Overview
Sourcing Lead at Eastwest Ageas Insurance – The IT Governance and Security Lead is responsible for establishing and maintaining a framework to ensure IT investments support business objectives, deliver value, and mitigate risks. This role leads the development and implementation of governance policies, standards, and processes across IT operations, projects, and digital initiatives, ensuring regulatory compliance, accountability, and continuous improvement in IT performance and risk management. The role also ensures IT information and technologies are protected through a comprehensive cybersecurity strategy.
Responsibilities
- Governance Framework & Strategy
Develop and implement an enterprise-wide IT governance framework aligned with business strategy and regulatory requirements.
Define, maintain, and monitor IT policies, standards, and procedures to ensure consistency, compliance, and operational excellence.Develop and lead the organization’s cybersecurity strategy and roadmap.Establish and enforce security policies, procedures, and controls.Monitor and respond to security incidents, threats, and vulnerabilities.Lead security awareness and training programs across the organization.Oversee IT risk management practices, including risk identification, assessment, mitigation, and reporting.Ensure compliance with relevant laws, regulations, and industry standards.Audit & Policy EnforcementSpearhead internal and external IT audits, ensuring timely resolution of findings and implementation of corrective actions.
Maintain robust controls over IT assets, data, and systems to safeguard integrity and availability.Organization-wide CollaborationCollaborate with business leaders, risk officers, and compliance teams to align IT governance with enterprise goals.
Serve as a key advisor to senior management on IT governance, risk, and compliance matters.Build and lead a high-performing IT governance team.Promote a culture of accountability, transparency, and continuous improvement.Qualifications
Minimum of 5 years of experience in IT governance, risk management, and cybersecurity.Strong knowledge of IT governance frameworks (e.g., COBIT, ITIL), risk management methodologies, and compliance standards.Experience in managing regulatory audits and implementing enterprise-wide governance programs.Excellent communication, leadership, and stakeholder management skills.BSc / BA in Computer Science / Engineering, or any relevant field.#J-18808-Ljbffr