Job Description
About Bukalapak
Bukalapak is a leading Indonesian technology company dedicated to empowering small and medium-sized enterprises (SMEs). We are committed to creating a fair economy for everyone, driving innovation, and contributing to the growth of society. At Bukalapak, you'll be part of a dynamic and passionate team making a real impact.
About the role
As a Business Process Compliance Specialist, you'll play a crucial role in ensuring our business processes are well-governed, compliant, and aligned with internal policies and regulatory requirements.
Job Description:
IT Governance & Compliance:
- Develop, implement, and maintain IT governance, risk, and compliance frameworks and policies.
- Ensure alignment with industry standards (ISO 27001, NIST, SOC 2, GDPR, etc.) and regulatory requirements.
- Conduct regular IT compliance audits and risk assessments to identify vulnerabilities.
- Develop and manage IT internal control processes to minimize security and compliance risks.
- Provide guidance and training to employees on IT governance, risk, and compliance policies.
IT Risk Management:
- Identify, assess, and mitigate risks related to IT operations, cybersecurity, and regulatory compliance.
- Develop and maintain an IT risk register and track mitigation measures.
- Perform periodic IT risk analysis and provide reports to senior management.
- Support IT incident response planning and business continuity strategies.
IT Policy & Regulatory Compliance:
- Monitor changes in IT laws and regulations affecting the organizations technology operations.
- Collaborate with legal, audit, and cybersecurity teams to ensure compliance with corporate policies and external mandates.
- Liaise with regulatory bodies and auditors to ensure IT compliance and governance objectives are met.
- Maintain documentation and evidence of IT compliance activities.
Reporting & Communication:
- Prepare reports on IT compliance and risk findings, with recommendations for improvement.
- Communicate with senior management regarding key IT risk exposures and regulatory updates.
- Assist in drafting IT policies, procedures, and documentation related to governance and compliance.
Job Requirements:
- Bachelors degree in Information Technology, Cybersecurity, Risk Management, or a related field.
- 3+ years of experience in IT governance, risk, compliance, or audit roles.
- Familiarity with IT compliance frameworks and risk management methodologies.
- Experience in regulatory compliance, IT audits, or cybersecurity governance.
- Strong knowledge of IT risk assessment tools and techniques.
- Professional certifications such as CRISC, CISA, CISM, CISSP, or equivalent (preferred).
- Excellent analytical, problem-solving, and communication skills.
- Ability to work collaboratively across IT teams and with external regulators.
Bukalapak is an Equal Opportunity Employer
Bukalapak is committed to creating a diverse and inclusive workplace. We encourage all qualified individuals to apply regardless of race, religion, gender, age, or disability.
More Info
Key Skills
IT compliance audits
SOC 2
IT internal control processes
IT risk assessment tools
compliance frameworks

