Information Security Policy Specialist

Golden Agri Resources

Jakarta Pusat

On-site

IDR 180,000,000 - 360,000,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Golden Agri Resources is seeking an Information Security Policy Specialist to develop and standardize security policies across domains. You will maintain a centralized policy library, ensure alignment with ISO 27001/27002 and NIST CSF, and drive governance with cross-functional teams in Jakarta.

You will translate complex security requirements into practical policies, support audit readiness, and promote awareness through training initiatives.

Qualifications

  • Bachelor's degree in Information Security, Cybersecurity, Information Technology, or related field.
  • 3–7 years of experience in Information Security Governance, Risk & Compliance or policy development.
  • Experience developing and maintaining security policies, standards, and procedures.
  • Familiar with ISO 27001/27002, NIST CSF and CIS Controls.
  • Strong writing, documentation, analytical, and stakeholder management skills.
  • Certs such as CISA or CISM are a plus.

Responsibilities

  • Develop, review, and maintain information security policies, standards, procedures, and guidelines.
  • Standardize and consolidate security documentation for consistency.
  • Collaborate with Cybersecurity, IT, Risk, Compliance, and Legal to define and validate controls.
  • Align policies with ISO 27001/27002, NIST CSF, CIS Controls.
  • Support governance processes: versioning, reviews, approvals, audits.
  • Maintain a centralized policy repository and update with regulatory changes.
  • Promote awareness and adoption through communications and training.
  • Identify policy gaps and recommend governance improvements.

Skills

Technical writing
Documentation
Analytical
Stakeholder mgmt

Education

Bachelor's degree in Information Security/IT

Job description

Job Description Summary:

The Information Security Policy Specialist is responsible for developing, standardizing, and maintaining comprehensive information security policies, standards, and procedures across all cybersecurity domains. This role ensures consistent governance, eliminates outdated or fragmented documentation, and drives alignment with regulatory requirements, industry best practices, and organizational security objectives. The specialist acts as a key contributor in establishing a unified, structured, and scalable policy framework to support effective cybersecurity governance and operational consistency.

Job Description:
  • Develop, review, and maintain information security policies, standards, procedures, and guidelines.
  • Standardize and consolidate security documentation to ensure consistency across the organization.
  • Collaborate with Cybersecurity, IT, Risk, Compliance, and Legal teams to define and validate security controls.
  • Ensure policies align with industry standards and frameworks such as ISO 27001/27002, NIST CSF, and CIS Controls.
  • Support policy governance processes, including version control, review cycles, approvals, and audit readiness.
  • Maintain a centralized policy repository and ensure documentation remains current with regulatory and business requirements.
  • Promote awareness and adoption of information security policies through communication and training initiatives.
  • Identify policy gaps and recommend continuous improvements to strengthen governance and compliance.
Job Requirements:

Bachelor's degree in Information Security, Cybersecurity, Information Technology, or a related field. 3–7 years of experience in Information Security Governance, Risk & Compliance (GRC), or security policy development. Experience in developing and maintaining information security policies, standards, and procedures. Good understanding of cybersecurity domains, including IAM, Network Security, Cloud Security, Endpoint Security, and Data Protection. Familiar with security frameworks and standards such as ISO 27001/27002, NIST CSF, and CIS Controls. Strong technical writing, documentation, analytical, and stakeholder management skills. Ability to translate technical security requirements into clear and practical policies. Professional certifications such as CISA or CISM are an advantage.

About the Company:

We are a leading, publicly-listed, global seed-to-shelf agribusiness committed to sustainable palm oil production. Our palm oil plantations cover more than 138,000 hectares (including smallholder farmers). Our primary activities are cultivating and harvesting oil palms, processing fresh fruit bunches (FFBs) into crude palm oil (CPO) and palm kernel, and refining CPO into value-added products such as cooking oil, margarine, and shortening. We own 46 mills and operate 8 downstream facilities that manage refining and kernel crushing operations, across Indonesia. Besides bulk and industrial oil, our refined products are also marketed under several brands well-loved consumer brands such as Filma and Kunci Mas. Today, these brands have been recognised for their high quality and command significant market share in their respective segments in Indonesia. Based in Jakarta, we were founded in 1962 and listed on the Indonesia Stock Exchange in 1992. A subsidiary of Golden Agri-Resources (GAR), we have Sinar Mas Oleochemical, SMART Research Institute (SMARTRI), and SMART Biotechnology Centre within our operations.

Why join us?

Palm oil and agriculture play a significant role in meeting the growing world population's demands for sustainable and innovative solutions to nutrition, energy and personal care products. As a leading global seed-to-shelf agribusiness, we want talents who are ready to overcome future challenges in this sector, and be part of sustainably feeding and fueling generations.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Operational Technology Security Specialist
Operational Technology Security Specialist

Golden Agri Resources • Jakarta Pusat

On-site
IDR 350,000,000 - 650,000,000
IT Audit Specialist
IT Audit Specialist

Golden Agri Resources • Jakarta Pusat

On-site
IDR 500,000,000 - 1,100,000,000
Platform Engineer I
Platform Engineer I

Golden Agri Resources • Jakarta Pusat

On-site
IDR 180,000,000 - 240,000,000
Service Desk IT
Service Desk IT

Golden Agri Resources • Jakarta Pusat

On-site
IDR 180,000,000 - 320,000,000
I2P Business Process Analyst
I2P Business Process Analyst

Golden Agri Resources • Jakarta Pusat

On-site
IDR 89,280,000 - 156,240,000
Utility Officer
Utility Officer

Golden Agri Resources • Kalimantan Selatan

On-site
IDR 89,280,000 - 133,920,000
Regional MIS Support
Regional MIS Support

Golden Agri Resources • Kalimantan Tengah

On-site
IDR 72,000,000 - 108,000,000
Procurement Category Logistic (Transportation & Warehouse) )
Procurement Category Logistic (Transportation & Warehouse) )

Golden Agri Resources • Jakarta Pusat

On-site
IDR 150,000,000 - 230,000,000
QA Officer
QA Officer

Golden Agri Resources • Lampung

On-site
IDR 120,000,000 - 240,000,000
Head of New Technology & Digitalization
Head of New Technology & Digitalization

Golden Agri Resources • Jakarta Pusat

On-site
IDR 900,000,000 - 2,100,000,000