IT GRC (Governance, Risk, and Compliance)

PT Bank Rakyat Indonesia (Persero) Tbk

Jakarta Pusat

On-site

IDR 180,000,000 - 300,000,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Bank Rakyat Indonesia (BRI) is seeking an IT GRC professional to support governance, risk, and compliance activities. You will coordinate IT control assessments, gather audit evidence, and ensure alignment with policies and regulatory requirements.

The role requires collaboration with IT, Cybersecurity, Risk, and Audit teams, and familiarity with frameworks such as ISO 27001, NIST CSF, and SOX. Strong documentation and stakeholder skills are essential.

Qualifications

  • Bachelor’s degree or equivalent in information security, IT, or risk.
  • 2+ years of experience in IT GRC, IT Audit, IT Risk, or compliance.
  • Knowledge of IT governance, risk management, internal controls, and compliance practices.
  • Familiarity with IT control assessment processes and related tools.

Responsibilities

  • Support IT Governance, Risk, and Compliance initiatives, including control assessments, compliance activities, and audit coordination.
  • Act as a liaison between IT/IS/Cybersecurity and Risk/Audit functions to facilitate assessments and evidence collection.
  • Manage GRC activities and documentation, including questionnaires, control assessments, audit evidence, asset information, and user access reviews.
  • Perform and document control testing, identify compliance gaps, and support audit narratives and reports.
  • Monitor and support remediation of audit findings, risk exceptions, and compliance issues, tracking action plans and progress.
  • Collaborate with IT/IS teams to review and maintain security policies, procedures, KPIs, and KRIs.
  • Monitor changes in regulations, frameworks, and industry best practices to support ongoing compliance and risk management.
  • Work with cross-functional stakeholders including IT, Cybersecurity, Risk, Audit, Engineering, and Legal.

Skills

IT GRC
Risk assessment
Audit coordination
Control testing
Documentation
Stakeholder management

Education

Bachelor’s degree in Information Security/IT
Information Systems/Technology

Tools

GRC platforms/tools
Excel
SharePoint

Job description

Bank Rakyat Indonesia (BRI) is one of the largest state-owned banks in Indonesia. For more than 130 years of providing the best services for all levels of society, BRI has taken part in efforts to develop the country. With the vision of “The Most Valuable Banking Group in Southeast Asia” and “Champion of Financial Inclusion , BRI focuses on developing the best talent with strong characters to give back to Indonesia.

BRI is not only a place to work, but a place where you can optimize your best potential to contribute and give impact.

Open Position: IT GRC (Governance, Risk, and Compliance)
About the Role

As an IT GRC, you will play a key role in supporting IT governance, risk, and compliance activities. You will collaborate with IT, Cybersecurity, Risk, and Audit teams to conduct control assessments, manage compliance evidence, monitor remediation, and ensure alignment with applicable policies, regulations, and frameworks.

Responsibilities
  • Support IT Governance, Risk, and Compliance (GRC) initiatives, including IT control assessments, compliance activities, and audit coordination.
  • Act as a liaison between IT/IS/Cybersecurity teams and Risk/Audit functions to facilitate assessments, evidence collection, and compliance requirements.
  • Manage GRC activities and documentation, including questionnaires, control assessments, audit evidence, asset information, and user access reviews.
  • Perform and document control testing, identify compliance gaps, and support the preparation of audit narratives and reports.
  • Monitor and support the remediation of audit findings, risk exceptions, and compliance issues, including tracking action plans and their progress.
  • Collaborate with IT/IS teams to review and maintain security policies, procedures, KPIs, and KRIs.
  • Monitor changes in regulations, frameworks, and industry best practices to support ongoing compliance and risk management.
  • Work collaboratively with cross-functional stakeholders, including IT, Cybersecurity, Risk, Audit, Engineering, and Legal teams.
Qualifications
  • Bachelor’s degree in Information Security, Information Systems/Technology, Cybersecurity, Risk Management, or a related field.
  • Minimum 2 year of experience in IT GRC, IT Audit, IT Risk, Compliance, or a related function.
  • Good understanding of IT governance, risk management, internal controls, and compliance practices.
  • Familiarity with GRC platforms/tools and IT control assessment processes.
  • Basic understanding of enterprise IT infrastructure, including operating systems, directory services, and security technologies.
  • Familiarity with Microsoft Office 365, particularly Excel and SharePoint.
  • Knowledge of relevant frameworks and standards such as ISO 27001, NIST CSF, SOX, and OJK/Bank Indonesia regulations is preferred.
  • Strong analytical, documentation, and problem-solving skills, with attention to detail.
  • Excellent written and verbal communication skills, with the ability to prepare clear control narratives and reports.
  • Strong interpersonal and stakeholder management skills, with the ability to collaborate effectively across functions.
  • Experience in IT consulting or public accounting/audit is a plus.
Equal Opportunity Statement

We are committed to diversity and inclusivity in our hiring practices.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT GRC Analyst: Governance, Risk & Compliance
IT GRC Analyst: Governance, Risk & Compliance

PT Bank Rakyat Indonesia (Persero) Tbk • Jakarta Pusat

On-site
IDR 180,000,000 - 300,000,000
Junior IT Governance
Junior IT Governance

Cermati.com • Jakarta Pusat

On-site
IDR 167,400,000 - 279,000,000
Junior IT Governance
Junior IT Governance

amIT Global Solutions Sdn Bhd • Indonesia

On-site
IDR 200,880,000 - 357,120,000
IT GRC
IT GRC

Siswaku Indonesia Pintar • Surakarta

On-site
IDR 180,000,000 - 300,000,000
Junior IT Governance
Junior IT Governance

Cermati Fintech Group • Jakarta Pusat

On-site
IDR 334,800,000 - 613,800,000
IT GRC Analyst
IT GRC Analyst

Xendit • Jakarta Pusat

On-site
IDR 60,000,000 - 90,000,000
IT Security & GRC (Lead/Manager)
IT Security & GRC (Lead/Manager)

Cermati • Daerah Khusus Ibukota Jakarta

On-site
IDR 300,000,000 - 500,000,000
IT GRC Analyst Jakarta, Indonesia
IT GRC Analyst Jakarta, Indonesia

Xendit Inc. • Daerah Khusus Ibukota Jakarta

On-site
IDR 25,000,000 - 35,000,000
IT Governance Specialist
IT Governance Specialist

Cermati.com • Jakarta Pusat

On-site
IDR 300,000,000 - 450,000,000
IT Strategy & GRC Division Head
IT Strategy & GRC Division Head

Techconnect.id • Jakarta Pusat

On-site
IDR 900,000,000 - 1,300,000,000