IT Governance Specialist

DBS Bank · Mumbai

  • Experience2–6 yrs
  • SalaryNot disclosed
  • Work modeonsite
  • Levelmid
  • Posted2 Sept 2026

About DBS Bank

DBS Bank is hiring in Mumbai in financial services. This role looks for around 2+ years of experience.

Skills

  • IT governance
  • IT policies
  • IT risk management
  • Vendor risk management
  • Information security
  • Regulatory compliance
  • Internal controls
  • IT audits
  • Risk assessment
  • KPI monitoring
  • Industry standards

The role

An IT governance specialist at a financial services company develops and monitors IT policies, regulatory compliance, vendor risk management, and information security controls. The role assesses technology risks, reviews new initiatives, supports audits, and drives automation of governance practices.

Full job description

The IT Governance Specialist is responsible for developing, implementing, maintaining, and monitoring adherence to the IT department's policies, procedures, and SOPs. This role involves helping in representation to management, including presentations and reporting to various forums. This role requires contribution to IT risk management as well as IT vendor risk management. Understanding project management is an added advantage. This role involves overseeing the assessment and continuous monitoring of IT vendors and partners to identify, evaluate, and mitigate information security, compliance, and operational risks. This role requires skills to ensure adherence to internal policies, industry standards, and regulatory requirements, protecting the organization's assets and reputation.

The core responsibilities for the job include the following:

Technology Governance:

Preparation of comprehensive materials and presentations for key technology forums such as the IT Strategy Committee, IT Steering Committee, Technology Risk Forum, and Demand Forums.

Developing and implementing IT policies and procedures that align with organizational goals and industry best practices.

Providing guidance and support to IT teams on IT governance and risk management matters.

Identifying and implementing IT governance-related training needs for IT staff and end-users.

Staying up-to-date on the latest IT governance trends and industry standards to ensure that the organization is current with best practices.

Risk Review and confirmation on new product initiatives / new application requirements.

Risk review and signoff for exception change requests.

Regulatory Compliance:

Review of new regulatory requirements/circulars and evaluation of compliance requirements, gaps to be remediated and monitoring of compliance actions.

Reporting and continuous monitoring:

Establishing IT performance metrics and monitoring key performance indicators (KPIs) to measure the effectiveness and efficiency of IT processes.

Developing internal control checks to check adherence and reporting from time to time.

Driving Automation of control checks and adaptation of AI, data, and automation into governance and risk practices.

IT Risk Management including Vendor risk management

Conducting periodic IT risk assessments to identify potential vulnerabilities and threats and recommending necessary controls to minimize risks.

Lead the IT vendor risk management initiatives and ensure adherence to the requirements.

Ensuring Vendor inventory is maintained, updated, and reported from time to time.

Ensuring adherence to regulatory and internal requirements pertaining to the IT vendors, including inventory management, periodic review, Risk assessment, SLA monitoring, contracting, onboarding, and offboarding, and ensuring adherence are being met on a timely basis.

Project Management:

Ensuring that all IT projects are aligned with the organization's strategy, regulatory compliance requirements, and security standards.

Optimization of IT investments.

Audit and Compliance:

Coordinating with internal and external auditors to facilitate IT compliance audits and ensure timely completion of audit recommendations.

Collaboration and Communication:

Collaborating with cross-functional teams to ensure Tech risk deliverables are met within committed deadlines.

Ensuring effective communication and collaboration across different technology teams and stakeholders.

Driving initiatives to enhance Tech Risk culture across units and create an environment for proactive actions with regard to Tech Risks.