Job Seeker Reactivate Your Account
Thank you, this account has been Deactivated.
Do you want to Reactivate your account?
No
Yes

Senior Mgr, IT Security Governance & Compliance

(IT Security Manager)

Woori Bank Cambodia
Boeng Keng Kang | Phnom Penh
  1 Post
Verified This job has been verified by the company as a real job vacancy. 1 week ago
Recruiter active 18 hours ago The recruiter at this company was last active reviewing applications.
Sorry, Unable to Apply
x
55%
Please Upload CV Attachment, or update your JobNet Profile to at least 55% of completion.
Upload CV
Update Profile
Senior Mgr, IT Security Governance & Compliance
Woori Bank Cambodia, Boeng Keng Kang | Phnom Penh

Senior Mgr, IT Security Governance & Compliance

Woori Bank Cambodia

Senior Mgr, IT Security Governance & Compliance

(IT Security Manager)

Woori Bank Cambodia
Recruiter active 18 hours ago The recruiter at this company was last active reviewing applications.
Cambodia - Phnom Penh
Verified This job has been verified by the company as a real job vacancy.

Experience level

Manager

Job Function

IT Hardware, Software

Job Industry

Banking/ Insurance/ Microfinance

Min Education Level

Bachelor Degree

Job Type

Full Time

Job Description

A Good Opportunity for ..

  • To develop and maintain technical policies and standards and promote compliance in line with regulator/corporate policies and local procedures and legal and international security standards (e.g. NBC Technology Risk Guideline, NIST framework and ISO27001 etc.).
  • To develop and maintain technical policies and standards and promote compliance in line with on ISO 27001:2022
  • To lead, develop and maintain the implementation of PCI DSS and PIN Card Payment Security, and Data Security (Data Classification & Data Loss Prevention solution).
  • SWIFT Customer Security Program.
  • To develop and maintain IT governance and compliance policies.
  • To ensure policies are up-to-date and aligned with regulatory requirements.
  • To communicate policies to relevant stakeholders.
  • To monitor adherence to policies and recommend updates as needed.
  • To implement zero trust architecture (ZTA) by assessing zero trust maturity model (ZTMM) across five distinct pillars as Identity, Devices, Networks, Applications, and Workloads and Data.
  • To work with internal and external auditors, Woori Bank HQ, and regulatory body.
  • To work collaboratively with WBC compliance, internal auditing, risk management and work with various technical teams in the design and Implementation of audit, risk assessment and regulatory compliance practices.
  • To establish, promote and aware for IT security awareness and training to foster an effective security culture within the Bank.
  • To tailor IT Security Awareness training and deliver training programs to educate employees about compliance requirements and best practices.
  • To establish of strategies for information protection, personal information protection, and credit information management and corporate data protection.
  • To perform other tasks as assigned by supervisor.

Open To

Male/Female

Job Requirements

  • Relevant IT qualification to Computer Science or Information Technology.
  • At least 4 years of information security experiences or IT audit.
  • Proven experience of developing, submitting IT audit, and compliance report to governing bodies, legal and/or external authorities.
  • Experience with common information security management frameworks, such as International Standards Organization (ISO) 27001, the IT
  • Infrastructure Library (ITIL) and Control Objectives for Information and Related Technology (COBIT) frameworks.
  • Proven experience in the implementation and monitoring of service performance KPIs, performance metrics, service standards and agreements.
  • Experience of implementing and managing PCI-DSS compliance.
  • Demonstrate experience of designing, developing and implementing information security policies within an overall Information Management strategy.
  • Effective interpersonal and communication skills, both written and verbal, and the ability to explain complex issues relating to information security at a variety of levels to technical and non-technical audiences.

What We Can Offer

Benefits

*Rewards for over performance

Highlights

  • An awesome company
  • Join a winning team
  • You can make a difference

Career Opportunities

  • Opportunities for promotion
  • Possibility for job training
  • Learn new skills and techniques