About this role
Make recommendations to senior management to create IT GRC policies that would improve internal control and security posture of the company while satisfying the consideration of all stakeholders including: business users, HR, compliance, legal, etcBecome the main PIC to drive change management and implementation for IT GRC policies. Become the main PIC for communicating things related to IT Security, Risk, Governance and Compliance for both internal and external stakeholders.Working closely with senior management personnel across the organization to understand the organization’s contexts, strategy and governance needs to adapt policies accordinglyLiaising with stakeholders to design effective governance policies for company operations and regulatory complianceWorking with the security, data, compliance, and legal teams to redefine the requirements of our systems’ implementation and processesOverseeing the implementation of the governance policies across the organizationContributing to the improvements of the company’s security policies and processes Bachelor's degree in computer science or related fields, or equivalent work experienceStrong logical & problem solving skillsExcellent verbal/written communication & organizational skillsHave leadership and negotiation skillsKnowledge of cybersecurity standards such as ISO 27001, PCI-DSS, and SOC2Knowledge of regulations such as POJK and UU PDPKnowledge of cybersecurity frameworksExtensive experience (10 years or more) in cybersecurity and IT governance industry is preferredAdvanced degree or cybersecurity certification (CISSP, CISA) is a plusHaving Protection Officer certification is a plus