Information Security Compliance Manager

11 hours ago


Jakarta, Indonesia Hyphen Group Full time

Hyphen Group:
**The Role**:

- As Hyphen Group's Information Security Compliance Manager, you will be involved with the Information Security, Data Privacy and Compliance program for all markets that Hyphen Group operates. You will help guarantee our compliance to such standards ISO 27001, SOC 2 and applicable regulations, policies, and guidelines.
- You will be responsible for managing incoming/ongoing cybersecurity and privacy due diligence assessments/questionnaires from partners, service bureaus and customers and ensuring timely, accurate responses.
- You will be responsible for advising others on the compliance process and increasing user awareness of information security.

**If you are**:

- Good at mentoring and enjoy communicating with different stakeholders.
- Remains composed when decisions have to be made quickly.
- Develops and implements new and improved ways of doing work; encourages staff and guide organization and foster a positive security behaviour and posture.

**Responsibilities**:

- Lead security compliance program activities as set out in the information security policy to assess compliance with Hyphen Group's policies, standards, and procedures.
- Monitoring compliance to information security and data privacy policies, as well as other applicable regulatory requirements and guidelines.
- Develops training and awareness programs to foster a culture of cybersecurity.
- You will be working closely with technology, audit, legal, human resource, and other business units to understand security challenges and tailor targeted training to meet business and compliance requirements.
- Develop and maintain a security awareness program that effectively increases a security aware user behaviour.
- Evaluate continuous compliance through automation and develop compliance metrics that are measurable and provide a good sense of security and compliance posture for Hyphen Group.
- Oversee changes in related regulation that affects the information technology, and develop a compliance program to address potential gaps identified.
- You will be working closely with technology, audit, legal, human resource, and other business units in conducting privacy impact assessments.
- Provide guidance regarding internal and external audits requests and regulatory responses.
- Support the Legal office and provide guidance on information security related topics.
- You will work with IT infrastructure, vendors, business, and auditors for projects and audit matters.

**Experience**:

- A minimum of 5 years of relevant working experience in information security, compliance, and privacy program management, preferably in both start-up and enterprise environments.
- Strong experience in performing compliance assessment in a cloud-based environment, technologies, and services.
- Experience with various compliance frameworks and requirements including NIST framework, ISO 27001, PCI DSS, SOC 2, etc.
- Excellent understanding of regulatory requirements in different markets the organization operates (e.g., MAS, HKMA, FSC, BNM, BSP, BOT).
- Understanding of the regulatory and audit requirements with respect to compliance and experience working and interacting with regulators and auditors.
- Experience working on cloud technology and services.

**Skills**:

- Communicating compliance requirements with both technical and non-technical audiences at various levels in the organization.
- Strong understanding of security risk and compliance assessment, process, and procedures
- Creative, independent with good problem-solving skills
- A Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Security Professional (CISSP) qualification or equivalent certifications.
- Good to have certifications:

- ISO/IEC 27001 Lead Auditor
- Certified Information Privacy Professional (CIPP)
- Certified Information Security Manager (CISM)
- Certified Cloud Security Professional (CCSP)

LI-DN

**What can you expect from us?**

**Impact**: We are actively empowering and connecting people to a better financial future. Join us if you want to help us achieve our mission.

**Work**:We have a team of over 400 talented individuals in 6 markets who are hyper passionate about building innovative financial solutions and making an impact on people's lives.

**Culture**: We take our work seriously but don't hesitate to keep things light. We can only create magic when we have a little bit of fun.

**Thrive**: We launched in 2014 and fast-forward 7 years we now help over 10 million monthly users make the best financial decisions. Accelerate your career and become a pioneer in your field with a leading fintech company that seeks to push the boundaries of your imagination and is committed to growing your career.

**Reputation**: We are backed by world-class organizations and companies and have raised over US$110 million from investors including Experian, Pacific Century Group, IFC - a member of the World Bank Group

**_EEO Statement_**:



  • Jakarta, Indonesia Mekari (PT. Mid Solusi Nusantara) Full time

    Mekari is Indonesia's no. 1 Software-as-a-Service (SaaS) company. Our mission is to empower businesses and professionals to progress effortlessly. Our products (Mekari Talenta, Mekari Jurnal, Mekari KlikPajak, Mekari Qontak and Mekari e-Sign that have been used by tens of thousands of businesses in Indonesia. To reach millions, we need more people like you:...


  • Jakarta, Indonesia Humana International Full time

    **Job Descriptions**: 1. Implements IT security controls, IT risk assessment framework 2. IT risk assessment framework, and program that align to regulatory and company requirements 3. Ensuring documented and sustainable compliance 4. Performs and investigates internal and external information security risk and exceptions assessments 5. Assess incidents,...

  • IT Security

    7 months ago


    Jakarta, Indonesia Nestle Operational Services Worldwide SA Full time

    **Position Snapshot** Location : Jakarta, Indonesia Company : Nestlé Indonesia Full time **Position Summary** Joining Nestlé means you are joining the largest food and Beverage Company in the world. At our very core, we are a human environment - passionate people driven by the purpose of unlocking the power of food to enhance quality of life for...


  • Jakarta, Indonesia Hyphen Group Full time

    Hyphen Group: **The Role**: - As Hyphen Group's Information Security Governance Manager, you will evaluate risks and develop security policies, standards, procedures, guidelines, and controls to manage the organization risks. - You will improve Hyphen Group's security positioning through process improvement, policy, automation, and the continuous evolution...


  • Jakarta, Indonesia Reeracoen Indonesia Full time

    15,000,000 IDR ~ 20,000,000 IDR - Jakarta- Education: Min. Bachelor Degree in Information Technology/Computer Science or related major - Language: Fluent in English verbally and written. Japanese skill is a plus - Experienced in IT Security Compliance and Governance at least 5 years - Familiar with Information technology systems and processes, network...


  • Jakarta, Indonesia Petrolink International Full time

    **Department**: ICT **Reporting To (position)**: ICT Manager **Location**: DKI Jakarta, Indonesia The ideal person is responsible for managing global ICT information security activities including reporting, assessing potential security violations, recommending, and implementing security best practices. As well as managing the overall Information Security...


  • Jakarta, Indonesia Hyphen Group Full time

    Hyphen Group: **The Role**: **If you are**: - Good at mentoring and enjoy communicating with different stakeholders. - Remains composed when decisions have to be made quickly. - Flexible and able to adopt and propose new ways of doing work; - Able to balance pragmatism with action with security - Truly passionate about customer data...


  • Jakarta, Indonesia PT NOOSC SECURITY GLOBAL Full time

    **Kualifikasi**: - Memiliki pengalaman kerja lebih dari dua tahun - Pendidikan strata satu Sistem Komputer/Teknik Komputer - Memiliki pengalaman bekerja lebih dari satu tahun di bidang IT - Mempunyai minat dan kemauan untuk mempelajari teknologi keamanan informasi terbaru - Terbiasa dengan pelaporan, dashboard, dan dokumentasi - Memiliki kemampuan analisa...


  • Jakarta, Indonesia Mekari (PT. Mid Solusi Nusantara) Full time

    Mekari is Indonesia's no. 1 Software-as-a-Service (SaaS) company. With our ecosystem of software solutions—including Mekari Jurnal, Mekari Talenta, Mekari Qontak, and Mekari Flex, we aim to facilitate entrepreneurs and leaders as they accelerate the digital transformation of their businesses. In our 10+ years of journey we have reached over 1 Million...


  • Jakarta, Indonesia Mekari (PT. Mid Solusi Nusantara) Full time

    Mekari is Indonesia's no. 1 Software-as-a-Service (SaaS) company. With our ecosystem of software solutions—including Mekari Jurnal, Mekari Talenta, Mekari Qontak, and Mekari Flex, we aim to facilitate entrepreneurs and leaders as they accelerate the digital transformation of their businesses. In our 10+ years of journey we have reached over 1 Million...


  • Jakarta, Indonesia PT NOOSC SECURITY GLOBAL Full time

    **Kualifikasi**: - Pendidikan mínimal D3/setara atau jika tidak D3/setara mínimal memiliki Sertifikasi ECIH/CHFI - Memiliki mínimal sertifikasi tentang Security Operator, Pentration Tester, dan/atau Vulnerability Assessment Analyst (misal. CEH, CIHE, dan sejenisnya) - Memiliki pengalaman dalam bidang Incident Response, SOC atau bidang Keamanan Siber...

  • IT Risk

    4 days ago


    Jakarta, Indonesia Home Credit Indonesia Full time

    Develop, refine and implement information security policies, procedures and guidelines to meet compliance and regulatory requirements Ensure compliance with Local and Group policies and procedures Lead and execute risk and vulnerabilities analysis for various IT systems and processes Identify risks and controls necessary to remediate identified risks and...


  • Jakarta, Indonesia PT NOOSC SECURITY GLOBAL Full time

    L2 (cyber security secrvice) **Kualifikasi**: - **Memiliki pengalaman kerja lebih dari dua tahun** - Pendidikan strata satu Sistem Komputer/Teknik Komputer **- Memiliki pengalaman bekerja lebih dari satu tahun di bidang IT** - Mempunyai minat dan kemauan untuk mempelajari teknologi keamanan informasi terbaru - Terbiasa dengan pelaporan, dashboard, dan...

  • IT Compliance

    2 days ago


    Jakarta, Indonesia Siemens Full time

    Do you want to join us in helping to fight the world's most threatening diseases and enabling access to care for more people around the world? At Siemens Healthineers, we pioneer breakthroughs in healthcare. For everyone. Everywhere. We offer you a flexible and dynamic environment with opportunities to go beyond your comfort zone in order to grow personally...


  • Jakarta, Indonesia Humana International Full time

    **Job Descriptions**: 1. Facilitate regular sessions and workshops for security members to enhance communication in the region. 2. Understand regional incidents and manage progress of prevention measures in normal stage. In emergency state when set up a contact for appropriate incident management to swiftly handle legal matter. In particular, promptly...


  • Jakarta, Indonesia PT NOOSC SECURITY GLOBAL Full time

    **Kualifikasi**: - Memiliki pengalaman kerja lebih dari dua tahun - Pendidikan strata satu Sistem Komputer/Teknik Komputer **- Memiliki pengalaman bekerja lebih dari satu tahun di bidang IT** - Mempunyai minat dan kemauan untuk mempelajari teknologi keamanan informasi terbaru - Terbiasa dengan pelaporan, dashboard, dan dokumentasi - Memiliki kemampuan...


  • Jakarta, Indonesia PT NOOSC SECURITY GLOBAL Full time

    **Kualifikasi**: - Pendidikan mínimal D3/setara atau jika tidak D3/setara mínimal memiliki Sertifikasi ECIH/CHFI - Memiliki mínimal sertifikasi tentang Security Operator, Pentration Tester, dan/atau Vulnerability Assessment Analyst (misal. CEH, CIHE, dan sejenisnya) - Memiliki pengalaman dalam bidang Incident Response atau bidang Keamanan Siber mínimal...


  • Jakarta, Indonesia Hukumonline.com Full time

    Conduct Corporate Information Security Awareness Program & Measurement - Conduct daily basis information security operational - Conduct and run regular training sessions for staff on information security awareness and procedures. - Conduct periodic security audits of the company's technology infrastructure - Ensure the strategy and implementation of...

  • IT Compliance

    6 days ago


    Jakarta, Indonesia PT Asuransi Allianz Life Indonesia Full time

    Coordinate risk identification, assessment, mitigation, monitoring in the respective Division Control environment assessment, gaps assessment, and obtain sign off on the result Identify corresponding Key Risk Indicators Escalate risk event and prepare Risk Management reports for the Division represented (includes obtain sign-off from the Head of...


  • Jakarta, Indonesia Influx Inc Full time

    [ This is a 100% work-from-home opportunity ] We are looking to hire a Chief Information Security Officer (CISO) with experience in developing information security strategies, programs of work, and risk management. You will be responsible for protecting Influx from information security risks through the development, implementation, and maintenance of our...