Đến nội dung chính
Tuyển Dụng
← Timo

Senior IT Governance ISO 27001, PCI DSS

Timo · Hồ Chí Minh
Ứng tuyển tại trang chính thức ↗
Loại hình
Toàn thời gian
Hình thức
Tại văn phòng
Cấp bậc
Nhân viên
Ngành nghề
CNTT - Phần mềm
Mức lương
Thương lượng
Địa điểm
Quận 3, Hồ Chí Minh, Hồ Chí Minh

Tổng quan

  • Regulatory Compliance Management: Continuous monitoring and compliance maintenance with rigid Vietnamese Banking and Personal Data Protection regulations.
  • Audit & Assessment Coordination: Lead, coordinate, and respond to at least annual cycles of strict internal and external audits—including regulatory inspections and critical compliance assessments.
  • Governance & Policy Monitoring: Conducting regular policy compliance monitoring, internal control reviews, and governance structural updates across entities; continuously updating and refining internal policies, procedures, and standards to ensure strict regulatory compliance.
  • International Standards Maintenance: Prepare evidence and drive annual assessments to maintain the PCI DSS Level 1 Standard certification.
  • Identity & Access Governance: Leading the comprehensive User Access Review (UAR) program applications across internal and external core systems.
  • Third-Party Risk Management (TPRM): Conducting comprehensive risk assessments and mitigation plans for all vendors and third-party partners.
  • Security Culture: Driving and planning security awareness training across all business, technical units.

Quyền lợi

  • Help defend and govern one of Vietnam's leading digital banks and the customers who trust it.
  • Work as part of Kredivo Group's regional security team (Vietnam, Indonesia, Singapore).
  • Hands-on GRC and security resilience work across a real, large-scale fintech environment.
  • Hybrid model: 4 days HCMC office, 1 day work from home.
  • Your Skills and Experience
  • What We Are Looking For
  • Experience
  • 3+ years of hands-on experience directly related to IT Security Governance, Risk, and Compliance (GRC).
  • Proven track record of participating in or leading the implementation and assessment of international governance frameworks (PCI-DSS, ISO-27001).
  • Experience operating in highly regulated, production-scale environments (Fintech, Banking, or Digital Services).
  • Comfortable collaborating with cross-functional stakeholders, software engineers, and external third-party entities.
  • Skills & Expertise
  • Frameworks & Methodologies: Deep, practical knowledge of GRC frameworks, security audit methodologies.
  • Security Controls Familiarity: Strong fundamental knowledge of network security, IAM (Identity and Access Management), and enterprise security tools (Antivirus, Firewalls, SIEM, IDS/IPS, Cloud Security) to effectively review system configurations and access controls.
  • Vendor Risk Assessment: Strong capabilities in defining, evaluating, and managing third-party security baselines.
  • Professional Working English: Regular collaboration with Kredivo's regional Team and Timo's local teams.
  • Attributes
  • Highly Responsible & Proactive: You don't wait for compliance gaps to be found; you actively collaborate to strengthen defenses.
  • Pragmatic Communicator: You can translate complex security regulations and risk metrics into actionable steps for engineers and business leaders alike.
  • Analytical & Structured: Exceptional attention to detail when conducting system-access audits and reviewing security policies.
  • Bonus Points
  • Possession of professional security/auditing certifications: CRISC, CISA, CISM, CISSP, CGRC or equivalent.
  • Prior experience navigating SBV (State Bank of Vietnam) and MPS regulatory requirements for digital banking.
  • Experience in Cloud Environments and automated GRC workflows.
  • Why You'll Love Working Here
  • Our deliverable is a leading software that is changing the way people do banking. You will be proud of your work and you will share with everybody that you helped to build Timo.
  • You’ll be joining a team of experts who are technically savvy, creative, and who share the intention of reinventing banking in Vietnam. You work closely with international architects and front-end consultants, product managers, and designers to develop the system. You will learn a lot from them.
  • Premium health care insurance
Chế độ thưởngĐào tạo

Tóm tắt thông tin từ tin tuyển dụng chính thức. Xem bản gốc ↗

Quan tâm đến vị trí này?

Bạn sẽ được chuyển đến trang ứng tuyển chính thức của nhà tuyển dụng.

Ứng tuyển tại trang chính thức ↗
Đây là doanh nghiệp của bạn? Nhận quản lý trang, yêu cầu chỉnh sửa hoặc gỡ bỏ