IT Grc Team
2 weeks ago
The Governance, Risk, and Compliance Team will be responsible for defining, measuring, assessing and aligning with the ISO 27001 framework and other regulatory compliance legislature through maintenance/publication of the information Security Policy & Guiding Standards, coordination of security training/awareness and being responsible for Policy enforcement.
The purpose of this position is to ensure compliance with FinAccel’s internal controls, regulatory and information security policies and procedures. Also, to provide highly skilled technical and information security expertise for the development and implementation of the information security risk management program.
**Responsibilities**:
Lead the development and implementation of the system-wide risk management function of the information security program to ensure information security risks are identified and monitored.
Internally assess, evaluate and make recommendations to management regarding the adequacy of the security controls for the company information and technology systems.
Lead the system-wide information security compliance program, ensuring IT activities, processes, and procedures meet defined requirements, policies, and regulations.
Develop and implement effective and reasonable policies and practices to secure protected and sensitive data and ensure information security and compliance with relevant legislation and legal interpretation.
Owns and runs all aspects of the Security Awareness Program.
Responsible for contract reviews with potential technology providers to ensure negotiated agreement include critical Information Assurance terms and conditions.
Provides ongoing metrics and reporting for security resource consumption at all levels in the organization.
Execute strategy for dealing with the increasing number of audits, compliance checks, and external assessment processes for internal/external auditors, such as ISO 27001, ITGC, OJK Regulations, etc.
Work with Internal Audit/External Audit and outside consultants as appropriate on required security assessments and audits
Coordinate and track all information technology and security-related audits including the scope of audits, timelines, auditing agencies, and outcomes.
Work with auditors as appropriate to keep audit focus in scope, maintain excellent relationships with audit entities and provide a consistent perspective that continually puts the institution in its best light.
Provide guidance and evaluation on audit responses.
4+ years of advanced IT skills with a high level of information security experience and expertise.
Bachelor's or master's degree in computer science, information systems, business administration or related field, or equivalent work experience
Knowledge of information technology system and processes, network infrastructure, data architecture, data processes, protocols and incident response management.
Understanding of applicable information security management frameworks, governance and compliance principles, practices, laws, rules and regulations relating to technology and financial environment (e.g., OJK Regulation, ISO 27001, ITGC, etc.)
Ability to develop and implement enterprise governance, risk and compliance strategy and solutions.
Able to develop and establish security standards and guidelines based on best practices and industry standards.
3+ years of planning and managing security projects.
Excellent interpersonal, communication, and presentation skills, including formal report writing experience.
Skills in maintaining confidentiality, documenting risk and compliance activities.
Information security-related training or certifications such as ISO 27001 Auditor, CISSP, or CRISC.
Experience performing information system audits or risk assessments.
Familiarity with risk management methodology, information system auditing, monitoring, and controlling
-
SAP Grc
5 days ago
Jakarta, Indonesia amIT Global Solutions (Pte.) Ltd Full timeBe able to lead the design, and delivery of SAP GRC solutions. We are looking 6 years of experience in SAP GRC Consultant Design, implement, and deploy SAP GRC solutions to achieve defined business goals. Be able to engage Functional and technical SAP consultants and business stakeholders to understand the processes and requirements. End-to-End...
-
IT Grc
1 week ago
Jakarta, Indonesia Ajaib Full timeCompany Description **Job Description**: - Provide support to the team on day-to-day operational activities and during the regular control period. - Assist in the remediation process of known information security vulnerabilities. - Responsible for completing both regular and ad-hoc tasks in a timely manner. - Adapt and understand the regulation...
-
Senior IT Grc
4 days ago
Jakarta, Indonesia Ajaib Full timeCompany Description **Job Description**: - Identify, assess, and mitigate the risk of IT and information security, also monitor and review information security controls - Analyze and coordinate upon known information security vulnerabilities - Responsible for completing both regular and ad-hoc tasks in timely manner - Provide support to the team during the...
-
Senior IT Grc
7 days ago
Jakarta, Indonesia Amartha Full timeAbout the Role The Senior IT GRC and Data Privacy Analyst plays a crucial role in Amartha. You will be the warrior who will spearhead various IT GRC and Data Privacy programs to protect Amartha from internal and external threats, including monitoring and managing compliance with ISO 27001, POJK, PSrE, PDP, and other applicable regulations. About the...
-
IT Governance Team
4 weeks ago
Jakarta, Indonesia Blibli Full timeEstablish and develop appropriate policies, procedures, and practices concerning governance functions Ensure and Monitor practical implementations of the policies and procedures Ensure necessary awareness for the IT policies and procedures Communicate the governance activities, policies, and decisions with the management Leadership and inform them of IT...
-
IT Grc Specialist Freelance
2 weeks ago
Jakarta, Indonesia Moladin Full timeContribute to the development and maintenance of IT and information security policies and procedures in accordance with industry standards and applicable regulations. - Periodically facilitate IT and information security awareness. - Monitor and assess the organization's compliance with policies, standards, and relevant IT and information security...
-
IT Grc Specialist Freelance
2 weeks ago
Jakarta, Indonesia Moladin Full timeMoladin is Indonesia’s leading mobility fintech platform with end to end financing solutions for all players in the used car and EV ecosystem. Moladin empowers its rapidly growing network of more than 26,000 active used car agents and dealer MSMEs, and provides used car consumers with better financing access through digitized loan underwriting. This is...
-
Vp - Grc & Information Security
4 weeks ago
Jakarta, Indonesia VIDA Digital Identity Full timePreferable Location(s): Jakarta, Indonesia | Bengaluru, India | London, United Kingdom of Great Britain and Northern Ireland Work Type: Full Time - Lead the ambitious GRC and Security functions within the VIDA Group- Manage and expand the team of GRC and security specialists- - Work closely with the Product Management, Software development, and...
-
Vp - Grc & Information Security
14 hours ago
Jakarta, Indonesia VIDA Digital Identity Full timePreferable Location(s): Jakarta, Indonesia | Bengaluru, India | London, United Kingdom of Great Britain and Northern Ireland Work Type: Full Time - Lead the ambitious GRC and Security functions within the VIDA Group- Manage and expand the team of GRC and security specialists- - Work closely with the Product Management, Software development, and...
-
IT Security
1 week ago
Jakarta, Indonesia Cermati.com Full timeCompany Description Our team hailed from Silicon Valley Tech companies such as Google, Microsoft, LinkedIn and Sofi as well as Indonesian startups such as Doku and Touchten. We have graduates from well known universities such as Universitas Indonesia, ITB, Stanford, University of Washington, Cornell and many others. We are building a company with the same...
-
SAP Security and Authorization
1 week ago
Jakarta, Indonesia amIT Global Solutions Sdn Bhd Full timeSAP S&A with GRC AMS Location : Remote (WFH) Payroll under : amIT Global Solutions Sdn Bhd Duration : Lon term project, Full time contract not freelancing Shift Timings : 3PM to 12 PM (Malaysia Time) - Noon Shift **Responsibilities**: - Minimum 5 years of experience in SAP Security & Authorization - As a Security Consultant, will be responsible for...
-
IT Grc Specialist-merchant Platform
4 weeks ago
Jakarta, Indonesia GO-JEK Full time**About the Role** If you’re looking to be a part of a dynamic, highly-analytical team and an opportunity to dive deep into projects surrounding Information Security, look no further. As our IT GRC Specialist for Merchant Platform, you’ll take the wheel in developing and maintaining Information and security management policies for Gojek. Along with...
-
IT Grc Specialist-merchant Platform
14 hours ago
Jakarta, Indonesia GO-JEK Full time**About the Role** If you’re looking to be a part of a dynamic, highly-analytical team and an opportunity to dive deep into projects surrounding Information Security, look no further. As our IT GRC Specialist for Merchant Platform, you’ll take the wheel in developing and maintaining Information and security management policies for Gojek. Along with...
-
IT Risk Management Team
4 weeks ago
Jakarta, Indonesia Blibli Full timeMain responsible for the oversight of Risk Management and activities particularly in the area of Information Technology and Information Security. Oversight is thru communicating, validating, monitoring, and challenging the implementation of various operational risk frameworks, policies, and tools to ensure their effectiveness. Ensuring effective...
-
IT Governance, Risk and Compliance Analyst
1 week ago
Jakarta, Indonesia GO-JEK Full time**About the role** IT GRC Analyst in Gojek Financial Services will support the adoption of a unified IT governance, risk management, and compliance (GRC) framework, processes and approach. In addition to that, you will support the day to day management of the associated activities to improve the IT-GRC posture as well as to ensure security and technology...
-
IT Grc
2 weeks ago
Jakarta, Indonesia FinAccel Full time**J**ob Description** The Governance, Risk, and Compliance Team will be responsible for defining, measuring, assessing and aligning with the ISO 27001 framework and other regulatory compliance legislature through maintenance/publication of the information Security Policy & Guiding Standards, coordination of security training/awareness and being responsible...
-
Enterprise Architect
4 days ago
Jakarta, Indonesia PT. ALTO Network Full timePT ALTO Network (Djarum Group), founded in 1993, is a financial technology company on providing total banking and payment solutions for Indonesia transaction ecosystems. ALTO is one of the 4 Licensed Lembaga Switchings in Indonesia and part of the Gerbang Pembayaran National (GPN). Today, ALTO aims to be the national leader in payment solutions using the...
-
Technical Program Manager
1 week ago
Jakarta, Indonesia GO-JEK Full time**About the Role** As a Technical Program Manager (TPM) for the Information Security team at the Financial Services Platform, you’ll work with various teams and leaders as well as be responsible for projects ranging from security engineering and IT-GRC. This includes working with mainly internal and external stakeholders, across a variety of different...
-
Technical Program Manager
3 weeks ago
Jakarta, Indonesia GO-JEK Full time**About the Role** As a Technical Program Manager (TPM) for the Information Security team at Enterprise Security, you’ll work with various teams and leaders as well as be responsible for projects ranging from security engineering and IT-GRC. This includes working with mainly internal and external stakeholders, across a variety of different teams,...
-
Operation Team Lead
4 weeks ago
Jakarta, Indonesia IT Group Inc. Full time**Duties & Responsibilities**: - Memantau aktivitas HR Officer. - Memantau kegiatan GA dan Pejabat Pengadaan - Memantau dan meninjau Peraturan Perusahaan. - Memantau dan meninjau Struktur Organisasi Perusahaan. - Memantau aktivitas Kebijakan Perusahaan - Memantau kegiatan SOP - Memantau aktivitas deskripsi pekerjaan - Memantau aktivitas indikator kinerja...