IT Governance, Risk & Compliance Specialist

Machine translation — original language: Thai.Show original

Workplace: Lat Plao 25 Monday-Friday 8:30 AM - 5:30 PM

Job Details

  • Support IT Governance, Risk, and Compliance (IT GRC) activities, including risk assessments, compliance monitoring, control monitoring, and remediation tracking.
  • Support and maintain the Information Security Management System (ISMS) in accordance with ISO/IEC 27001 standards, covering documentation, evidence preparation, audit support, and Corrective Action tracking.
  • Assist in implementing the Jump+ project and other governance or regulatory initiatives, covering Gap Assessment, implementation monitoring, and progress reporting.
  • Support the development and implementation of AI Governance activities, such as AI Use Case Registration, risk assessment, policy and guideline development, and the definition of governance control measures.
  • Support Data Governance activities, such as Data Classification, Data Ownership definition, Data Inventory, and related governance requirements.
  • Prepare, update, and maintain policies, standards, Procedures, Guidelines, and other relevant governance documentation.
  • Monitor and track risks, non-compliance issues, Audit Findings, and action plans to ensure tasks are completed on schedule.
  • Coordinate with IT, Business, Compliance, Risk Management, Legal, Internal Audit, and other relevant stakeholders in governance and compliance activities.
  • Create and maintain Trackers, dashboards, status reports, and supporting evidence for management review, audits, and compliance checks.
  • Continuously monitor and update information regarding new regulations, standards, and requirements related to information security, AI Governance, and Data Governance.

To apply, please add Line via phone number 0639047237 to submit your resume.

Qualifications:

  • Bachelor's degree or higher in Information Technology, Computer Science, Information Security, Management Information Systems (MIS), or other related fields.
  • At least 2–3 years of experience in IT Governance, IT Risk, IT Compliance, Information Security, IT Audit, or related fields.
  • Basic to good knowledge of ISO/IEC 27001 standards and Information Security Management Systems (ISMS).
  • Experience supporting risk assessments, Gap Analysis, control assessments, compliance monitoring, or Audit activities.
  • Ability to prepare and maintain policies, Procedures, reports, Trackers, and various governance documents.
  • Knowledge or experience in AI Governance and Data Governance will be given special consideration.
  • Experience in the insurance industry, financial industry, or regulatory compliance will be given special consideration.
  • Excellent analytical, problem-solving, coordination, and documentation skills.
  • Good communication and interpersonal skills, with the ability to work effectively with IT, Business, and other stakeholders.
  • Good English communication skills, especially reading and understanding standards, regulations, and technical documents.
  • Possession of relevant certifications, such as ISO/IEC 27001 Internal Auditor/Implementer or others, will be given special consideration.

Contact person

Listed by the employer in the job posting — for questions and your application.