About the Role
Support GRC and cybersecurity compliance initiatives by mapping controls across security frameworks, reviewing backup and recovery policies, and helping align practices with national and international standards.
Responsibilities
- Assess and map security controls across frameworks such as ISO/IEC 27001:2022, CSA CCM, CIS Benchmark, and NIST CSF 2.0.
- Review backup policies against RTO/RPO requirements and verify restore test documentation.
- Support alignment with BSSN's Kerangka Keamanan Siber Nasional (KKSN) and relevant sector-specific regulations.
- Assist in GRC consulting and IT audit engagements for clients.
Requirements
- Minimum 2 years of relevant work experience in information security, GRC consulting, IT audit, or a related discipline.
- Bachelor's degree (S1) in Law, Information Technology, Information Systems, Information Security/Cybersecurity, Computer Engineering, or a related field.
- Familiarity with BSSN's Kerangka Keamanan Siber Nasional (KKSN) and relevant sector-specific cybersecurity guidelines/regulation is a plus.
- Solid understanding of ISO/IEC 27001:2022, CSA (Cloud Control Matrix), CIS Benchmark, NIST Cybersecurity Framework 2.0 and the ability to map controls across frameworks.
- Experience reviewing backup policies against RTO/RPO requirements and verifying restore test documentation.
Governance, Risk, and Compliance
Applications are reviewed on a rolling basis. Submit yours today.