Regional ISO Engineer

JOB DESCRIPTION

Job Purpose/Role
This role will be a combination of ISO role and PCI role.
The Information Security Officer (ISO) is assigned to Security Assurance Manager. The ISO has overall responsibility for the effective implementation and maintenance of the Information Security Management System (ISMS) within Company. Furthermore, the ISO oversees the fulfilment of Information Security requirements in all services provided by Company as shared service provider to its customers. The scope of ISO covers several Business Units (usually the entire or part of Europe, Americas or APAC regions).
The PCI Compliance Officer is assigned to Security Assurance Manager. The PCI Compliance Officer provides advice on compliance matters related to Payment Cards Industries standards / frameworks. He / she represents Company to industry bodies, monitors and evaluates relevant PCI compliance risks that can affect the business. The scope of PCI Compliance Officer is global for Company Partners related demand.
Key responsibilities/What you do
ISO
Each Information Security Function shall be responsible for oversight of the related ISMS activities, risk identification and assessment, prevention and advice with respect to the Information Security Risk areas: of the local Company and of the services provided by the local Company to its customers.
The function is responsible for the effective implementation of Comapny’s Information Security principles. This includes to promptly report to the IS Function matters which potentially have impact on the Company’s reputation.
In case of conflict of interests, the ISO shall refer a matter to the Security Assurance Manager and ultimately to the Company CISO.
PCI
Define and help manage PCI DSS program
Evaluate compliance against IT security policies, functional rules, controls and Payment Cards Industry standards
Drive a distributed annual subsidiary assessment exercise
Manage vendors that support PCI engagements (scoping, assessments, consultations, etc.)
Manage non-planned PCI-related inquiries and provide/coordinate unified guidance to subsidiary and Amazon service teams
Provide consultancy on PCI requirements, deliver recommendations and risk interpretations in a clear, concise and audiencespecific format. 

JOB REQUIREMENT

Bachelor's degree in Computer or higher in related fields.
Recognized Information Security Certifications e.g. CISSP, CISM. CRISC or ISO27001 Lead Auditor preferred
Experience with internal controls, risk assessments, business processes and internal IT control testing or operational auditing
Information Security experience related to risk management controls assurance & compliance programs
Previous experience creating and/or performing review and gap analysis of information security policies and standards against cybersecurity frameworks
Related security control and compliance experience in various frameworks including PCI DSS, PCI PA-DSS, PCI PTS, GLBA, NYDFS, ISO, NIST, etc.
Excellent communication skills, interpersonal, oral, and written in English

WHAT'S ON OFFER

We offer a hybrid work model which recognizes the value of striking a balance between in-person collaboration and remote working incl. up to 25 days per year working from abroad
We believe in rewarding performance and our compensation and benefits package includes a company bonus scheme, pension, employee shares program and multiple employee discounts (details vary by location)
From career development and digital learning programs to international career mobility, we offer lifelong learning for our employees worldwide and an environment where innovation, delivery and empowerment are fostered
Flexible working, health and wellbeing offers (including healthcare and parental leave benefits) support to balance family and career and help our people return from career breaks with experience that nothing else can teach

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Fintech

Technical Skills:

Security

Location:

Others - Thailand

Working Policy:

Salary:

130K – 160K THB

Job ID:

J01245

Status:

Close

Related Job:

Pentest Manager

Ha Noi - Viet Nam


Product

  • Pentest

Tham gia triển khai dịch vụ pentest cho khách hàng: tiếp nhận, xác định các yêu cầu, phạm vi, điều kiện đảm bảo của các dự án pentest được giao Bóc tách công việc theo quy trình pentest, phân chia cho các thành viên tham gia thực hiện dự án Hướng dẫn các pentester thực hiện kiểm tra đánh giá ATTT cho ứng dụng Kiểm soát chất lượng dịch vụ, tuân thủ quy trình, nguồn lực và thời gian triển khai cho các dự án được giao Là đầu mối kỹ thuật, làm việc với các bộ phận nội bộ VCS (AM, CSKH, PM) & Khách hàng để phối hợp giải quyết các vấn đề trong phạm vi cung cấp dịch vụ Nghiên cứu cải tiến quy trình, checklist, các kỹ thuật mới nhằm nâng cao chất lượng dịch vụ, năng suất lao động, giảm tỉ lệ sót lỗi Đảm bảo SLA theo hợp đồng đã ký với Khách hàng

Negotiation

View details

SOC Manager

Ho Chi Minh, Ha Noi - Viet Nam


Product

  • Security
  • System
  • Network

Quản lý, kiểm soát chất lượng các dịch vụ cung cấp cho Nhóm các khách hàng của công ty: dịch vụ Giám sát ATTT 24/7, Xử lý sự cố, Threat hunting, Threat intelligence… Quản lý mức độ trưởng thành ATTT: Đánh giá, tư vấn nâng cao mức độ trưởng thành ATTT Quản lý Rủi ro ATTT & Quản lý tiếp xúc mối đe dọa liên tục đối với hệ thống của KH Nhận diện và quản lý vấn đề ATTT của khách hàng trong quá trình vận hành giám sát và xử lý sự cố Đại diện TTGS làm việc với các bộ phận nội bộ VCS (Triển khai, phát triển giải pháp, PM, sale, pre-sale, AM, CSKH, …) & Khách hàng để phối hợp giải quyết các vấn đề trong phạm vi cung cấp dịch vụ Đảm bảo SLA theo hợp đồng đã ký với Khách hàng

Negotiation

View details

Senior Staff Engineer

Ho Chi Minh - Viet Nam


Product

  • NestJS
  • Angular
  • Typescript

Revamp and streamline key components throughout the Angular 20 + NestJS codebase. Recognize and integrate architectural enhancements such as modularization, domain distinction, and shared service boundaries. Work closely with the CTO to refine product architecture without disrupting release schedule. Guarantee system efficiency, data integrity, and sustainability through improved design. Analyze crucial code pathways and mentor others in cutting-edge Angular and TypeScript methodologies. Introduce practices that elevate testability, deployment security, and developer productivity. Engage in product design conversations to synchronize engineering endeavors with actual user requirements.

Negotiation

View details