Senior IT Governance (ISO 27001, PCI DSS)
- Thỏa thuận
- 3 năm kinh nghiệm
Hạn nộp hồ sơ: 01/11/2026 (Còn 48 ngày)
Ứng tuyển sớm để được ưu tiên
Kết nối với Nhà tuyển dụng để tìm hiểu thông tin và gia tăng cơ hội trúng tuyển
Nhà tuyển dụng đang online
Top 3 reasons to join us
Big chance to build Fintech system, large data
International & English environment
Apply new Tech-Stack, Technology and more
Job description
About Timo
Launched in 2015, Timo pioneered digital banking in Vietnam with a mission to make banking faster, simpler, and more accessible.
Today, as part of one of Southeast Asia's leading digital financial services platforms, Timo is building secure, scalable, and customer-first digital banking experiences for millions of users across Vietnam.
We are looking for curious minds and driven talents from fintech, digital banking, and technology companies who are excited to move fast, build meaningful products, and help shape the future of banking in Vietnam.
About the Role
We are looking for a Senior IT GRC to assist in driving a robust Governance, Risk, and Compliance framework across Timo and Kredivo Group.
In this role, you will operate at the intersection of security governance, risk mitigation, and regulatory alignment. You will be responsible for promoting our information security framework, ensuring all products, systems, and third-party partnerships meet the highest international and local security regulations. Working closely with Timo's IT, engineering, and business stakeholders, you will drive systemic security resilience, conduct critical audits, and establish continuous feedback loops to protect Timo's digital banking platform and its customers.
You will report to the Infosec Lead.
What You Will Do
Regulatory Compliance Management: Continuous monitoring and compliance maintenance with rigid Vietnamese Banking and Personal Data Protection regulations.
Audit & Assessment Coordination: Lead, coordinate, and respond to at least annual cycles of strict internal and external audits-including regulatory inspections and critical compliance assessments.
Governance & Policy Monitoring: Conducting regular policy compliance monitoring, internal control reviews, and governance structural updates across entities; continuously updating and refining internal policies, procedures, and standards to ensure strict regulatory compliance.
International Standards Maintenance: Prepare evidence and drive annual assessments to maintain the PCI DSS Level 1 Standard certification.
Identity & Access Governance: Leading the comprehensive User Access Review (UAR) program applications across internal and external core systems.
Third-Party Risk Management (TPRM): Conducting comprehensive risk assessments and mitigation plans for all vendors and third-party partners.
Security Culture: Driving and planning security awareness training across all business, technical units.
Why Join Us
Help defend and govern one of Vietnam's leading digital banks and the customers who trust it.
Work as part of Kredivo Group's regional security team (Vietnam, Indonesia, Singapore).
Hands-on GRC and security resilience work across a real, large-scale fintech environment.
Hybrid model: 4 days HCMC office, 1 day work from home.
Your skills and experience
What We Are Looking For
Experience
3+ years of hands-on experience directly related to IT Security Governance, Risk, and Compliance (GRC).
Proven track record of participating in or leading the implementation and assessment of international governance frameworks (PCI-DSS, ISO-27001).
Experience operating in highly regulated, production-scale environments (Fintech, Banking, or Digital Services).
Comfortable collaborating with cross-functional stakeholders, software engineers, and external third-party entities.
Skills & Expertise
Frameworks & Methodologies: Deep, practical knowledge of GRC frameworks, security audit methodologies.
Security Controls Familiarity: Strong fundamental knowledge of network security, IAM (Identity and Access Management), and enterprise security tools (Antivirus, Firewalls, SIEM, IDS/IPS, Cloud Security) to effectively review system configurations and access controls.
Vendor Risk Assessment: Strong capabilities in defining, evaluating, and managing third-party security baselines.
Professional Working English: Regular collaboration with Kredivo's regional Team and Timo's local teams.
Attributes
Highly Responsible & Proactive: You don't wait for compliance gaps to be found; you actively collaborate to strengthen defenses.
Pragmatic Communicator: You can translate complex security regulations and risk metrics into actionable steps for engineers and business leaders alike.
Analytical & Structured: Exceptional attention to detail when conducting system-access audits and reviewing security policies.
Bonus Points
Possession of professional security/auditing certifications: CRISC, CISA, CISM, CISSP, CGRC or equivalent.
Prior experience navigating SBV (State Bank of Vietnam) and MPS regulatory requirements for digital banking.
Experience in Cloud Environments and automated GRC workflows.
Why you'll love working here
Our deliverable is a leading software that is changing the way people do banking. You will be proud of your work and you will share with everybody that you helped to build Timo.
You'll be joining a team of experts who are technically savvy, creative, and who share the intention of reinventing banking in Vietnam. You work closely with international architects and front-end consultants, product managers, and designers to develop the system. You will learn a lot from them.
Company Benefits
Full benefits and salary during probation
Premium health care insurance
Competitive salary and learning culture
Other benefits as per stated in Vietnamese Labor Law
Big chance to build Fintech system, large data
International & English environment
Apply new Tech-Stack, Technology and more
Job description
About Timo
Launched in 2015, Timo pioneered digital banking in Vietnam with a mission to make banking faster, simpler, and more accessible.
Today, as part of one of Southeast Asia's leading digital financial services platforms, Timo is building secure, scalable, and customer-first digital banking experiences for millions of users across Vietnam.
We are looking for curious minds and driven talents from fintech, digital banking, and technology companies who are excited to move fast, build meaningful products, and help shape the future of banking in Vietnam.
About the Role
We are looking for a Senior IT GRC to assist in driving a robust Governance, Risk, and Compliance framework across Timo and Kredivo Group.
In this role, you will operate at the intersection of security governance, risk mitigation, and regulatory alignment. You will be responsible for promoting our information security framework, ensuring all products, systems, and third-party partnerships meet the highest international and local security regulations. Working closely with Timo's IT, engineering, and business stakeholders, you will drive systemic security resilience, conduct critical audits, and establish continuous feedback loops to protect Timo's digital banking platform and its customers.
You will report to the Infosec Lead.
What You Will Do
Regulatory Compliance Management: Continuous monitoring and compliance maintenance with rigid Vietnamese Banking and Personal Data Protection regulations.
Audit & Assessment Coordination: Lead, coordinate, and respond to at least annual cycles of strict internal and external audits-including regulatory inspections and critical compliance assessments.
Governance & Policy Monitoring: Conducting regular policy compliance monitoring, internal control reviews, and governance structural updates across entities; continuously updating and refining internal policies, procedures, and standards to ensure strict regulatory compliance.
International Standards Maintenance: Prepare evidence and drive annual assessments to maintain the PCI DSS Level 1 Standard certification.
Identity & Access Governance: Leading the comprehensive User Access Review (UAR) program applications across internal and external core systems.
Third-Party Risk Management (TPRM): Conducting comprehensive risk assessments and mitigation plans for all vendors and third-party partners.
Security Culture: Driving and planning security awareness training across all business, technical units.
Why Join Us
Help defend and govern one of Vietnam's leading digital banks and the customers who trust it.
Work as part of Kredivo Group's regional security team (Vietnam, Indonesia, Singapore).
Hands-on GRC and security resilience work across a real, large-scale fintech environment.
Hybrid model: 4 days HCMC office, 1 day work from home.
Your skills and experience
What We Are Looking For
Experience
3+ years of hands-on experience directly related to IT Security Governance, Risk, and Compliance (GRC).
Proven track record of participating in or leading the implementation and assessment of international governance frameworks (PCI-DSS, ISO-27001).
Experience operating in highly regulated, production-scale environments (Fintech, Banking, or Digital Services).
Comfortable collaborating with cross-functional stakeholders, software engineers, and external third-party entities.
Skills & Expertise
Frameworks & Methodologies: Deep, practical knowledge of GRC frameworks, security audit methodologies.
Security Controls Familiarity: Strong fundamental knowledge of network security, IAM (Identity and Access Management), and enterprise security tools (Antivirus, Firewalls, SIEM, IDS/IPS, Cloud Security) to effectively review system configurations and access controls.
Vendor Risk Assessment: Strong capabilities in defining, evaluating, and managing third-party security baselines.
Professional Working English: Regular collaboration with Kredivo's regional Team and Timo's local teams.
Attributes
Highly Responsible & Proactive: You don't wait for compliance gaps to be found; you actively collaborate to strengthen defenses.
Pragmatic Communicator: You can translate complex security regulations and risk metrics into actionable steps for engineers and business leaders alike.
Analytical & Structured: Exceptional attention to detail when conducting system-access audits and reviewing security policies.
Bonus Points
Possession of professional security/auditing certifications: CRISC, CISA, CISM, CISSP, CGRC or equivalent.
Prior experience navigating SBV (State Bank of Vietnam) and MPS regulatory requirements for digital banking.
Experience in Cloud Environments and automated GRC workflows.
Why you'll love working here
Our deliverable is a leading software that is changing the way people do banking. You will be proud of your work and you will share with everybody that you helped to build Timo.
You'll be joining a team of experts who are technically savvy, creative, and who share the intention of reinventing banking in Vietnam. You work closely with international architects and front-end consultants, product managers, and designers to develop the system. You will learn a lot from them.
Company Benefits
Full benefits and salary during probation
Premium health care insurance
Competitive salary and learning culture
Other benefits as per stated in Vietnamese Labor Law
Thông tin chung
- Thu nhập: Thỏa thuận
Việc làm tương tự khác
Công ty TNHH Bách Khang Việt Nam
Hồ Chí Minh, Hải Phòng, Hà Nam, Nghệ An, Quảng Ninh
Cạnh Tranh
CÔNG TY TNHH ONELAB
Hồ Chí Minh, Đồng Nai, Khánh Hòa
Thỏa Thuận
Công ty TNHH Thực phẩm An Phước
Bình Dương, Trà Vinh, Vĩnh Long
7 - 14 triệu VND
Công ty TNHH đầu tư và xây lắp FSC
Hồ Chí Minh
15 - 25 triệu VND + Phụ Cấp
CÔNG TY TNHH TƯ VẤN KỸ THUẬT APEX SOUTHERN CROSS
Hồ Chí Minh
Negotiable up to 40M
CÔNG TY TNHH PHONG THUỶ MỸ NGHỆ AN PHÁT
Hà Nội
10 - 12 triệu VND
CÔNG TY TNHH TƯ VẤN XÂY DỰNG ĐÔNG NAM
Trà Vinh, Vĩnh Long
10 - 15 triệu VND
Ngân hàng TMCP Việt Nam Thịnh Vượng - VPBank
Hà Nội, Đồng Tháp, Thanh Hóa
Thỏa Thuận
CÔNG TY CỔ PHẦN NHA KHOA DR. CARE
Hồ Chí Minh
Thỏa Thuận
Công ty Cổ Phần Timo Việt Nam - Ngân Hàng Số TIMO
Xem trang công ty- Địa chỉ công ty: 412 Nguyễn Thị Minh Khai, Phường 05, Quận 3, Thành phố Hồ Chí Minh
- Quy mô: Từ 101 - 500 nhân viên
- Lĩnh vực: Tư vấn/ Chăm sóc khách hàng, Ngân hàng/ Tài Chính
Thông tin công việc
Vị trí:
Hình thức làm việc:
Toàn thời gian
Việc làm tương tự
Trưởng Nhóm Kho Vật Tư Xây Dựng - Hà Nội/Hồ Chí Minh/Hà Tĩnh
Công ty Cổ phần Đầu tư và Thi công Hạ tầng VinAlpha
Hà Nội, Hồ Chí Minh, Hà Tĩnh
Thỏa thuận
Giám Sát Thi Công Cơ Điện MEP | Thu Nhập 18-25 Triệu | 3+ Năm Kinh Nghiệm
Công Ty Cổ Phần Đầu Tư Xây Dựng Vĩnh Thuận
Đồng Nai, Long An, Tiền Giang
18 - 25 triệu VND
Nhân Viên Sản Phẩm OIS | Vĩnh Phúc | Có Xe Đưa Đón Từ Hà Nội
CÔNG TY TNHH OPTRONTEC VINA
Hà Nội, Vĩnh Phúc
9 - 15 triệu VND
Cảnh báo dấu hiệu lừa đảo tuyển dụng
Đội ngũ hỗ trợ của JobOKO sẵn sàng đồng hành, tư vấn và giới thiệu những cơ hội việc làm phù hợp, giúp Ứng viên tự tin phát triển sự nghiệp và chinh phục mục tiêu nghề nghiệp bền vững.
Hotline CSKH
1900.63.63.84
Công ty Cổ phần JobOKO Toàn cầu
Đội ngũ hỗ trợ của JobOKO luôn chủ động tư vấn các giải pháp tuyển dụng tối ưu, cam kết đồng hành và hỗ trợ Quý Nhà tuyển dụng đạt được hiệu quả tuyển dụng bền vững.
Hotline CSKH
0962.107.888
Công ty Cổ phần JobOKO Toàn cầu