Requirements:
- Bachelor’s degree in Information Technology or a related field
- 3+ years of experience in IT compliance, IT audit, or a similar role
- Strong knowledge of IT governance, risk and compliance frameworks (COBIT, ISO 27001, ISO 20000)
- Professional certifications such as CISA (Certified Information Systems Auditor) or CISSP (Certified Information Systems Security Professional) are a plus
Responsibilites:
- Developing IT governance, risk, and compliance frameworks into policies and standards that can be implemented within the company’s IT environment
- Ensuring IT governance, risk, and compliance can be socialized and applied in the company’s IT operations
- Regularly monitoring and assessing the implementation of IT governance, risk, and compliance within the company and providing reports to management
- Collaborating with other IT departments to detail policies and SOPs for IT operations
- Working specifically with the IT Network & Security Department to develop IT security concepts and their implementation to maintain data security
- Developing internal company processes to achieve IT governance, risk, and compliance certification and overseeing surveillance processes after certification is obtained
- Proactively providing suggestions and input to improve governance, risk, and compliance processes to support more efficient business operations
- Ensuring application testing processes are completed before implementation