IT GRC Manager - Payments

GoTo Group

Jakarta Pusat

On-site

IDR 334,800,000 - 613,800,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

GoTo Group is seeking a Senior IT Governance, Risk, and Compliance lead to drive governance, risk, and compliance across the organization. You will oversee policies, audits, and regulatory interactions, aligning IT processes with ISO27001/27701 and PCI-DSS standards to protect data and enable responsible growth.

The role requires proven leadership, strong stakeholder communication, and the ability to navigate audits with limited resources while delivering tangible risk mitigation and governance

Qualifications

  • Minimum 5 years in IT governance, risk management, and compliance.
  • Experience with ISO27001 and ISO27701 audits.
  • Experience navigating regulatory audits.
  • Strong leadership and team-building.
  • Excellent stakeholder management and communication.

Responsibilities

  • Coordinating with the compliance team to ensure that every initiative, development, and collaboration complies with the standards and regulations (internal and external).
  • Conduct routine evaluation of policies and procedures implementation and ensure best-practice risk mitigation and assessment functions are maintained to comply with the company's strategy.
  • Act as a Subject Matter Expert to the stakeholders and provide relevant & applicable consultation for addressing the IT GRC requirement in lending & identity product & services.
  • Ensure effective governance, risk management, and compliance across the organization.
  • Develop and maintain compliance, governance, and risk-related IT and business process flow.
  • Coordinate with related IT work units to follow up on data requests and internal audit findings, external audits, and regulators.
  • Develop the process and conduct the activities to safeguard or archive every IT development document regularly.
  • Implement a good governance organization using ISO27001, ISO 27701, and other relevant Technology & Security best practices.

Skills

ISO27001/27701
Stakeholder management
Regulatory audits
IT governance
Leadership
Adaptability
ITIL/COBIT/PCI-DSS
Certifications: CISA/CISM/CRISC
Communication

Job description

What You Will Do

- Coordinating with the compliance team to ensure that every initiative, development, and collaboration complies with the standards and regulations (internal and external);

- Conduct routine evaluation of policies and procedures implementation and ensure best-practice risk mitigation and assessment functions are maintained to comply with the company's strategy;

- Act as a Subject Matter Expert to the stakeholders and provide relevant & applicable consultation for addressing the IT GRC requirement in lending & identity product & services;

- Ensure effective governance, risk management, and compliance across the organization;

- Develop and maintain compliance, governance, and risk-related IT and business process flow;

- Coordinate with related IT work units to follow up on data requests and internal audit findings, external audits, and regulators;

- Develop the process and conduct the activities to safeguard or archive every IT development document regularly;

- Implement a good governance organization using ISO27001, ISO 27701, and other relevant Technology & Security best practices.

What You Will Need

- Proven track record of successfully leading and achieving certifications such as ISO 27001 and ISO 27701;

- Excellent stakeholder management skills, with the ability to communicate and influence at all levels of the organization;

- Demonstrated ability to deliver results with limited resources and minimal supervision;

- Minimum of 5 years of experience in IT governance, risk management, and compliance;

- Extensive experience in managing and navigating regulatory audits and ensuring compliance with industry standards;

- Strong leadership skills with the ability to effectively lead a small team and foster a collaborative work environment;

- Strong adaptability and flexibility to take on new areas of responsibility and lead new functions, while effectively leveraging existing skills, knowledge, and experience;

- Having excellent experience with ISO 27001, ISO27701, and ITIL. COBIT, and PCI-DSS standards;

- One or more of the following or equivalent certifications preferred: CISA, CISM, CRISC, ITIL, COBIT, ISO 27001, and LA is preferred.

About GoTo Group
GoTo is the largest digital ecosystem in Indonesia. GoTo's mission is to 'empower progress' by offering technology infrastructure and solutions that help everyone to access and thrive in the digital economy.
The GoTo ecosystem provides a wide range of services, including mobility, delivery, payments, financial services, and technology solutions for merchants. The ecosystem also provides e-commerce services through Tokopedia and banking services through its partnership with Bank Jago.

About Gojek
Gojek is Southeast Asia’s leading on-demand platform and pioneer of the multi-service ecosystem with over 2.5 million driver partners across the regions offering a wide range of services such as transportation, food delivery, logistics and more. With its mission to create impact at scale, Gojek is committed to resolving consumer problems and raising standards of living by connecting consumers to the best providers of goods and services in the market.

About GoTo Financial
GoTo Financial accelerates financial inclusion through its leading financial services and merchants solutions. Its consumer services include GoPay and GoPayLater and serve businesses of all sizes through Midtrans, Moka, GoBiz Plus, GoBiz, and Selly. With its trusted and inclusive ecosystem of products, GoTo Financial is open to new growth opportunities and aims to empower everyone to Make It Happen, Make It Together, Make It Last.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT GRC Manager - Digital Identity
IT GRC Manager - Digital Identity

GoPay • Jakarta Pusat

Hybrid
IDR 450,000,000 - 650,000,000
IT GRC Manager - Digital Identity
IT GRC Manager - Digital Identity

Lever, Inc. • Jakarta Pusat

On-site
IDR 600,000,000 - 900,000,000
IT GRC Manager - Digital Identity
IT GRC Manager - Digital Identity

GoTo Financial • Jakarta Utara

On-site
IDR 400,000,000 - 800,000,000
IT GRC Manager - Digital Identity
IT GRC Manager - Digital Identity

PT GOTO GOJEK TOKOPEDIA TBK • Jakarta Utara

On-site
IDR 600,000,000 - 1,200,000,000
Medical Insurance
Gym Room
Play Room
+1
Lead Internal Auditor - Business
Lead Internal Auditor - Business

Lever, Inc. • Jakarta Pusat

On-site
IDR 600,000,000 - 1,000,000,000
Lead Internal Auditor - IT - Payment
Lead Internal Auditor - IT - Payment

GoTo Financial • Jakarta Utara

On-site
IDR 400,000,000 - 700,000,000
Lead Internal Auditor - Lending
Lead Internal Auditor - Lending

GoTo Financial • Jakarta Utara

On-site
IDR 90,000,000 - 140,000,000
Lead Internal Auditor - IT - Digital Signature
Lead Internal Auditor - IT - Digital Signature

Lever, Inc. • Jakarta Pusat

On-site
IDR 500,000,000 - 900,000,000
Process Improvement Manager
Process Improvement Manager

GoTo Financial • Jakarta Pusat

On-site
IDR 446,400,000 - 669,600,000
GoTo Financial - Head of Accounting - Lending Business
GoTo Financial - Head of Accounting - Lending Business

GoTo Group • Jakarta Pusat

On-site
IDR 2,000,000,000 - 4,500,000,000