OPEN POSITION
OpenIT Consulting

Governance, Risk, and Compliance

On-Site (Jakarta)Project BasedStaff2 Months
Applications close on 1 October 2026

About the Role

Support GRC and cybersecurity compliance initiatives by mapping controls across security frameworks, reviewing backup and recovery policies, and helping align practices with national and international standards.

Responsibilities

  • Assess and map security controls across frameworks such as ISO/IEC 27001:2022, CSA CCM, CIS Benchmark, and NIST CSF 2.0.
  • Review backup policies against RTO/RPO requirements and verify restore test documentation.
  • Support alignment with BSSN's Kerangka Keamanan Siber Nasional (KKSN) and relevant sector-specific regulations.
  • Assist in GRC consulting and IT audit engagements for clients.

Requirements

  • Minimum 2 years of relevant work experience in information security, GRC consulting, IT audit, or a related discipline.
  • Bachelor's degree (S1) in Law, Information Technology, Information Systems, Information Security/Cybersecurity, Computer Engineering, or a related field.
  • Familiarity with BSSN's Kerangka Keamanan Siber Nasional (KKSN) and relevant sector-specific cybersecurity guidelines/regulation is a plus.
  • Solid understanding of ISO/IEC 27001:2022, CSA (Cloud Control Matrix), CIS Benchmark, NIST Cybersecurity Framework 2.0 and the ability to map controls across frameworks.
  • Experience reviewing backup policies against RTO/RPO requirements and verifying restore test documentation.

Governance, Risk, and Compliance

Applications are reviewed on a rolling basis. Submit yours today.