Search Jobs

Search by job, company or skills

Governance Compliance, Specialist

Governance Compliance, Specialist

AIA Group
5-8 Years
  • Posted 17 days ago
  • Be among the first 10 applicants

Job Description

At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone.

If you believe in developing a better tomorrow, read on.

About the Role

This role supports the Security Governance function by providing regulatory compliance, audit, and assurance support across technology and information security areas. It facilitates regulatory engagements, inspections, and audits coordinates assurance and internal control activities and supports issue management and remediation tracking.

The role works closely with Technology, Technology Risk Management, Compliance, Group Internal Audit, and Group stakeholders to support regulatory responses, audit readiness, and governance reporting.

WHAT YOU WILL DO

Regulatory & Technology Compliance

  • Support regulatory compliance activities, including gap assessments and due diligence against regulatory requirements, standards, and internal policies.
  • Facilitate regulatory engagements, including coordination of responses, walkthroughs, and information requests.
  • Provide regulatory inspection support, including preparation, artefact collation, response coordination, and follow‑up tracking.
  • Review regulatory remediation actions for alignment with regulatory expectations.
  • Provide regulatory awareness and advisory support to Line 1 stakeholders.

Audit & Assurance Support

  • Facilitate audit and internal control self‑assessments, including response and evidence coordination.
  • Track audit findings and remediation actions, including status monitoring and reporting.
  • Support pre‑audit preparation activities and audit walkthroughs.
  • Support thematic reviews to identify control gaps, trends, and improvement opportunities.
  • Coordinate self‑identified issues and inbound business partner due diligence activities.

Governance Initiatives & Process Improvement

  • Support security governance initiatives related to regulatory compliance and assurance.
  • Contribute to process improvement efforts, including dashboards, tooling, and workflow automation for tracking and reporting.
  • Maintain governance artefacts, registers, metrics, and management‑ready reporting for regulatory and assurance matters.

Stakeholder Management

  • Act as a coordination point between Technology, Technology Risk Management, Compliance, Group Internal Audit, and Group teams.
  • Support consistent communication during audits, inspections, and assessments.

WHAT YOU SHOULD HAVE

  • Bachelor's degree in computer science, information security, information systems, or a related discipline.
  • Professional certifications (e.g. CISSP, CISA, CRISC, CCSP) are preferred.
  • 5 to 8 years of experience supporting IT audits, regulatory inspections, risk and compliance assessments, or assurance activities.
  • Experience managing audit issues, remediation tracking, and regulatory or governance initiatives.
  • Exposure to financial services, large technology organisations, or audit/advisory firms is advantageous.
  • Working knowledge of information security frameworks (e.g. ISO/IEC 27001).
  • Familiarity with GRC tools, dashboards, or workflow automation is an advantage.
  • Strong written communication, coordination, and stakeholder management skills.
  • Sound judgement, professional integrity, and a structured approach to problem solving.
  • Ability to manage detailed compliance activities while maintaining an end‑to‑end perspective.


More Info

Key Skills

workflow automation

GRC tools

regulatory inspections

audit and assurance

information security frameworks

About Company

Similar Jobs

5-7 yrs
Singapore
Skills:
Log AnalysisPenetration TestingIpsVpnIdsTechnology Risk Management GuidelinesEnterprise security risk management methods and techniquesForensicsPersonal Data Protection ActSecure email solutionsContent FilteringAnti-virusNetwork sniffingCybersecurity Code of PracticeCollation management and reporting of security metricsCybersecurity Act
5-7 yrs
Singapore
Skills:
Client Relationship Managementstructured productsFixed Income ProductsCredit DerivativesRates derivativesRisk managementCash bondsRegulatory Compliance
5-8 yrs
Singapore
Skills:
Dashboardsworkflow automationGRC toolsaudit and assuranceRegulatory Complianceinformation security frameworks
5-8 yrs
Singapore
Skills:
CcspDashboardsworkflow automationCisspCisaGRC toolsISO IEC 27001CRISC
3-5 yrs
Singapore
Skills:
Retrieval-augmented generation (RAG)secure sdlc Large Language Models (LLMs)Penetration TestingValidating and operationalizing AI systems in a security contextPrompt engineeringVector databasesAI/ML operationsCreating and maintaining expert knowledge basesSecurity developmentCompliance standards for AI-driven productsData engineering workflowsText embedding modelsRisk management