Logo

Security Compliance & Governance Engineer

OKX
Singapore
Full time

About this job

Job category

IT

Job type

Full time

Location

Singapore

Company size

Mature [ 50+ employess ]

Apply now

Don't miss out on this opportunity. Apply now and take the first step toward success.

Resume Assistance

See how well your resume matches this job role with our AI-powered score. By uploading your resume, you agree to our Terms of Service

Job Description

This role involves analyzing security and compliance gaps, developing remediation plans, and ensuring compliance with relevant standards and regulations. The engineer will also coordinate with various departments and communicate with external auditors and regulators.

Responsibilities

  • Analyze and assess security and compliance gaps identified by internal and external audits.
  • Develop and execute remediation plans and solutions for audit findings.
  • Coordinate with relevant departments to implement problem fixes and governance measures.
  • Conduct IT security and architecture governance to ensure systems and processes comply with relevant standards and regulations.
  • Track remediation progress and regularly report to management on governance work progress and effectiveness.
  • Develop and refine IT governance-related policies and procedures (P&P), and provide implementation guidance.
  • Communicate effectively with external auditors and regulators, coordinating audit work.
  • Continuously monitor and evaluate the company's security compliance status, proposing improvement suggestions.
  • Stay up-to-date on industry trends and best practices to drive continuous improvement of the company's security compliance capabilities.

Requirements

  • At least 8 years of relevant work experience, including IT audit, risk management, compliance, and security governance.
  • In-depth understanding of various audit standards such as ISO 27001, COBIT, SOC2, SOC1, PCI-DSS, and NIST.
  • Familiarity with relevant laws and regulations, including industry-specific norms and data protection regulations (e.g., GDPR).
  • Excellent project management skills, able to manage multiple complex audit finding remediation plans simultaneously.
  • Outstanding communication and coordination abilities, capable of effectively interacting with stakeholders at all levels and promoting cross-departmental cooperation.
  • Strong analytical and problem-solving skills, able to handle complex security compliance challenges.
  • At least 3 years of experience in IT process governance and technology governance projects within large internet enterprises.
  • Familiarity with specific risks and compliance requirements in large internet enterprises or blockchain companies.
  • Adaptability and flexibility to work in a rapidly changing technological and regulatory environment.
  • Knowledge of cyber security / cloud security / coding and related processes, such as change management, incident response processes, tracing processes, computer forensics processes, etc.

Benefits

  • Competitive total compensation package.
  • L&D programs and Education subsidy for employees' growth and development.
  • Various team building programs and company events.
  • Wellness and meal allowances.
  • Comprehensive healthcare schemes for employees and dependants.
© All rights reserved.