Назад
Company hidden
8 дней назад

IT GRC Manager - Digital Identity

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Indonesia
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
IT GRC Manager - Digital Identity (FinTech/Cybersecurity): Developing and implementing governance, risk, and compliance frameworks for lending and identity services with an accent on ISO 27001 and ISO 27701 certification readiness, internal controls, and regulatory audits. Focus on strengthening the organization’s risk posture, reforming IT policies, coordinating audit responses, and embedding security controls across identity platforms.

Location: Jakarta, Indonesia; on-site

Company

hirify.global is an Indonesian digital ecosystem providing mobility, delivery, payments, financial services, e-commerce, banking, and technology solutions.

What you will do

  • Develop and implement governance, risk, and compliance frameworks for lending and digital identity products and services.
  • Monitor policy and internal control implementation, evaluate effectiveness, and maintain risk mitigation practices.
  • Drive readiness for ISO 27001 and ISO 27701 certification and support regulatory, internal, and external audits.
  • Advise stakeholders on IT GRC requirements and coordinate responses to data requests and audit findings.
  • Develop and maintain IT and business process flows, including processes for safeguarding and archiving IT development documentation.
  • Collaborate with engineering, legal, regulatory, people, and partner teams to embed security controls and strengthen the company-wide security culture.

Requirements

  • At least 5 years of experience in IT governance, risk management, and compliance.
  • Experience with PSrE, ISO 27001, ISO 27701, ITIL, and COBIT.
  • Proven experience leading and achieving ISO 27001 and ISO 27701 certifications.
  • Experience managing regulatory audits and maintaining compliance with industry standards.
  • Strong stakeholder management, communication, leadership, adaptability, and independent execution skills.
  • Ability to lead a small team and collaborate effectively across organizational functions.

Nice to have

  • CISA, CISM, CRISC, ITIL, COBIT, or ISO 27001 Lead Auditor certification.

Culture & Benefits

  • Collaborative GRC culture focused on mentorship, clear communication, and collective problem-solving.
  • Close collaboration with engineering and technology teams to build security controls into lending and identity platforms.
  • Partnership with legal, regulatory, people, and third-party teams to translate financial regulations into actionable IT policies.
  • Permanent, on-site position in Jakarta.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →