Join to apply for the Risk Officer role at PT ITSEC Asia Tbk
Get AI-powered advice on this job and more exclusive features.
Responsibilities
- Act as the designated Risk Officer for Indonesia operations, leading local risk identification, assessment, and mitigation activities.
- Serve as the internal ISO Coordinator, overseeing the implementation and maintenance of ISO / IEC 27001 and / or other relevant standards.
- Maintain and update the risk register, ensuring timely and accurate reporting to the global risk management team.
- Coordinate and support internal and external ISO audits, including preparation, documentation, findings resolution, and continuous improvement.
- Review and update policies, SOPs, and ISMS documentation to ensure audit-readiness and operational compliance.
- Provide risk-based input during strategic planning, vendor selection, and client-facing initiatives.
- Monitor and interpret regulatory changes and compliance risks relevant to cybersecurity and data protection in Indonesia.
- Deliver training and awareness sessions to enhance understanding of ISO and risk management principles across departments.
- Collaborate with global risk and compliance teams, aligning local practices with corporate frameworks and participating in group-wide initiatives.
- Track, report, and follow up on non-conformities, risk events, and audit findings to ensure timely closure and mitigation.
Requirements
Bachelor’s degree in Informatics Engineering, Computer Engineering, Information Security, Risk Management, or a related field.Relevant certifications highly preferred (e.g., ISO 27001 Lead Implementer / Auditor, CRISC, etc.).Minimum 4 years of professional experience in risk management, compliance, information security, or internal audit.Prior experience working in regulated industries or certified environments (e.g., ISO / IEC 27001, ISO 9001, ISO 14001, etc.).Strong understanding of ISO / IEC 27001 and risk management frameworks (e.g., ISO 31000, COSO, NIST).Familiarity with compliance requirements in cybersecurity, privacy (e.g., PDP Law), and operational risk.Proficient in developing risk registers, audit reports, and SOPs.Experience working with global stakeholders and cross-functional teams is a plus.Strong analytical, documentation, and project management skills.Excellent communication in Bahasa Indonesia and English (both verbal and written).High integrity, attention to detail, and ability to work independently.Seniority level
Mid-Senior levelEmployment type
Full-timeJob function
Finance and SalesThis job is active and accepting applications.
#J-18808-Ljbffr