IT risk, 你當自己好似BA, 張啲IT security issue translate 去比business 明白嘅language,整吓靚仔嘅presentation, 對比下啲figures
Challenge / self audit 下IT d process, document, set 下啲IT control exercise / drills schedule
Project 就自動波舉手話要參與,問吓人有乜嘢risk, 做follow up
你當成個role 如果老細唔熟IT risk 流程, 最好主動啲. 得閒point out d material risk 同IT team 傾吓點remediate,再present 返比senior management.
個人覺得role 最氣餒嘅地方係, 大部份時間你都係等其他Team去做嘢, IT 唔夠resource, escalate 完都係等,所以係等嘅時間我就會上網讀吓cert 或者睇Netflix