IT Security and Operational Risk Management
Be a subject matter expert on IT infrastructure, security and operational controls for Grab Commercial & Support in alignment with Grab’s policies and standards
Design, implement and sustain the risk management framework and program for Grab Commercial & Support
Provide cost effective recommendations to mitigate business risks and strengthen internal controls
Develop, maintain and update critical process and procedure documentation with clear ownership
Assist in the development, implementation and maintenance of Business Continuity Plans for Grab Commercial & Support operations
Participate in new IT security initiatives implementation, take a hands-on approach and partner with Grab Technology Solutions and Grab Commercial & Support stakeholders to perform user acceptance tests, implement and adopt procedures and access controls in accordance with Grab’s policies
Build and enhance IT control monitoring automation capabilities and roadmap through various alerting and data tools
Cultivate a customer-centric risk culture that champions solutions that will grow a proactive, efficient, sustainable and effective risk management program for Grab Commercial & Support
User Access Management
- Be the subject matter expert on user access control for Grab’s application systems used by Grab Commercial & Support, in alignment with Grab’s policies and User Access Management Framework
- Project lead or participate in new product feature rollout initiatives of Grab’s application systems, take a hands-on approach and partner with stakeholders to perform user acceptance tests, implement and adopt procedures and access controls in accordance with Grab’s policies
Compliance Audit and Security Awareness
Design, implement and maintain the Grab Commercial & Support policies in alignment with Grab’s policies and standards
Provide guidance on compliance requirements such as user access control for Grab’s application systems used by Grab Commercial & Support and physical security of operations in alignment with Grab’s policies and standards
Partner with enterprise and country teams to perform and complete compliance audits, risk assessments, quality assurance reviews, control mitigation, track and report on operating effectiveness of the internal controls implemented for Grab Commercial & Support
Prepare audit reports and provide recommendations to enhance compliance and risk management efforts
Provide cost effective recommendations to mitigate business risks and strengthen internal controls
Collaborate with internal parties and vendors to address Internal Audit / Cybersecurity / Compliance / Sarbanes-Oxley (SOX) issues, develop mitigation plans, follow up actions and remediation timelines up to closure
Assist with the development of interactive security awareness content, design and creation of graphics and article writing on governance related topics for the community.
Foster a culture of compliance by promoting awareness and understanding of Governance Risk & Compliance principles across Grab Commercial & Support