IT GRC Manager - Digital Identity

Lever, Inc.

Jakarta Pusat

On-site

IDR 600,000,000 - 900,000,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Lever, Inc. is seeking an IT GRC Manager to lead the development and execution of a governance, risk, and compliance framework focused on identity services.

You will drive ISO 27001 and ISO 27701 readiness, bridge policy and practice, and monitor internal controls to support strategic objectives. Within six months you will strengthen the risk posture, influence policy reforms, and coordinate with legal, security, and product teams to embed security controls across lending and identity products,

Qualifications

  • Minimum of 5 years in IT governance, risk management, and compliance.
  • Experience with ISO 27001/27701, PSrE and COBIT/ITIL.
  • Proven track record leading ISO 27001/27701 certifications.
  • Excellent stakeholder management and communication at all levels.
  • Experience navigating regulatory audits.
  • Ability to lead a small team and foster collaboration.

Responsibilities

  • Coordinating with compliance to ensure initiatives meet internal and external standards.
  • Evaluate policy implementation and maintain risk mitigation.
  • Act as SME to address IT GRC requirements for lending & identity products/services.
  • Ensure governance, risk management, and compliance across the organization.
  • Develop and maintain IT and business process governance related documents.
  • Coordinate with IT units to follow up on data requests, audits, and regulators.
  • Develop processes to safeguard or archive IT development documents.
  • Implement governance using ISO27001, ISO27701 and related best practices.

Skills

IT governance
Risk management
Compliance
Stakeholder management
Leadership
Audits

Tools

ISO 27001
ISO 27701
ITIL
COBIT

Job description

About The Role

The IT GRC Manager will spearhead the development and implementation of a robust governance, risk, and compliance framework, specifically tailored to our identity services products. Tasked with bridging the gap between policy and practice, the Manager will monitor the execution of internal controls and evaluate their efficacy in meeting strategic objectives. A primary focus involves driving the organization toward ISO 27001 and ISO 27701 certifications while ensuring continuous readiness for regulatory audits.

Within the first six months, the successful candidate will be expected to fortify the company’s risk posture and influence critical IT policy reforms, ultimately enhancing organizational resilience against an evolving cyber threat landscape.

What You Will Do
  • Coordinating with the compliance team to ensure that every initiative, development, and collaboration complies with the standards and regulations (internal and external);
  • Conduct routine evaluation of policies and procedures implementation and ensure best-practice risk mitigation and assessment functions are maintained to comply with the company's strategy;
  • Act as a Subject Matter Expert to the stakeholders and provide relevant & applicable consultation for addressing the IT GRC requirement in lending & identity product & services;
  • Ensure effective governance, risk management, and compliance across the organization;
  • Develop and maintain compliance, governance, and risk-related IT and business process flow;
  • Coordinate with related IT work units to follow up on data requests and internal audit findings, external audits, and regulators;
  • Develop the process and conduct the activities to safeguard or archive every IT development document regularly;
  • Implement a good governance organization using ISO27001, ISO 27701, and other relevant Technology & Security best practices.
What You Will Need
  • Minimum of 5 years of experience in IT governance, risk management, and compliance;
  • Having excellent experience with PSrE, ISO 27001, ISO27701, ITIL, and COBIT;
  • Proven track record of successfully leading and achieving certifications such as ISO 27001 and ISO 27701;
  • Excellent stakeholder management skills, with the ability to communicate and influence at all levels of the organization;
  • Demonstrated ability to deliver results with limited resources and minimal supervision;
  • Extensive experience in managing and navigating regulatory audits and ensuring compliance with industry standards;
  • Strong leadership skills with the ability to effectively lead a small team and foster a collaborative work environment;
  • Strong adaptability and flexibility to take on new areas of responsibility and lead new functions, while effectively leveraging existing skills, knowledge, and experience;
  • One or more of the following or equivalent certifications preferred: CISA, CISM, CRISC, ITIL, COBIT, and ISO 27001 LA is preferred.
About The Team

The GTF IT GRC team consists of dedicated specialists who support our technical operations for lending and identity services. You will find a culture that values mentorship, clear communication, and collective problem-solving. We believe that GRC is most effective when it's collaborative, not just corrective.

In this team, you will be the primary liaison between several key pillars of the organization:

  • Engineering & Tech: You'll partner with our engineers to ensure that security controls are "baked in" to our lending and identity platforms from day one.

  • Legal & Regulatory: You'll work alongside our compliance experts to translate complex financial laws into clear, actionable IT policies.

  • People & Partner Teams: You'll collaborate to foster a company-wide culture of security, ensuring that every employee and third-party partner understands their role in protecting our ecosystem.

About GoTo Group

GoTo is the largest digital ecosystem in Indonesia. GoTo's mission is 'empower progress' by offering technology infrastructure and solutions that help everyone to access and thrive in the digital economy.

The GoTo ecosystem provides a wide range of services, including mobility, delivery, payments, financial services, and technology solutions for merchants. The ecosystem also provides e-commerce services through Tokopedia and banking services through its partnership with Bank Jago.

About Gojek

Gojek is Southeast Asia's leading on-demand platform and pioneer of the multi-service ecosystem with over 2.5 million driver partners across the regions offering a wide range of services such as transportation, food delivery, logistics and more. With its mission to create impact at scale, Gojek is committed to resolving consumer problems and raising standards of living by connecting consumers to the best providers of goods and services in the market.

About GoTo Financial

GoTo Financial accelerates financial inclusion through its leading financial services and merchants solutions. Its consumer services include GoPay and GoPayLater and serve businesses of all sizes through Midtrans, Moka, GoBiz Plus, GoBiz, and Selly. With its trusted and inclusive ecosystem of products, GoTo Financial is open to new growth opportunities and aims to empower everyone to Make It Happen, Make It Together, Make It Last.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT GRC Manager - Digital Identity
IT GRC Manager - Digital Identity

PT GOTO GOJEK TOKOPEDIA TBK • Jakarta Utara

On-site
IDR 600,000,000 - 1,200,000,000
Medical Insurance
Gym Room
Play Room
+1
IT GRC Manager - Digital Identity
IT GRC Manager - Digital Identity

GoTo Financial • Jakarta Utara

On-site
IDR 400,000,000 - 800,000,000
Process Improvement Manager
Process Improvement Manager

GoTo Financial • Jakarta Pusat

On-site
IDR 446,400,000 - 669,600,000
GoTo Financial - Head of Accounting - Lending Business
GoTo Financial - Head of Accounting - Lending Business

GoTo Group • Jakarta Pusat

On-site
IDR 2,000,000,000 - 4,500,000,000
Process Improvement Manager
Process Improvement Manager

GoTo Group • Daerah Khusus Ibukota Jakarta

On-site
IDR 997,838,017 - 1,330,450,690
IT GRC Manager, Digital Identity - ISO Readiness Lead
IT GRC Manager, Digital Identity - ISO Readiness Lead

PT GOTO GOJEK TOKOPEDIA TBK • Jakarta Utara

On-site
IDR 600,000,000 - 1,200,000,000
Medical Insurance
Gym Room
Play Room
+1
GoTo Group - Head of Public Affairs
GoTo Group - Head of Public Affairs

GoTo Group • Jakarta Pusat

On-site
IDR 2,500,000,000 - 4,500,000,000
Head of Public Affairs
Head of Public Affairs

Gotogroup • Jakarta Pusat

On-site
IDR 600,000,000 - 900,000,000
IT GRC Analyst
IT GRC Analyst

Xendit • Jakarta Pusat

On-site
IDR 60,000,000 - 90,000,000
Head of Accounting - Lending Business
Head of Accounting - Lending Business

GoTo Financial • Jakarta Utara

On-site
IDR 1,500,000,000 - 3,000,000,000