Search Jobs

Search by job, company or skills

IT Governance, Risk & Compliance Specialist

IT Governance, Risk & Compliance Specialist

Bukalapak
3-5 Years
  • Posted 2 days ago
  • Be among the first 10 applicants

Job Description

About Bukalapak

Bukalapak is a leading Indonesian technology company dedicated to empowering small and medium-sized enterprises (SMEs). We are committed to creating a fair economy for everyone, driving innovation, and contributing to the growth of society. At Bukalapak, you'll be part of a dynamic and passionate team making a real impact.

About the role

As a Business Process Compliance Specialist, you'll play a crucial role in ensuring our business processes are well-governed, compliant, and aligned with internal policies and regulatory requirements.

Job Description:

IT Governance & Compliance:

  • Develop, implement, and maintain IT governance, risk, and compliance frameworks and policies.
  • Ensure alignment with industry standards (ISO 27001, NIST, SOC 2, GDPR, etc.) and regulatory requirements.
  • Conduct regular IT compliance audits and risk assessments to identify vulnerabilities.
  • Develop and manage IT internal control processes to minimize security and compliance risks.
  • Provide guidance and training to employees on IT governance, risk, and compliance policies.

IT Risk Management:

  • Identify, assess, and mitigate risks related to IT operations, cybersecurity, and regulatory compliance.
  • Develop and maintain an IT risk register and track mitigation measures.
  • Perform periodic IT risk analysis and provide reports to senior management.
  • Support IT incident response planning and business continuity strategies.

IT Policy & Regulatory Compliance:

  • Monitor changes in IT laws and regulations affecting the organizations technology operations.
  • Collaborate with legal, audit, and cybersecurity teams to ensure compliance with corporate policies and external mandates.
  • Liaise with regulatory bodies and auditors to ensure IT compliance and governance objectives are met.
  • Maintain documentation and evidence of IT compliance activities.

Reporting & Communication:

  • Prepare reports on IT compliance and risk findings, with recommendations for improvement.
  • Communicate with senior management regarding key IT risk exposures and regulatory updates.
  • Assist in drafting IT policies, procedures, and documentation related to governance and compliance.

Job Requirements:

  • Bachelors degree in Information Technology, Cybersecurity, Risk Management, or a related field.
  • 3+ years of experience in IT governance, risk, compliance, or audit roles.
  • Familiarity with IT compliance frameworks and risk management methodologies.
  • Experience in regulatory compliance, IT audits, or cybersecurity governance.
  • Strong knowledge of IT risk assessment tools and techniques.
  • Professional certifications such as CRISC, CISA, CISM, CISSP, or equivalent (preferred).
  • Excellent analytical, problem-solving, and communication skills.
  • Ability to work collaboratively across IT teams and with external regulators.

Bukalapak is an Equal Opportunity Employer

Bukalapak is committed to creating a diverse and inclusive workplace. We encourage all qualified individuals to apply regardless of race, religion, gender, age, or disability.

More Info

Job Type:
Industry:
Employment Type:

Key Skills

business continuity strategies

IT laws and regulations

IT incident response planning

IT compliance audits

IT risk analysis

SOC 2

IT internal control processes

compliance frameworks

IT risk register

About Company

Similar Jobs

3-5 yrs
Indonesia
Skills:
policy development , Iso 27001, It Compliance, risk management, audit management, It Governance, Documentation, Regulatory Compliance
7-9 yrs
Indonesia
Skills:
it risk management , Iso27001, Itil, Microsoft Office, IT Maturity Assessment, IT Governance Risk and Compliance, It Audit, IT Assessment, COBIT 2019, IT Master Plan, Business Continuity Plan, IT Policy SOP Development
5-7 yrs
Indonesia
Skills:
Iso 27001, Cism, Cissp, Cisa, CRISC, It Governance, Risk And Compliance
2-4 yrs
Indonesia
Skills:
enterprise it infrastructure , control testing , Microsoft Office 365, Iso 27001, Excel, compliance activities, NIST CSF, IT control assessments, OJK Bank Indonesia regulations, Audit Coordination, Sharepoint, Sox, GRC platforms tools, remediation of audit findings, security policies procedures KPIs and KRIs
5-8 yrs
Indonesia
Skills:
Risk Management, Regulatory Compliance, Contract Review, Regulatory Reporting, Due Diligence, Analytical Skills, OJK Regulations, KYB Activity Assessment