Job Description
About Bukalapak
Bukalapak is a leading Indonesian technology company dedicated to empowering small and medium-sized enterprises (SMEs). We are committed to creating a fair economy for everyone, driving innovation, and contributing to the growth of society. At Bukalapak, you'll be part of a dynamic and passionate team making a real impact.
About the role
As a Business Process Compliance Specialist, you'll play a crucial role in ensuring our business processes are well-governed, compliant, and aligned with internal policies and regulatory requirements.
Job Description:
IT Governance & Compliance:
- Develop, implement, and maintain IT governance, risk, and compliance frameworks and policies.
- Ensure alignment with industry standards (ISO 27001, NIST, SOC 2, GDPR, etc.) and regulatory requirements.
- Conduct regular IT compliance audits and risk assessments to identify vulnerabilities.
- Develop and manage IT internal control processes to minimize security and compliance risks.
- Provide guidance and training to employees on IT governance, risk, and compliance policies.
IT Risk Management:
- Identify, assess, and mitigate risks related to IT operations, cybersecurity, and regulatory compliance.
- Develop and maintain an IT risk register and track mitigation measures.
- Perform periodic IT risk analysis and provide reports to senior management.
- Support IT incident response planning and business continuity strategies.
IT Policy & Regulatory Compliance:
- Monitor changes in IT laws and regulations affecting the organizations technology operations.
- Collaborate with legal, audit, and cybersecurity teams to ensure compliance with corporate policies and external mandates.
- Liaise with regulatory bodies and auditors to ensure IT compliance and governance objectives are met.
- Maintain documentation and evidence of IT compliance activities.
Reporting & Communication:
- Prepare reports on IT compliance and risk findings, with recommendations for improvement.
- Communicate with senior management regarding key IT risk exposures and regulatory updates.
- Assist in drafting IT policies, procedures, and documentation related to governance and compliance.
Job Requirements:
- Bachelors degree in Information Technology, Cybersecurity, Risk Management, or a related field.
- 3+ years of experience in IT governance, risk, compliance, or audit roles.
- Familiarity with IT compliance frameworks and risk management methodologies.
- Experience in regulatory compliance, IT audits, or cybersecurity governance.
- Strong knowledge of IT risk assessment tools and techniques.
- Professional certifications such as CRISC, CISA, CISM, CISSP, or equivalent (preferred).
- Excellent analytical, problem-solving, and communication skills.
- Ability to work collaboratively across IT teams and with external regulators.
Bukalapak is an Equal Opportunity Employer
Bukalapak is committed to creating a diverse and inclusive workplace. We encourage all qualified individuals to apply regardless of race, religion, gender, age, or disability.
More Info
Key Skills
business continuity strategies
IT incident response planning
IT compliance audits
IT risk analysis
SOC 2
IT internal control processes
compliance frameworks
IT risk register

