Regional ISO Engineer

JOB DESCRIPTION

Job Purpose/Role
This role will be a combination of ISO role and PCI role.
The Information Security Officer (ISO) is assigned to Security Assurance Manager. The ISO has overall responsibility for the effective implementation and maintenance of the Information Security Management System (ISMS) within Company. Furthermore, the ISO oversees the fulfilment of Information Security requirements in all services provided by Company as shared service provider to its customers. The scope of ISO covers several Business Units (usually the entire or part of Europe, Americas or APAC regions).
The PCI Compliance Officer is assigned to Security Assurance Manager. The PCI Compliance Officer provides advice on compliance matters related to Payment Cards Industries standards / frameworks. He / she represents Company to industry bodies, monitors and evaluates relevant PCI compliance risks that can affect the business. The scope of PCI Compliance Officer is global for Company Partners related demand.
Key responsibilities/What you do
ISO
Each Information Security Function shall be responsible for oversight of the related ISMS activities, risk identification and assessment, prevention and advice with respect to the Information Security Risk areas: of the local Company and of the services provided by the local Company to its customers.
The function is responsible for the effective implementation of Comapny’s Information Security principles. This includes to promptly report to the IS Function matters which potentially have impact on the Company’s reputation.
In case of conflict of interests, the ISO shall refer a matter to the Security Assurance Manager and ultimately to the Company CISO.
PCI
Define and help manage PCI DSS program
Evaluate compliance against IT security policies, functional rules, controls and Payment Cards Industry standards
Drive a distributed annual subsidiary assessment exercise
Manage vendors that support PCI engagements (scoping, assessments, consultations, etc.)
Manage non-planned PCI-related inquiries and provide/coordinate unified guidance to subsidiary and Amazon service teams
Provide consultancy on PCI requirements, deliver recommendations and risk interpretations in a clear, concise and audiencespecific format. 

JOB REQUIREMENT

Bachelor's degree in Computer or higher in related fields.
Recognized Information Security Certifications e.g. CISSP, CISM. CRISC or ISO27001 Lead Auditor preferred
Experience with internal controls, risk assessments, business processes and internal IT control testing or operational auditing
Information Security experience related to risk management controls assurance & compliance programs
Previous experience creating and/or performing review and gap analysis of information security policies and standards against cybersecurity frameworks
Related security control and compliance experience in various frameworks including PCI DSS, PCI PA-DSS, PCI PTS, GLBA, NYDFS, ISO, NIST, etc.
Excellent communication skills, interpersonal, oral, and written in English

WHAT'S ON OFFER

We offer a hybrid work model which recognizes the value of striking a balance between in-person collaboration and remote working incl. up to 25 days per year working from abroad
We believe in rewarding performance and our compensation and benefits package includes a company bonus scheme, pension, employee shares program and multiple employee discounts (details vary by location)
From career development and digital learning programs to international career mobility, we offer lifelong learning for our employees worldwide and an environment where innovation, delivery and empowerment are fostered
Flexible working, health and wellbeing offers (including healthcare and parental leave benefits) support to balance family and career and help our people return from career breaks with experience that nothing else can teach

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Fintech

Technical Skills:

Security

Location:

Others - Thailand

Working Policy:

Job ID:

J01245

Status:

Close

Related Job:

Head of Engineer - Tech Fraud & Scams VN

Ho Chi Minh


Product

Translate the Customer Onboarding and Mastery, Financial Crime and Fraud's strategic ambitions into an integrated roadmap for strategic execution, and drive this from shaping through to delivery Lead multiple engineering teams across Customer Onboarding and Mastery, Financial Crime and Fraud Domains to drive outcomes - hence Domain knowledge of these areas is desirable. Work closely with the business teams, product owners to validate requirements before and after delivery through showcases and Day 2 production monitoring Own not just the build, but the runtime of applications in production through active operational support, clearly defined support model with engineers proficient in site reliability engineering Own and lead the efforts of cyber security updates such as keeping software currency versions up to date, patch infrastructure every sprint Oversee investment delivery across CET to maintain alignment between Domains, ensure investment is spent effectively, and provide insights on effectiveness and prioritisation of spend

Negotiation

View details

Head of Engineer - CET

Ho Chi Minh - Viet Nam


Product

Translate the Customer Onboarding and Mastery, Financial Crime and Fraud's strategic ambitions into an integrated roadmap for strategic execution, and drive this from shaping through to delivery Lead multiple engineering teams across Customer Onboarding and Mastery, Financial Crime and Fraud Domains to drive outcomes - hence Domain knowledge of these areas is desirable. Work closely with the business teams, product owners to validate requirements before and after delivery through showcases and Day 2 production monitoring Own not just the build, but the runtime of applications in production through active operational support, clearly defined support model with engineers proficient in site reliability engineering Own and lead the efforts of cyber security updates such as keeping software currency versions up to date, patch infrastructure every sprint Oversee investment delivery across CET to maintain alignment between Domains, ensure investment is spent effectively, and provide insights on effectiveness and prioritisation of spend

Negotiation

View details

Head of Engineer - Home Ownership

Ho Chi Minh - Viet Nam


Product

Provide technical leadership for the Sub-Domain and are accountable for on-time delivery of Software Development Life Cycle Epics and Features. Lead, coach and mentor technology resources to uplift skills/knowledge to perform their role and to build a high-performing team. Drive technical delivery with a focus on improving speed, cost and quality of outcomes, ensuring the squads are aligned on objective and outcomes. Support and drive lean portfolio management across the Domain through linking business roadmaps with software delivery. Manage cross-functional, agile teams across business units to achieve performance targets. Accountable for removing Technical or delivery impediments that can't be resolved at squad level. Cost Management-Oversee financials to ensure achievement of plan and drive CI/CD. Responsible for developing market-leading capacity; the strategic deployment of the departmental resources leads to optimal resource allocation and successful product development.

Negotiation

View details