternity (20 weeks), sabbatical (12 months maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum.
  • Flexible working options based around home and office locations, with flexible working patterns.
  • Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits
  • A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
  • Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.
chevron_leftBack to Jobs
Standard Chartered logo
Standard Chartered PLC is a British multinational bank with operations in wealth management, corporate and investment banking, and treasury services.
Websitelaunch
Careerslaunch