Compliance Manager

Quantrics Enterprises Inc.

Taytay

On-site

PHP 781,200 - 1,116,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Quantrics Enterprises Inc. is hiring a Compliance Manager to oversee compliance activities across PCI DSS, SOC 2 Type 2, BCP, and PIPEDA standards. The ideal candidate will manage audits, document compliance efforts, and work closely with various teams to ensure the organization meets all regulatory requirements. With over 5 years of experience required and certifications such as CISM or PCI Professional preferred, this role is pivotal in maintaining compliance and driving continuous improvement in internal controls. Strong analytical skills and excellent communication are essential.

Qualifications

  • 5+ years of experience in compliance management, particularly with PCI DSS, SOC 2 Type 2, BCP, and PIPEDA.
  • Strong understanding of regulatory frameworks and audit methodologies.
  • Excellent communication skills to interact with all organizational levels.

Responsibilities

  • Manage compliance audits and monitor compliance with various standards.
  • Oversee PCI DSS, SOC 2 Type 2, and PIPEDA compliance initiatives.
  • Conduct training programs on compliance-related topics.

Skills

CISM (Certified Information Security Manager)
PCI Professional
SOC 2
Risk Management
Analytical Skills
Interpersonal Skills

Education

Relevant Certification

Job description

Role Overview

Compliance Manager oversees and manages the compliance activities for our organization, focusing on PCI DSS, SOC 2 Type 2, Business Continuity Planning (BCP), and PIPEDA (Personal Information Protection and Electronic Documents Act). The ideal candidate will be responsible for auditing, monitoring, and ensuring compliance with these standards, as well as leading initiatives to improve our internal control frameworks. This role will involve working closely with IT, Human Resources, security, and business teams to ensure that our practices meet the highest standards of regulatory compliance.

Key Responsibilities
  • Compliance Audits and Monitoring:
    • Conduct internal audits to assess the organization’s compliance with PCI DSS, SOC 2 Type 2, BCP, and PIPEDA.
    • Perform periodic risk assessments and gap analysis to identify and address compliance issues proactively.
    • Ensure that all compliance programs are up-to-date and align with industry standards and regulatory requirements.
  • PCI DSS Compliance Oversight:
    • Oversee the implementation and maintenance of PCI DSS controls and processes.
    • Manage the preparation, execution, and documentation of PCI DSS assessments and audits.
    • Work closely with IT and security teams to ensure that proper encryption, access controls, and secure payment practices are in place.
  • SOC 2 Type 2 Compliance Management:
    • Oversee the design, implementation, and testing of controls for SOC 2 Type 2 compliance.
    • Coordinate with external auditors for the SOC 2 Type 2 audit process and address any findings or issues.
    • Collaborate with relevant departments to maintain a secure and compliant IT environment.
  • Business Continuity and Disaster Recovery (BCP):
    • Manage the development, implementation, and testing of Business Continuity Plans (BCP) and Disaster Recovery (DR) plans.
    • Ensure that the company is prepared for operational disruptions and maintain up-to-date records of BCP tests and drills.
    • Work with senior leadership to identify and mitigate potential risks that could affect business continuity.
  • PIPEDA Compliance and Privacy Oversight:
    • Ensure the organization’s practices comply with PIPEDA regulations and data privacy requirements.
    • Implement and enforce data protection policies and guidelines to safeguard personal information.
    • Conduct audits and reviews of data collection, storage, and processing activities to ensure they align with legal and regulatory requirements.
  • Training and Awareness:
    • Develop and deliver training programs to employees on compliance-related topics, including PCI DSS, SOC 2, BCP, and PIPEDA.
    • Raise awareness on the importance of compliance and data security throughout the organization.
    • Stay updated on evolving industry standards and regulatory changes to ensure the organization remains compliant.
  • Reporting and Documentation:
    • Prepare regular reports for senior management, highlighting compliance status, audit findings, and areas of improvement.
    • Document compliance activities, audit results, and corrective actions taken in accordance with regulatory standards.
    • Track and report on compliance KPIs and metrics.
  • Collaboration and Stakeholder Management:
    • Act as the primary point of contact for internal and external stakeholders regarding compliance matters.
    • Collaborate with external auditors and regulatory bodies as needed.
    • Foster a culture of continuous improvement by recommending enhancements to compliance processes and systems.
Qualifications
  • CISM (Certified Information Security Manager), PCI Professional, SOC 2, or similar certifications are highly desirable.
  • Proven experience (5+ years) in compliance management, specifically with PCI DSS, SOC 2 Type 2, BCP, and PIPEDA.
  • Strong understanding of regulatory frameworks and industry standards.
  • Experience with audit methodologies and internal control frameworks.
  • Strong analytical, problem-solving, and risk management skills.
  • Excellent communication and interpersonal skills with the ability to interact with all levels of the organization.
  • Knowledge of data privacy laws and IT security best practices.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Compliance Program Lead - PCI DSS, SOC 2 & Privacy
Compliance Program Lead - PCI DSS, SOC 2 & Privacy

Quantrics Enterprises Inc. • Taytay

On-site
PHP 400,000 - 600,000
IT & Compliance Manager
IT & Compliance Manager

BullSwipe • Makati

On-site
PHP 2,400,000 - 3,600,000
Cyber Security Compliance Officer
Cyber Security Compliance Officer

PJ Lhuillier Group of Companies • Makati

Hybrid
PHP 900,000 - 1,300,000
Data Security Analyst (Work from Home)
Data Security Analyst (Work from Home)

Quantrics Enterprises Inc. • Manila

On-site
PHP 600,000 - 1,100,000
Information Security Compliance Officer
Information Security Compliance Officer

DigiPlus Interactive Corp • Philippines

On-site
PHP 600,000 - 1,200,000
InfoSec Framework & Compliance Lead (ISMS/PCI-DSS) | Hybrid
InfoSec Framework & Compliance Lead (ISMS/PCI-DSS) | Hybrid

GCash • Manila

On-site
PHP 1,800,000 - 3,000,000
Specialist - Governance Risk and Compliance
Specialist - Governance Risk and Compliance

Concentrix • Morong

On-site
PHP 600,000 - 1,000,000
Security Standards & Framework Manager
Security Standards & Framework Manager

GCash • Manila

On-site
PHP 1,800,000 - 3,000,000
Career growth opportunities
Competitive compensation package
Security Operations Center and Incident Response Manager
Security Operations Center and Incident Response Manager

PwC • Philippines

On-site
PHP 1,200,000 - 1,800,000
PCI Compliance Analyst
PCI Compliance Analyst

Global Payments Inc. • Philippines

On-site
PHP 1,200,000 - 1,800,000