Make recommendations to senior management (BOD VP of Engineering VP of Product Head of Sales) to create IT GRC policies that would improve internal control and security posture of the company while satisfying the consideration of all stakeholders including: business users HR compliance legal and others
Become the main PIC to drive change management and implementation for IT GRC policies.
Become the main PIC for communicating things related to IT Security Risk Governance and Compliance for both internal and external stakeholders.
Working closely with senior management personnel across the organization to understand the organizations contexts strategy and governance needs to adapt policies accordingly
Liaising with stakeholders to design effective governance policies for company operations and regulatory compliance
Working with the security data compliance and legal teams to redefine the requirements of our systems implementation and processes
Overseeing the implementation of the governance policies across the organization
Contributing to the improvements of the companys security policies and processes
Qualifications :
Extensive experience (10 years or more) in cybersecurity and IT governance industry
Bachelors degree in computer science or related fields or equivalent work experience
Good logical & problem solving skills
Must have excellent verbal/written communication (especially verbal communication) & organizational skills because you will be interacting with CEO CTO Board of Directors Investors Regulators like OJK BI Kominfo etc on day to day basis.
Must have proven leadership and negotiation skills
Deep experience in implementing cybersecurity standards such as ISO 27001 PCI-DSS and SOC2
Deep experience in implementing cybersecurity rules as directed by regulators like personal data protection financial regulations from OJK etc.
Deep experience and practical knowledge on how the industry implements cybersecurity frameworks
Advanced degree or cybersecurity certification (CISSP CISA) is a plus
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.