IT Grc Team
19 hours ago
The Governance, Risk, and Compliance Team will be responsible for defining, measuring, assessing and aligning with the ISO 27001 framework and other regulatory compliance legislature through maintenance/publication of the information Security Policy & Guiding Standards, coordination of security training/awareness and being responsible for Policy enforcement.
The purpose of this position is to ensure compliance with FinAccel’s internal controls, regulatory and information security policies and procedures. Also, to provide highly skilled technical and information security expertise for the development and implementation of the information security risk management program.
**Responsibilities**:
Lead the development and implementation of the system-wide risk management function of the information security program to ensure information security risks are identified and monitored.
Internally assess, evaluate and make recommendations to management regarding the adequacy of the security controls for the company information and technology systems.
Lead the system-wide information security compliance program, ensuring IT activities, processes, and procedures meet defined requirements, policies, and regulations.
Develop and implement effective and reasonable policies and practices to secure protected and sensitive data and ensure information security and compliance with relevant legislation and legal interpretation.
Owns and runs all aspects of the Security Awareness Program.
Responsible for contract reviews with potential technology providers to ensure negotiated agreement include critical Information Assurance terms and conditions.
Provides ongoing metrics and reporting for security resource consumption at all levels in the organization.
Execute strategy for dealing with the increasing number of audits, compliance checks, and external assessment processes for internal/external auditors, such as ISO 27001, ITGC, OJK Regulations, etc.
Work with Internal Audit/External Audit and outside consultants as appropriate on required security assessments and audits
Coordinate and track all information technology and security-related audits including the scope of audits, timelines, auditing agencies, and outcomes.
Work with auditors as appropriate to keep audit focus in scope, maintain excellent relationships with audit entities and provide a consistent perspective that continually puts the institution in its best light.
Provide guidance and evaluation on audit responses.
4+ years of advanced IT skills with a high level of information security experience and expertise.
Bachelor's or master's degree in computer science, information systems, business administration or related field, or equivalent work experience
Knowledge of information technology system and processes, network infrastructure, data architecture, data processes, protocols and incident response management.
Understanding of applicable information security management frameworks, governance and compliance principles, practices, laws, rules and regulations relating to technology and financial environment (e.g., OJK Regulation, ISO 27001, ITGC, etc.)
Ability to develop and implement enterprise governance, risk and compliance strategy and solutions.
Able to develop and establish security standards and guidelines based on best practices and industry standards.
3+ years of planning and managing security projects.
Excellent interpersonal, communication, and presentation skills, including formal report writing experience.
Skills in maintaining confidentiality, documenting risk and compliance activities.
Information security-related training or certifications such as ISO 27001 Auditor, CISSP, or CRISC.
Experience performing information system audits or risk assessments.
Familiarity with risk management methodology, information system auditing, monitoring, and controlling
-
IT Grc Lead-financial Services Platform
1 week ago
Jakarta, Indonesia GO-JEK Full time**About the Role** The IT-GRC Lead at GTF’s Financial Services Platform will drive the adoption and implementation of a comprehensive IT governance, risk management, and compliance (GRC) frameworks and processes to enable the continuous improvement of the organization’s IT-GRC posture as well as to ensure security and technology compliance with...
-
Jakarta, Indonesia GO-JEK Full time**About the Role** As our IT GRC Specialist (Governance, Risk & Compliance), you'll be a crucial cog within the Financial Platform wheel at GoTo Financial. You'll be the key person who'll build and maintain our IT GRC program, as well as oversee the implementation of its controls. You'll dive deep into conducting IT GRC assessments, including legislative...
-
Senior IT Grc
4 months ago
Jakarta, Indonesia Amartha Full timeAbout the Role The Senior IT GRC and Data Privacy Analyst plays a crucial role in Amartha. You will be the warrior who will spearhead various IT GRC and Data Privacy programs to protect Amartha from internal and external threats, including monitoring and managing compliance with ISO 27001, POJK, PSrE, PDP, and other applicable regulations. About the...
-
IT Specialist
7 months ago
Jakarta, Indonesia WeNetwork Asia Full timeIT Team Lead - GRC - Project Management - OJK **About the Company** Our client is Indonesia’s fastest growing Fintech Unicorn company, leading payments and financial services platform in Indonesia by providing a range of financial products and services, including its mobile wallet, to both individuals and SMEs - Plan, organize and implement the company's...
-
IT Grc Senior Staff
7 months ago
Jakarta, Indonesia AJ Central Asia Raya Full timeThe IT GRC will ensure the appropriate and robust governance polices, processes and controls are developed, kept up to date and adhered to. - Align and translate business objectives into security activities to ensure business objectives are reflected in security objectives, policy, and procedures - Develop, maintain, and present Enterprise Architecture and...
-
IT Grc Specialist Freelance
6 months ago
Jakarta, Indonesia Moladin Full timeContribute to the development and maintenance of IT and information security policies and procedures in accordance with industry standards and applicable regulations. - Periodically facilitate IT and information security awareness. - Monitor and assess the organization's compliance with policies, standards, and relevant IT and information security...
-
IT Grc Specialist Freelance
7 months ago
Jakarta, Indonesia Moladin Full time**Responsibilities** - Contribute to the development and maintenance of IT and information security policies and procedures in accordance with industry standards and applicable regulations. - Periodically facilitate IT and information security awareness. - Monitor and assess the organization's compliance with policies, standards, and relevant IT and...
-
IT Security Lead
3 days ago
Jakarta, Indonesia Swift Logistic Solutions Full timeOversight all security GRC processess, ensuring no findings is overlooked, no agreed action is not performed and no process is lacking of governance Coordinate and monitor all activities related to security GRC, ensuring all activities are properly tracked and on track Maintain strategy for overall security GRC process including identifying items that...
-
IT Grc Specialist Freelance
6 months ago
Jakarta, Indonesia Moladin Full timeMoladin is Indonesia’s leading mobility fintech platform with end to end financing solutions for all players in the used car and EV ecosystem. Moladin empowers its rapidly growing network of more than 26,000 active used car agents and dealer MSMEs, and provides used car consumers with better financing access through digitized loan underwriting. This is...
-
IT Enterprise Risk Management Lead
5 days ago
Jakarta, Indonesia GO-JEK Full time**About the Role As our IT ERM Lead, you'll be responsible for overseeing the overall IT Risk Management process including monitoring internal and external reporting procedures of risk metrics and creating actionable insights for various Risk teams. You’ll develop a rigorous IT risk management reporting program for the Risk Management Committee and Audit...
-
IT Grc
19 hours ago
Jakarta, Indonesia FinAccel Full time**J**ob Description** The Governance, Risk, and Compliance Team will be responsible for defining, measuring, assessing and aligning with the ISO 27001 framework and other regulatory compliance legislature through maintenance/publication of the information Security Policy & Guiding Standards, coordination of security training/awareness and being responsible...
-
Security Grc
1 week ago
Jakarta, Indonesia byOrange Full timeOrange provides your personalized go-to pool of strategy planners, creatives, and technologists for your brand and campaign that aren't part of your daily routine. Strategic managers, content specialists, conceptual creatives, producers, SEO experts, product managers, and others are among the impact players who are held match-fit for your...
-
IT Governance
6 months ago
Jakarta, Indonesia PT. Kwadran Lima Mitra Kaya Solusi Full timeMinimum Diploma Degree in IT, Computer Science or a related field - Experience in IT Governance, compliance, or risk management - Strong knowledge of IT governance frameworks and industry standards - Familiarity with regulatory requirements in the organization's industry - Excellent communication and interpersonal skills - Strong analytical and...
-
Grc Officer
7 months ago
Jakarta, Indonesia VIDA Digital Identity Full timeJakarta, Jakarta Work Type: Full Time - perform security assessment and report any gap and associated risks identified during vendor onboarding or software acquisition initiative - Internally assess, evaluate and make recommendations regarding the adequacy of the security controls for corporate and developed products against regulatory requirements -...
-
Cloud Security Engineer
7 days ago
Jakarta, Indonesia GO-JEK Full time**Location** Jakarta **Work Type** Permanent **Application Posted** October 11, 2021 **About the Role** **What You Will Do** - Independently responsible for the entire lifecycle of security projects initiatives, implement, maintain, and improve various security controls on our cloud environments based on international standards and best practices -...
-
IT Grc Specialist
7 days ago
Jakarta, Indonesia Alodokter Full timeImplement and maintain the ISMS Program to ensure information security governance and compliance for Alodokter. This includes creating new or leading the maintenance of existing security and privacy policies, procedures, standards, and specifications to ensure they are updated and appropriately aligned with applicable laws, regulations, and the evolution of...
-
IT Grc Specialist
7 months ago
Jakarta, Indonesia Alodokter Full timeAlodokter is the #1 digital health company in Indonesia. Launched in 2014, Alodokter brings high-quality medical services to its 27+ million Monthly Active Users by providing an integrated mobile solution for patients and doctors. We empower patients and doctors with better knowledge to help them take better decisions: - More than 550K monthly...
-
IT Governance
7 months ago
Jakarta, Indonesia Talent Creative IND Full timePT SIGMATECH HIRING IT Governance Requirement - Min diploma’s degree in IT, Computer Science, or a related field. - Experience in IT Governance, compliance, or risk management. - Strong knowledge of IT governance frameworks and industry standards. - Familiarity with regulatory requirements in the organization's industry. - Excellent communication and...
-
IT Governance
7 months ago
Jakarta, Indonesia PT. Kwadran Lima Mitra Kaya Solusi Full timeMinimum Diploma Degree in IT, Computer Science or a related field - Experience in IT Governance, compliance, or risk management - Strong knowledge of IT governance frameworks and industry standards - Familiarity with regulatory requirements in the organization's industry - Excellent communication and interpersonal skills - Strong analytical and...
-
Lowongan Sofware Quality Assurance
6 days ago
Jakarta, Indonesia PT Nextgen Inovasi Indonesia Full timePersyaratan Memiliki background pendidikan min S1 IT/Comp Science/Teknik Elektro/Teknik Informatika dan sejenis Memiliki experience di area pengembangan sistem/SDLC (waterfall, agile, devsecops) termasuk di dalamnya SW quality assurance min 2 thn Memahami bahasa pemrograman java, mobile programming dan teknologi microservices Memiliki experience di IT audit...