Junior IT Governance

Cermati

Jakarta Pusat

On-site

IDR 180,000,000 - 360,000,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Indodana Fintech, an OJK-licensed financial technology company, seeks an IT GRC Compliance professional to assist in researching regulatory updates, drafting internal policies, and enforcing IT governance aligned with global frameworks. You will collaborate with IT Infra, InfoSec, and Data Platform teams to ensure compliance across the organization.

The role requires knowledge of POJK, GDPR, ISO standards, COBIT/ITIL, and risk management experience in financial services.

Qualifications

  • Bachelor's degree in computer science, information systems, related fields, or equivalent work experience.
  • Working experience as Compliance & Information Security, IT Governance, Risk, and Compliance (IT GRC), Risk Management or IT Auditor in the financial service industry or banking or a similar company in governance roles is a plus
  • Good logical analysis & problem solving skills
  • Excellent verbal/written communication & organizational skills
  • Leadership, execution & process oriented and negotiation skills
  • Knowledge of cybersecurity standards such as ISO 27001, ISO 27701, PCI-DSS, and NIST 2
  • Knowledge of regulations such as POJK, PBI LPBBTI and UU PDP, GDPR,
  • Knowledge of IT Governance framework such as COBIT, ITIL
  • Knowledge of cybersecurity frameworks
  • Good understanding of legal principles, personal data protection laws, or obtaining Data Protection Officer certification is a plus

Responsibilities

  • Assist in researching regulatory updates, industry best practices, and IT GRC benchmarks to support senior team members in drafting any internal policy & procedure proposals.
  • Design, update and enforce IT GRC policies aligned with financial sector regulations and global frameworks (COBIT 2019, ISO 27001, ISO 27701 ISO 31000, GDPR)
  • Gather, organize, and summarize input and operational pain points from various Departments (HR, Legal, Business Units) regarding existing IT compliance & security common practices.
  • Assist in drafting core SOPs, updating governance policies, and maintaining regulatory compliance checklists, while control checklists designed to improve daily internal IT GRC culture, following POJK, PBI regarding IT implementation on Fintech Industry.
  • Identify & help map proposed internal controls against existing cross-departments workflows to identify potential operational friction before policies are finalized.
  • Assist in identifying all relevant risks in IT related activity tasks, collect, manage and conduct IT risk control self assessment to prevent and define risk mitigation designed proposals.
  • Collect, organize, and verify audit evidence for internal reviews and external regulatory inspections (audit support internal team).
  • Work with IT Infrastructure, IT Information & Security, and Data Platform teams to log, review, and track system change requests. That's a good value to understand and know in general (at least) regarding IT Infra Info-sec and data governance implementation.
  • Conduct routine checks to ensure day-to-day operations & business implementation are aligned with IT governance implementation on financial industry standards.
  • Become a support PIC to drive any change management and implementation for IT GRC policies.
  • Become a support PIC for communicating things related to IT Security, IT Risk Management, Governance and Compliance for both internal and external stakeholders.
  • Working closely and supporting execution tasks with mid and senior management personnel across the organization to understand the organization’s contexts, strategy and governance needs to adapt policies accordingly.

Skills

IT GRC experience
Information security
Regulatory knowledge
Leadership
Communication
Policy drafting
Cybersecurity frameworks

Education

Bachelor's degree in CS/IS or related field

Job description

Indodana Fintech is an OJK-licensed financial technology company that operates a credit marketplace for peer-to-peer loans. Our mission is to achieve financial inclusion by enabling lenders to provide loans to the 100 million underbanked Indonesians. Leveraging sophisticated big data and artificial intelligence technologies, we connect hundreds of lenders with creditworthy borrowers every day.
Our team hailed from Silicon Valley Tech companies such as Google, Microsoft, LinkedIn and Sofi as well as Indonesian startups such as Doku, Touchten. We have graduates from well known universities such as Universitas Indonesia, ITB, Stanford, University of Washington, Cornell and many others. We are building a company with the same culture of openness, transparency, drive and meritocracy as Silicon Valley companies. Join us in our cause to build a world class fintech company in Indonesia.

Job Description
  • Assist in researching regulatory updates, industry best practices, and IT GRC benchmarks to support senior team members in drafting any internal policy & procedure proposals.
  • Design, update and enforce IT GRC policies aligned with financial sector regulations and global frameworks (COBIT 2019, ISO 27001, ISO 27701 ISO 31000, GDPR)
  • Gather, organize, and summarize input and operational pain points from various Departments (HR, Legal, Business Units) regarding existing IT compliance & security common practices.
  • Assist in drafting core SOPs, updating governance policies, and maintaining regulatory compliance checklists, while control checklists designed to improve daily internal IT GRC culture, following POJK, PBI regarding IT implementation on Fintech Industry.
  • Identify & help map proposed internal controls against existing cross-departments workflows to identify potential operational friction before policies are finalized.
  • Assist in identifying all relevant risks in IT related activity tasks, collect, manage and conduct IT risk control self assessment to prevent and define risk mitigation designed proposals.
  • Collect, organize, and verify audit evidence for internal reviews and external regulatory inspections (audit support internal team).
  • Work with IT Infrastructure, IT Information & Security, and Data Platform teams to log, review, and track system change requests. That's a good value to understand and know in general (at least) regarding IT Infra Info-sec and data governance implementation.
  • Conduct routine checks to ensure day-to-day operations & business implementation are aligned with IT governance implementation on financial industry standards.
  • Become a support PIC to drive any change management and implementation for IT GRC policies.
  • Become a support PIC for communicating things related to IT Security, IT Risk Management, Governance and Compliance for both internal and external stakeholders.
  • Working closely and supporting execution tasks with mid and senior management personnel across the organization to understand the organization’s contexts, strategy and governance needs to adapt policies accordingly.
Qualifications
  • Bachelor's degree in computer science, information systems, related fields, or equivalent work experience
  • Working experience as Compliance & Information Security, IT Governance, Risk, and Compliance (IT GRC), Risk Management or IT Auditor in the financial service industry or banking or a similar company in governance roles is a plus
  • Good logical analysis & problem solving skills
  • Excellent verbal/written communication & organizational skills
  • Leadership, execution & process oriented and negotiation skills
  • Knowledge of cybersecurity standards such as ISO 27001, ISO 27701, PCI-DSS, and NIST 2
  • Knowledge of regulations such as POJK, PBI LPBBTI and UU PDP, GDPR,
  • Knowledge of IT Governance framework such as COBIT, ITIL
  • Knowledge of cybersecurity frameworks
  • Good understanding of legal principles, personal data protection laws, or obtaining Data Protection Officer certification is a plus

By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior IT Governance
Junior IT Governance

Indodana • Jakarta Pusat

On-site
IDR 200,880,000 - 357,120,000
null
IT Governance Specialist
IT Governance Specialist

Cermati.com • Jakarta Pusat

On-site
IDR 300,000,000 - 450,000,000
Junior IT GRC & Compliance Analyst
Junior IT GRC & Compliance Analyst

Indodana • Jakarta Pusat

On-site
IDR 200,880,000 - 357,120,000
null
IT GRC Specialist - Fintech Risk & Compliance
IT GRC Specialist - Fintech Risk & Compliance

Cermati • Jakarta Pusat

On-site
IDR 180,000,000 - 360,000,000
Junior IT Governance
Junior IT Governance

Stie Yai • Jakarta Pusat

On-site
IDR 120,000,000 - 180,000,000
Internal Audit Senior Specialist
Internal Audit Senior Specialist

IBMC • Jakarta Selatan

On-site
IDR 446,400,000 - 669,600,000
IT Security & GRC (Lead/Manager)
IT Security & GRC (Lead/Manager)

Cermati • Daerah Khusus Ibukota Jakarta

On-site
IDR 300,000,000 - 500,000,000
IT GRC Analyst Jakarta, Indonesia
IT GRC Analyst Jakarta, Indonesia

Xendit Inc. • Daerah Khusus Ibukota Jakarta

On-site
IDR 25,000,000 - 35,000,000
Internal Control (Fintech)
Internal Control (Fintech)

Pengiklan Anonim • Jakarta Utara

On-site
IDR 360,000,000 - 600,000,000
Digital Governance, Risk, and Compliance (GRC)
Digital Governance, Risk, and Compliance (GRC)

Referensiin_Aja • Jakarta Barat

On-site
IDR 400,000,000 - 700,000,000