Lead Analyst, Information Security Risk

AIA logo


View Salaries, Reviews, and more  

Job Summary

Job Type


Years of Experience
Information not provided

Job Description

IT Risk Management & Governance Compliance

  • Consolidate and tracking all submitted risk deviation registration are being valid and closed timely.
  • Provide a day-to-day support and guidance to all queries needed related to risk registration.
  • Conduct the Pentest schedule initiatives and arrangement with Pentest Vendor.
  • Provide monthly Internal Vulnerability Assessment (IVA) Report to Senior Leader of Technology stakeholders.
  • Support on the IT Risk Management and Governance Compliance process and follow up action โ€“ this includes reporting/reminders of outstanding or overdue action required from risk/deviation registration system, Penetration test schedule, vulnerability assessment, and technology & governance management action items.
  • May be assigned to drive or support other initiative like security assessment services.

Audit and Regulatory Management

  • Support and responding to audit queries and to be involved in control assessment related to Risk Mgmt.
  • This is an individual contributor role, with opportunities for lateral development within the function.


University degree or equivalent experience in one of the following or related disciplines (Computer Science, Computer Engineering, Information Security, Information Systems)


  • At least 3 years of relevant work experience, including at least 1 years of experience in IT audit, risk management, compliance and/or governance roles, with particular expertise and knowledge of governance reporting of technology risk issues and cybersecurity.

  • Rich working experience from financial industry, big tech firms or established auditing firms will be considered favorably

  • Experience and exposure in information security standards such as ISO27001, SOC2 or PCIDSS will be an advantage


  • Preferably a holder of one or more of the following entry-level information security and audit qualifications: Security+, CEH
  • Candidates with advanced level qualifications such as CISSP, CISA, CRISC, CCSP will have added advantage

Special skills:

  • Good Communication, Coordination and Interpersonal Skills.

  • Good experience working alongside and opposite external auditors as well as regulatory bodies

  • Meticulous and analytical traits

  • Strong programme/Project Management skills

  • High drive, energy and good attitude over teamwork

  • High levels of professional integrity

  • Eagerness to learn and develop oneโ€™s knowledge in information security and computing, especially on emerging computing fields such as cloud security, DevSecOps, etc.

Interview Questions of Lead Analyst, Information Security Risk at AIA

Currently, there aren't any interview questions for this role at AIA shared by other job seekers.
View more interview questions of similar roles from other companies โ†’
banner icon
Prepare For Your Interview in 1 Week?
Equip yourself with possible questions that interviewers might ask you, based on your work experience and job description.
Get Started!

Salary Insights of Lead Analyst, Information Security Risk at AIA

Currently, there aren't any salaries for this role at AIA shared by other job seekers.

View more salaries from AIA โ†’

Achieve your dream job with our top-notch tools!

Resume Checker Illustration

Resume Checker

Our free resume checker analyzes the job description and identifies important keywords and skills missing from your resume in just a minute!

Check Now
Interview Preparation Illustration

AI InterviewPrep

Utilizing advanced AI, our tool generates tailored interview questions based on your industry, role, and experience. Practice and receive feedback on your answers in real time!

Check Now
Resume Builder Illustration

Resume Builder

Let us show you the differences between a bad, good, and great resume, and guide you in building a resume that helps you stand out to employers, ensuring you land your next position faster!

Check Now