Country Information Security Lead
Jakarta, Indonesia
Ninja Van is a tech-enabled logistics company on a mission to provide hassle-free delivery services for businesses of all sizes across Southeast Asia. Launched in 2014, we started operations in Singapore and have become the region's largest and fastest growing last-mile logistics company, partnering with over 35,000 merchants and delivering more than 1,000 parcels every minute across six countries.
At our core, we are a technology company that is disrupting a massive industry with cutting-edge software and operational concepts. Powered by algorithm-based optimisation, dynamic routing, end-to-end tracking and a data-driven approach, we provide best-of-class delivery services that delight both the shippers and end customers. But we are just getting started! We have much room for improvement and many ideas that will further shape the industry.
You will be responsible for setting up our location information security capabilities, while advising the country management on information security issues.
At our core, we are a technology company that is disrupting a massive industry with cutting-edge software and operational concepts. Powered by algorithm-based optimisation, dynamic routing, end-to-end tracking and a data-driven approach, we provide best-of-class delivery services that delight both the shippers and end customers. But we are just getting started! We have much room for improvement and many ideas that will further shape the industry.
You will be responsible for setting up our location information security capabilities, while advising the country management on information security issues.
Roles and responsibilities
- Program Delivery, Manage delivery of Group Information Security tools and capabilities locally, Support CISO in managing the delivery of global programs, KPIs and KRIs
- Training and Incident Response, Run local security training programs, Communicate and ensure implementation of group IS policies, procedures and processes locally. Adapt security procedures as per local needs where required, Qualify local Security Incidents and co-ordinate incident response with Group ISLead and/or participate in post Incident Reviews
- Compliance, Support local business in Security Architecture decisions by working in liaison with Group Information Security, Manage resolution of vulnerabilities or issues detected in local IT/Tech Infrastructure, Reduce the information security risk by identifying the root cause and working with local/group stakeholders to take corrective actions, Support Local Team with questions related to regulatory compliance and IT/InfoSec audits.
Qualifications/Experience
- Bachelors in Information Security / STEM (science, technology, engineering and mathematics) degree
- At least 6+ years of experience in IT/Information Security
- Experience in leading IT security, attestation and assurance audits globally
- Professional security related qualification (e.g. CISM, CISA, CRISC.) will be favorable although not mandatory
- Local Language skills
Knowledge & Technical skills
- Knowledge of attestation standards (SOC 1. SOC 2, IT SOX etc.)
- Knowledge of ISO 27001, NIST CSF
- Excellent written and verbal communication skills and ability to escalate timely to management.
- High degree of attention to detail and discipline in tracking and managing the closure of identified vulnerabilities and issues arising from audit
- Effective influencing and negotiating skills and demonstrated sensitivity to working and interacting with senior stakeholders
- Ability to work independently
Job region:
Asia/Pacific
Job country:
Indonesia
Job stats:
4
0
0
Other jobs like this
Explore more Cyber Security career opportunities
Find open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Analysis, Cryptography, Digital Forensics and Cybersecurity in general, filtered by job title or popular skill, toolset and products used.
- Open Cyber Security Engineer jobs
- Open Staff Application Security Engineer jobs
- Open Penetration Tester jobs
- Open Senior DevSecOps Engineer jobs
- Open Application Security Engineer/Architect jobs
- Open Senior Security Operations Engineer jobs
- Open Cyber Threat Intelligence Analyst jobs
- Open Head of Information Security jobs
- Open Senior Information Security Engineer jobs
- Open Lead Security Engineer jobs
- Open Staff Security Engineer jobs
- Open SOC Analyst jobs
- Open Cyber Security Analyst jobs
- Open Information System Security Officer (ISSO) jobs
- Open Cybersecurity Engineer jobs
- Open Senior Penetration Tester jobs
- Open Sr. Security Engineer jobs
- Open Senior Threat Intelligence Analyst jobs
- Open Cloud Security Automation Specialist jobs
- Open Offensive Security Engineer jobs
- Open Information Security Officer jobs
- Open Azure Security Engineer jobs
- Open Senior Information Security Analyst jobs
- Open Cloud Security Operations Lead jobs
- Open Cybersecurity Analyst jobs
- Open DevOps-related jobs
- Open Application security-related jobs
- Open Analytics-related jobs
- Open Audits-related jobs
- Open PCI-related jobs
- Open OWASP-related jobs
- Open Threat intelligence-related jobs
- Open Clearance-related jobs
- Open Security assessments-related jobs
- Open IDS-related jobs
- Open Forensics-related jobs
- Open JavaScript-related jobs
- Open Splunk-related jobs
- Open Ruby-related jobs
- Open Encryption-related jobs
- Open CEH-related jobs
- Open CISM-related jobs
- Open GDPR-related jobs
- Open Agile-related jobs
- Open Threat detection-related jobs
- Open Open Source-related jobs
- Open OSCP-related jobs
- Open Intrusion detection-related jobs
- Open DevSecOps-related jobs
- Open Machine Learning-related jobs