IT Governance, Risk, Compliance

SeaBank Indonesia

Jakarta Pusat

On-site

IDR 240,000,000 - 420,000,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

SeaBank Indonesia is seeking an IT GRC professional to analyze gaps between IT policies and controls, and to test design and operation of the IT control framework. You will monitor IT processes for regulatory alignment and prepare regulator submissions in coordination with compliance teams.

The role requires 5+ years in IT GRC or IT auditing within banking, insurance, or related sectors, with strong knowledge of ISO 27001, PCI-DSS, ITIL/COBIT and risk assessment methods.

Qualifications

  • Minimum Bachelor's degree in Computer Engineering and/or computer science (specifically IT-related) and/or other related fields.
  • Minimum 5 (five) years of experience in IT GRC or IT auditing in the banking, insurance, or related industries.
  • Understanding of business processes and regulations related to the banking industry.
  • Understanding of ISO 27001, ITIL, COBIT, and PCI-DSS standards.
  • Understanding of system vulnerability detection and prevention tools and information leaks.

Responsibilities

  • Analyze gaps between IT policies and procedures to ensure alignment with internal requirements and regulatory regulations.
  • Test the design and operational effectiveness of the IT operational control framework.
  • Monitor existing controls and IT processes in accordance with applicable regulations.
  • Prepare reports and documents related to new products and features for submission to regulators in coordination with the regulatory compliance division or other relevant stakeholders.
  • Coordinate the IT Steering Committee every quarter.
  • Facilitate IT stakeholders and external/internal auditors in providing advice and adequate data.
  • Monitor the resolution of audit findings.
  • Create a security awareness program by providing newsletters, e-learning, and phishing campaigns to all employees.
  • Analyze risks and ensure periodic reviews of IT-related key risk indicators (KRIs) and risk control assessments (RCSAs) to assess control effectiveness and identify new risks.
  • Monitor risk acceptance and provide recommendations on appropriate risk management.
  • Review vendor reviews related to IT risks, including information security if data is shared with vendors.
  • Monitor periodic reviews of user access and security controls on the Bank's systems.

Skills

IT GRC
IT auditing
Regulatory compliance
Risk management
Information security
Vendor risk assessment
KRIs/RCSAs
ISO 27001
PCI-DSS
ITIL/COBIT

Education

Bachelor's degree in Computer Engineering
Bachelor's degree in Computer Science

Job description

  • Analyze gaps between IT policies and procedures to ensure alignment with internal requirements and regulatory regulations.
  • Test the design and operational effectiveness of the IT operational control framework.
  • Monitor existing controls and IT processes in accordance with applicable regulations.
  • Prepare reports and documents related to new products and features for submission to regulators in coordination with the regulatory compliance division or other relevant stakeholders.
  • Coordinate the IT Steering Committee every quarter.
  • Facilitate IT stakeholders and external/internal auditors in providing advice and adequate data.
  • Monitor the resolution of audit findings.
  • Create a security awareness program by providing newsletters, e-learning, and phishing campaigns to all employees.
  • Analyze risks and ensure periodic reviews of IT-related key risk indicators (KRIs) and risk control assessments (RCSAs) to assess control effectiveness and identify new risks.
  • Monitor risk acceptance and provide recommendations on appropriate risk management.
  • Review vendor reviews related to IT risks, including information security if data is shared with vendors.
  • Monitor periodic reviews of user access and security controls on the Bank's systems.
Requirements
  • Minimum Bachelor's degree in Computer Engineering and/or computer science (specifically IT-related) and/or other related fields.
  • Minimum 5 (five) years of experience in IT GRC or IT auditing in the banking, insurance, or related industries.
  • Understanding of business processes and regulations related to the banking industry.
  • Understanding of ISO 27001, ITIL, COBIT, and PCI-DSS standards.
  • Understanding of system vulnerability detection and prevention tools and information leaks.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior IT Governance
Junior IT Governance

Stie Yai • Jakarta Pusat

On-site
IDR 120,000,000 - 180,000,000
Senior IT Governance
Senior IT Governance

Akulaku Indonesia • Jakarta Pusat

On-site
IDR 539,665,407 - 809,498,110
Banking IT GRC Lead: Controls, Risk & Compliance
Banking IT GRC Lead: Controls, Risk & Compliance

SeaBank Indonesia • Jakarta Pusat

On-site
IDR 240,000,000 - 420,000,000
IT Governance, Risk & Assurance Officer
IT Governance, Risk & Assurance Officer

Bank Sahabat Sampoerna • Jakarta Pusat

On-site
IDR 279,000,000 - 502,200,000
IT GRC & Business Support - Insurance
IT GRC & Business Support - Insurance

Monee • Jakarta Pusat

On-site
IDR 89,280,000 - 178,560,000
Director's Office, Product
Director's Office, Product

Ajaib Group • Jakarta Pusat

On-site
IT Security – Governance, Risk & Compliance (GRC)
IT Security – Governance, Risk & Compliance (GRC)

Bibit.id • Jakarta Pusat

On-site
IDR 380,000,000 - 600,000,000
Head of Corporate IT Governance & Compliance
Head of Corporate IT Governance & Compliance

Techconnect • Daerah Khusus Ibukota Jakarta

On-site
IDR 400,000,000 - 800,000,000
IT Compliance - GTech
IT Compliance - GTech

Gtech • Tangerang

On-site
IDR 180,000,000 - 280,000,000
Junior IT GRC & Compliance Specialist
Junior IT GRC & Compliance Specialist

Cermati.com • Jakarta Pusat

On-site
IDR 180,000,000 - 300,000,000