Overview
About The Role
Full job description
About The Role
The IT GRC Manager will spearhead the development and implementation of a robust governance, risk, and compliance framework, specifically tailored to our identity services products. Tasked with bridging the gap between policy and practice, the Manager will monitor the execution of internal controls and evaluate their efficacy in meeting strategic objectives. A primary focus involves driving the organization toward ISO 27001 and ISO 27701 certifications while ensuring continuous readiness for regulatory audits.
Within the first six months, the successful candidate will be expected to fortify the company’s risk posture and influence critical IT policy reforms, ultimately enhancing organizational resilience against an evolving cyber threat landscape.
Coordinating with the compliance team to ensure that every initiative, development, and collaboration complies with the standards and regulations (internal and external); Conduct routine evaluation of policies and procedures implementation and ensure best-practice risk mitigation and assessment functions are maintained to comply with the company's strategy; Act as a Subject Matter Expert to the stakeholders and provide relevant & applicable consultation for addressing the IT GRC requirement in lending & identity product & services; Ensure effective governance, risk management, and compliance across the organization; Develop and maintain compliance, governance, and risk-related IT and business process flow; Coordinate with related IT work units to follow up on data requests and internal audit findings, external audits, and regulators; Develop the process and conduct the activities to safeguard or archive every IT development document regularly; Implement a good governance organization using ISO27001, ISO 27701, and other relevant Technology & Security best practices.
Minimum of 5 years of experience in IT governance, risk management, and compliance; Having excellent experience with PSrE, ISO 27001, ISO27701, ITIL, and COBIT; Proven track record of successfully leading and achieving certifications such as ISO 27001 and ISO 27701; Excellent stakeholder management skills, with the ability to communicate and influence at all levels of the organization; Demonstrated ability to deliver results with limited resources and minimal supervision; Extensive experience in managing and navigating regulatory audits and ensuring compliance with industry standards; Strong leadership skills with the ability to effectively lead a small team and foster a collaborative work environment; Strong adaptability and flexibility to take on new areas of responsibility and lead new functions, while effectively leveraging existing skills, knowledge, and experience; One or more of the following or equivalent certifications preferred: CISA, CISM, CRISC, ITIL, COBIT, and ISO 27001 LA is preferred.
Tips for this job
Practical JobOpportunity guidance. These tips do not replace official rules or create new eligibility requirements.
- Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
- Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
- Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
- Apply through the original employer or official recruitment destination shown on this page.
Verification notes
laptop-ats-crawler v3
JobOpportunity is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.
Apply through JobOpportunity →Browse current JobOpportunity listings from Gotogroup (lever) →