Job Summary
This role could be based in Poland and Malaysia. When you start the application process you will be presented with a drop down menu showing all countries, please ensure that you select a country where the role is based.
Assurance is a Second Line of Defence function established under a delegated mandate from the Group Chief Risk Officer. The primary role of Assurance is to provide a risk-based, independent view to Senior Management, Risk Committees, the Board, and regulators on the effectiveness of the Bank's policies, processes, systems, governance, and controls. Through independent assurance activities, the function identifies control weaknesses, emerging risks, and improvement opportunities, enabling timely corrective action and supporting the Bank's overall resilience and risk management objectives.
The Director, ICS & Technology Risk Assurance – Digital Assets & Emerging Technologies is a senior leadership role responsible for providing independent assurance coverage across the Bank's rapidly evolving technology landscape, with a particular focus on Digital Assets, Artificial Intelligence (AI), Machine Learning (ML), Generative AI, Distributed Ledger Technology (DLT), Tokenisation, Digital Custody, Digital Identity, Cloud-native Platforms, Quantum-related technologies, and other emerging technology capabilities.
The role requires a highly experienced assurance, risk, cybersecurity, technology, or audit professional with deep subject matter expertise in emerging technology risk management, technology governance, cybersecurity, regulatory expectations, and control frameworks. The successful candidate will serve as a recognised SME, providing thought leadership and independent challenge on emerging technology risks while leading assurance activities across complex and strategically significant initiatives
Reporting to the Head, ICS & Technology Risk Assurance, the Director will work closely with senior stakeholders across Business, Technology, Cyber Security, Digital Asset teams, Risk Functions, Compliance, and Executive Management to assess the effectiveness of governance, risk management practices, and controls supporting the Bank's innovation agenda.
This role offers a unique opportunity to influence enterprise-wide risk management practices, shape assurance activities for emerging technologies, and provide insight into risks that are increasingly critical to the Bank's strategic transformation and long-term resilience.
We are seeking an experienced Director who will be responsible for the following areas:
Key Responsibilities
- Support the Head of Assurance in developing and executing the Technology and Cyber Risk Assurance strategy, ensuring appropriate coverage of Digital Assets and Emerging Technologies risks across the Group.
- Lead and execute complex, risk-based assurance reviews assessing the design and operating effectiveness of governance, risk management, cybersecurity, resilience, and technology controls relating to Digital Assets and Emerging Technologies.
- Act as the primary subject matter expert for Digital Assets and Emerging Technologies within Assurance, providing specialist expertise and independent challenge across assurance reviews, regulatory engagements, and strategic initiatives
- Maintain awareness of industry developments, emerging threats, technology trends, and evolving regulatory requirements impacting Digital Assets, AI, Distributed Ledger Technology, Tokenisation, Digital Custody, Cloud Services, and other emerging technologies.
- Assess whether emerging technology initiatives are appropriately aligned to the Bank's Enterprise Risk Management Framework (ERMF), Operational & Technology Risk Framework, Information & Cyber Security Risk Framework, and applicable regulatory requirements.
- Evaluate governance structures, risk management practices, security controls, third-party oversight, model governance, data governance, resilience capabilities, and regulatory compliance associated with emerging technology deployments.
- Provide independent insights and thematic observations to senior management regarding control effectiveness, emerging risk exposures, industry trends, and opportunities for risk reduction.
- Lead validation and closure assessments of assurance findings and management actions arising from technology and cyber assurance reviews.
- Contribute to the development of innovative assurance methodologies, data-driven assurance techniques, and technology-enabled testing approaches
- Partner with stakeholders across First Line, Second Line, and Third Line functions to enhance risk visibility and strengthen enterprise-wide control effectiveness in Digital Assets and Emerging Technologies.
- Drive continuous improvement initiatives to enhance assurance effectiveness, improve operational efficiency, and identify emerging areas requiring enhanced risk oversight.
- Build and maintain strong internal and external networks, including industry forums, professional bodies, and regulatory communities, to ensure assurance approaches remain aligned to leading practices.
Skills and Experience
- At least 10+ years’ experience in cyber security testing/assessment, penetration testing, cyber security operations, cyber security audit or information security governance.
- Degree level education or equivalent, preferably in Digital Assets, AI, Data Science, Financial Technology.
- Personal authority based on established trusted relationships and ability to provide advice and functional direction which is expected at senior levels of the Group and respected by peers.
- Good knowledge of the businesses, markets and operations of Standard Chartered Bank and the policies, procedures, and processes through which Operations, Technology and Cyber Risks are addressed throughout the Group.
- Proven ability to support highly complex, global activities through influence and credibility rather than command and control.
- Ability to understand strategic priorities and focus on detailed aspects of a function in order to drive effective delivery.
- Excellent analytical skills: ability to think clearly and rigorously about how best to assess existing and emerging risks and readiness, being able to reach a pragmatic approach and direction.
- Experience of identifying risks (both existing and emerging), developing mitigation actions, and reaching agreement with stakeholders on the management of risks and issues.
- Situational context aware with ability to facilitate outcomes where priorities and personalities are in conflict.
- Sound judgement and anticipation and strong integrity, independence and resilience.
- Excellent English oral and written skills.
- Ability to communicate and explain complicated risk issues to internal and external stakeholders in a simple and business-friendly way.
- A self-starter, able to take initiation, to navigate within the approved parameters to work out a sensible and practical recommendation or decision.
Certifications
- Digital Asset and Blockchain Certifications highly desirable – CBSP, CCI, CDAA etc.
- AI/ Emerging Technology Certification highly desirable – AI Engineer/ Security Engineer/ Machine Learning Engineer, AIGP, ISO 42001 Lead Implementer/ Lead Auditor.
- Industry related qualification in Operational Risk Management or Information & Cyber Security, such as CISSP, CISM(P), CCSP, and/or CRISC.
- Industry related qualification in Assurance/Audit such as CISA, IIA, CIA and/or CRMA.
About Standard Chartered
We're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.
Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.
Together we:
- Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
- Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
- Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term
What we offer
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.
- Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
- Flexible working options based around home and office locations, with flexible working patterns.
- Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits
- A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
- Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.