Information Security Compliance Manager

1 week ago


Jakarta, Indonesia Hyphen Group Full time

Hyphen Group:
**The Role**:

- As Hyphen Group's Information Security Compliance Manager, you will be involved with the Information Security, Data Privacy and Compliance program for all markets that Hyphen Group operates. You will help guarantee our compliance to such standards ISO 27001, SOC 2 and applicable regulations, policies, and guidelines.
- You will be responsible for managing incoming/ongoing cybersecurity and privacy due diligence assessments/questionnaires from partners, service bureaus and customers and ensuring timely, accurate responses.
- You will be responsible for advising others on the compliance process and increasing user awareness of information security.

**If you are**:

- Good at mentoring and enjoy communicating with different stakeholders.
- Remains composed when decisions have to be made quickly.
- Develops and implements new and improved ways of doing work; encourages staff and guide organization and foster a positive security behaviour and posture.

**Responsibilities**:

- Lead security compliance program activities as set out in the information security policy to assess compliance with Hyphen Group's policies, standards, and procedures.
- Monitoring compliance to information security and data privacy policies, as well as other applicable regulatory requirements and guidelines.
- Develops training and awareness programs to foster a culture of cybersecurity.
- You will be working closely with technology, audit, legal, human resource, and other business units to understand security challenges and tailor targeted training to meet business and compliance requirements.
- Develop and maintain a security awareness program that effectively increases a security aware user behaviour.
- Evaluate continuous compliance through automation and develop compliance metrics that are measurable and provide a good sense of security and compliance posture for Hyphen Group.
- Oversee changes in related regulation that affects the information technology, and develop a compliance program to address potential gaps identified.
- You will be working closely with technology, audit, legal, human resource, and other business units in conducting privacy impact assessments.
- Provide guidance regarding internal and external audits requests and regulatory responses.
- Support the Legal office and provide guidance on information security related topics.
- You will work with IT infrastructure, vendors, business, and auditors for projects and audit matters.

**Experience**:

- A minimum of 5 years of relevant working experience in information security, compliance, and privacy program management, preferably in both start-up and enterprise environments.
- Strong experience in performing compliance assessment in a cloud-based environment, technologies, and services.
- Experience with various compliance frameworks and requirements including NIST framework, ISO 27001, PCI DSS, SOC 2, etc.
- Excellent understanding of regulatory requirements in different markets the organization operates (e.g., MAS, HKMA, FSC, BNM, BSP, BOT).
- Understanding of the regulatory and audit requirements with respect to compliance and experience working and interacting with regulators and auditors.
- Experience working on cloud technology and services.

**Skills**:

- Communicating compliance requirements with both technical and non-technical audiences at various levels in the organization.
- Strong understanding of security risk and compliance assessment, process, and procedures
- Creative, independent with good problem-solving skills
- A Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Security Professional (CISSP) qualification or equivalent certifications.
- Good to have certifications:

- ISO/IEC 27001 Lead Auditor
- Certified Information Privacy Professional (CIPP)
- Certified Information Security Manager (CISM)
- Certified Cloud Security Professional (CCSP)

LI-DN

**What can you expect from us?**

**Impact**: We are actively empowering and connecting people to a better financial future. Join us if you want to help us achieve our mission.

**Work**:We have a team of over 400 talented individuals in 6 markets who are hyper passionate about building innovative financial solutions and making an impact on people's lives.

**Culture**: We take our work seriously but don't hesitate to keep things light. We can only create magic when we have a little bit of fun.

**Thrive**: We launched in 2014 and fast-forward 7 years we now help over 10 million monthly users make the best financial decisions. Accelerate your career and become a pioneer in your field with a leading fintech company that seeks to push the boundaries of your imagination and is committed to growing your career.

**Reputation**: We are backed by world-class organizations and companies and have raised over US$110 million from investors including Experian, Pacific Century Group, IFC - a member of the World Bank Group

**_EEO Statement_**:



  • Jakarta, Indonesia AirAsia Full time

    consultation, and awareness of the Group Information Security requirements to technical teams and other employees, and ensure its implementation. This role will be responsible for ensuring internal systems and processes are compliant with information security standards (e.g, ISO 27001, PCI DSS, CIS, NIST CSF, etc); monitoring, managing, and closing...


  • Jakarta, Indonesia AirAsia Full time

    **Description**: **Duties and responsibilities** - Advise CISO on local information and cybersecurity-related regulations and requirements, and then map or recommend changes to existing policies and frameworks. - Advise local CEO(s) and management on Information Security matters, which may, from time to time, include updates to the Boards of Directors of the...


  • Jakarta, Indonesia Humana International Full time

    **Job Descriptions**: 1. Implements IT security controls, IT risk assessment framework 2. IT risk assessment framework, and program that align to regulatory and company requirements 3. Ensuring documented and sustainable compliance 4. Performs and investigates internal and external information security risk and exceptions assessments 5. Assess incidents,...

  • IT Security

    4 weeks ago


    Jakarta, Indonesia Nestle Operational Services Worldwide SA Full time

    **Position Snapshot** Location : Jakarta, Indonesia Company : Nestlé Indonesia Full time **Position Summary** Joining Nestlé means you are joining the largest food and Beverage Company in the world. At our very core, we are a human environment - passionate people driven by the purpose of unlocking the power of food to enhance quality of life for...


  • Jakarta, Indonesia Hyphen Group Full time

    Hyphen Group: **The Role**: - As Hyphen Group's Information Security Governance Manager, you will evaluate risks and develop security policies, standards, procedures, guidelines, and controls to manage the organization risks. - You will improve Hyphen Group's security positioning through process improvement, policy, automation, and the continuous evolution...


  • Jakarta, Indonesia PT Asuransi Allianz Life Indonesia Full time

    Ensure that the Group information security framework and specific information security requirements are fulfilled; especially by governing the implementation of the security framework and monitoring and reviewing the project resulting processes and mechanisms. Ensure that Group Standards, its Directives, and company-specific information security...


  • Jakarta, Indonesia GO-JEK Full time

    **About the Role** The Information Security Manager will play a crucial role in the implementation of the Information Security programs. You will work closely with the Information Security Chief of Staff and collaborate with leadership and technical teams on the continued evolution of Information Security programs across the cybersecurity, and company...


  • Jakarta, Indonesia Atome Financial Full time

    About Atome Financial - Headquartered in Singapore, Atome Financial is a consumer business unit under Advance Intelligence Group. The products under Atome Financial include: - Atome: A leading buy now pay later brand in Asia Pacific which is currently present in 10 markets and partners over 15,000+ top retailers. Key merchant partners include ZALORA,...


  • Jakarta, Indonesia GO-JEK Full time

    **About the Role** The Information Security Manager will play a crucial role in the implementation of the Information Security programs. You will work closely with the Information Security Chief of Staff and collaborate with leadership and technical teams on the continued evolution of Information Security programs across the cybersecurity, and company...

  • IT Compliance

    1 week ago


    Jakarta, Indonesia PT Asuransi Allianz Life Indonesia Full time

    Coordinate risk identification, assessment, mitigation, monitoring in the respective Division Control environment assessment, gaps assessment, and obtain sign off on the result Identify corresponding Key Risk Indicators Escalate risk event and prepare Risk Management reports for the Division represented (includes obtain sign-off from the Head of...


  • Jakarta, Jakarta, Indonesia Talent Insider Full time

    About the job Head Of Information SecurityTalent Insider is an upcoming HR Consultancy Service, founded in 2021. Our clients have been some of the leading brands in Indonesia, and this service continues to expand.Registered in Singapore & Indonesia, we can assist with your growth plans and strategies, and continue to expand our regional presence with strong...


  • Jakarta, Indonesia Ninja Van Full time

    Ninja Van is a tech-enabled logistics company on a mission to provide hassle-free delivery services for businesses of all sizes across Southeast Asia. Launched in 2014, we started operations in Singapore and have become the region's largest and fastest growing last-mile logistics company, partnering with over 35,000 merchants and delivering more than 1,000...


  • Jakarta, Indonesia Hyphen Group Full time

    Hyphen Group: **The Role**: **If you are**: - Good at mentoring and enjoy communicating with different stakeholders. - Remains composed when decisions have to be made quickly. - Flexible and able to adopt and propose new ways of doing work; - Able to balance pragmatism with action with security - Truly passionate about customer data...


  • Jakarta, Jakarta, Indonesia Mekari Full time

    Mekari is Indonesia's no. 1 Software-as-a-Service (SaaS) company. With our ecosystem of software solutions—including Mekari Jurnal, Mekari Talenta, Mekari Qontak, and Mekari Flex, we aim to facilitate entrepreneurs and leaders as they accelerate the digital transformation of their businesses.In our 10+ years of journey we have reached over 1 Million...


  • Jakarta, Indonesia Salim Wazaran Group (Sawaz) Full time

    IT Information Security - Experienced in identifying current and emerging technology issues including security trends, vulnerabilities and threats. - Understanding complex technical issues and managing them well - Having ability to maintain all the software and hardware in relation to security. - Conducting proactive research to analyze security weaknesses...


  • Jakarta, Indonesia Reeracoen Indonesia Full time

    5,000,000 IDR ~ 9,000,000 IDR - Jakarta- Education: Bachelor's Degree in IT/Computer Science or related major - Language: English Communicative Level - Experience: 1-2 years in IT Security Information or related field - Excellent skill in Office 365 - Willing to work mobile and working on the weekend if necessary **About...


  • Jakarta, Indonesia Reeracoen Indonesia Full time

    5,000,000 IDR ~ 9,000,000 IDR - Jakarta- Education: Bachelor's Degree in IT/Computer Science or related major - Language: English Communicative Level - Experience: 1-2 years in IT Security Information or related field - Excellent skill in Office 365 - Willing to work mobile and working on the weekend if necessary **About...


  • Jakarta, Indonesia PT NOOSC SECURITY GLOBAL Full time

    **BUKAN UNTUK SATPAM** L2 (cyber security service) **Kualifikasi**: - Memiliki pengalaman kerja lebih dari dua tahun - Pendidikan strata satu Sistem Komputer/Teknik Komputer **- Memiliki pengalaman bekerja lebih dari satu tahun di bidang IT** - Mempunyai minat dan kemauan untuk mempelajari teknologi keamanan informasi terbaru - Terbiasa dengan pelaporan,...


  • Jakarta, Indonesia Mekari (PT. Mid Solusi Nusantara) Full time

    Mekari is Indonesia's no. 1 Software-as-a-Service (SaaS) company. Our mission is to empower businesses and professionals to progress effortlessly. Our products (Mekari Talenta, Mekari Jurnal, Mekari KlikPajak, & Mekari Qontak) have been used by tens of thousands of businesses in Indonesia. To reach millions, we need more people like you: entrepreneurs,...


  • Jakarta, Indonesia Mekari (PT. Mid Solusi Nusantara) Full time

    Mekari is Indonesia's no. 1 Software-as-a-Service (SaaS) company. With our ecosystem of software solutions—including Mekari Jurnal, Mekari Talenta, Mekari Qontak, and Mekari Flex, we aim to facilitate entrepreneurs and leaders as they accelerate the digital transformation of their businesses. In our 10+ years of journey we have reached over 1 Million...