Regional Risk and Compliance Lead

Seoul, South Korea

Google

Google’s mission is to organize the world's information and make it universally accessible and useful.

View company page


Minimum qualifications:

  • 8 years of experience in information security and compliance, consulting, and risk management.
  • Experience with ISO 27k, SOC reports, PCI DSS, FedRAMP, or equivalent information security and privacy compliance certifications.
  • Ability to communicate in Korean and English fluently to support client relationship management in this region.

Preferred qualifications:

  • Certification in CISSP, CISA, CIPP, GIAC or related information security certifications.
  • Experience translating compliance requirements into operational and technical control objectives.
  • Experience working with leadership.
  • Knowledge and understanding about cloud security compliance and infrastructure.
  • Ability to drive complex programs across business and engineering teams with collaboration and leadership.
  • Excellent communication skills with the ability to clearly articulate complex issues.

About the job

A problem isn’t truly solved until it’s solved for all. That’s why Googlers build products that help create opportunities for everyone, whether down the street or across the globe. As a Program Manager at Google, you’ll lead complex, multi-disciplinary projects from start to finish — working with stakeholders to plan requirements, manage project schedules, identify risks, and communicate clearly with cross-functional partners across the company. Your projects will often span offices, time zones, and hemispheres. It's your job to coordinate the players and keep them up to date on progress and deadlines.

Our goal is to build a Google that looks like the world around us — and we want Googlers to stay and grow when they join us. As part of our efforts to build a Google for everyone, we build diversity, equity, and inclusion into our work and we aim to cultivate a sense of belonging throughout the company.

Cybersecurity, operational resilience, data privacy, and regulatory compliance are key security topics for regulated Google Cloud customers as they migrate their services to the cloud. In this role, you will be a key player engaging with Google Cloud customers, partners, and their regulators directly leading risk based audits and addressing cybersecurity risks, operational resilience, and regulatory requirements with a primary focus on the Google common infrastructure, application services, and operating environment.

Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.

Responsibilities

  • Lead cloud security risk, operational resilience, and regulatory compliance audit engagements requested by Google Cloud’s customers, their internal IT audit teams, assigned third-party auditors or regulators.
  • Lead the regulatory intake process and perform regulatory compliance analysis and control mapping for the sub-regions under ownership. Build long-term, value added relationships with key leadership stakeholders to retain and enhance continuous trust in Google Cloud.
  • Review and approve "in-scope" agreement commitments that materially impact Google's control environment, internal policies and procedures, and operational capabilities.
  • Lead compliance assurance projects across the region. Create awareness and improve the culture of compliance focusing on accountability and transparency.
  • Collaborate across Google engineering, data center operations, and other teams to prepare and execute audit engagements. Educate customers on Google Cloud’s ongoing compliance postures to meet business and regulatory requirements.
Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Audits CIPP CISA CISSP Cloud Compliance FedRAMP GCP GIAC ISO 27000 PCI DSS Privacy Risk management SOC

Perks/benefits: Career development Startup environment Transparency

Region: Asia/Pacific
Country: South Korea
Job stats:  4  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.