Regional Risk and Compliance Lead
Seoul, South Korea
Minimum qualifications:
- 8 years of experience in information security and compliance, consulting, and risk management.
- Experience with ISO 27k, SOC reports, PCI DSS, FedRAMP, or equivalent information security and privacy compliance certifications.
- Ability to communicate in Korean and English fluently to support client relationship management in this region.
Preferred qualifications:
- Certification in CISSP, CISA, CIPP, GIAC or related information security certifications.
- Experience translating compliance requirements into operational and technical control objectives.
- Experience working with leadership.
- Knowledge and understanding about cloud security compliance and infrastructure.
- Ability to drive complex programs across business and engineering teams with collaboration and leadership.
- Excellent communication skills with the ability to clearly articulate complex issues.
About the job
A problem isn’t truly solved until it’s solved for all. That’s why Googlers build products that help create opportunities for everyone, whether down the street or across the globe. As a Program Manager at Google, you’ll lead complex, multi-disciplinary projects from start to finish — working with stakeholders to plan requirements, manage project schedules, identify risks, and communicate clearly with cross-functional partners across the company. Your projects will often span offices, time zones, and hemispheres. It's your job to coordinate the players and keep them up to date on progress and deadlines.
Our goal is to build a Google that looks like the world around us — and we want Googlers to stay and grow when they join us. As part of our efforts to build a Google for everyone, we build diversity, equity, and inclusion into our work and we aim to cultivate a sense of belonging throughout the company.
Cybersecurity, operational resilience, data privacy, and regulatory compliance are key security topics for regulated Google Cloud customers as they migrate their services to the cloud. In this role, you will be a key player engaging with Google Cloud customers, partners, and their regulators directly leading risk based audits and addressing cybersecurity risks, operational resilience, and regulatory requirements with a primary focus on the Google common infrastructure, application services, and operating environment.
Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.
Responsibilities
- Lead cloud security risk, operational resilience, and regulatory compliance audit engagements requested by Google Cloud’s customers, their internal IT audit teams, assigned third-party auditors or regulators.
- Lead the regulatory intake process and perform regulatory compliance analysis and control mapping for the sub-regions under ownership. Build long-term, value added relationships with key leadership stakeholders to retain and enhance continuous trust in Google Cloud.
- Review and approve "in-scope" agreement commitments that materially impact Google's control environment, internal policies and procedures, and operational capabilities.
- Lead compliance assurance projects across the region. Create awareness and improve the culture of compliance focusing on accountability and transparency.
- Collaborate across Google engineering, data center operations, and other teams to prepare and execute audit engagements. Educate customers on Google Cloud’s ongoing compliance postures to meet business and regulatory requirements.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits CIPP CISA CISSP Cloud Compliance FedRAMP GCP GIAC ISO 27000 PCI DSS Privacy Risk management SOC
Perks/benefits: Career development Startup environment Transparency
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Officer jobs
- Open Information Security Specialist jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Cyber Security Engineer jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Cyber Security Architect jobs
- Open Cyber Security Specialist jobs
- Open Product Security Engineer jobs
- Open Manager Pentest H/F jobs
- Open Staff Security Engineer jobs
- Open Cybersecurity Analyst jobs
- Open Chief Information Security Officer jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Security Specialist jobs
- Open Senior Information Security Analyst jobs
- Open Senior Information Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Senior Penetration Tester jobs
- Open Consultant SOC / CERT H/F jobs
- Open IT Security Analyst jobs
- Open Sr. Security Engineer jobs
- Open Security Researcher jobs
- Open Security Operations Analyst jobs
- Open Cybersecurity Specialist jobs
- Open IT Security Engineer jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open ISO 27001-related jobs
- Open Agile-related jobs
- Open Application security-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open Analytics-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open SaaS-related jobs
- Open APIs-related jobs
- Open Security assessment-related jobs
- Open Malware-related jobs
- Open Forensics-related jobs
- Open Java-related jobs
- Open DevOps-related jobs
- Open Security Clearance-related jobs
- Open CEH-related jobs
- Open IDS-related jobs
- Open EDR-related jobs
- Open Kubernetes-related jobs