Specialist, Security Governance Consultant
2 weeks ago
Job Summary:
We are seeking a highly motivated and experienced Security Governance Consultant to play a crucial role in establishing and maintaining a robust information security. The ideal candidate will be responsible for developing, implementing, and continuously improving policies, standards, processes, and security controls to safeguard the organization's information assets. This role requires a strong understanding of relevant international standards (e.g., ISO 27001, NIST-CSF and PCI-DSS), local regulations (PDPA, SEC and other applicable laws), and industry best practices.
Principal Accountabilities:
- Consultation: Provide professional cybersecurity consultation and implementation support to clients based on industry standards and frameworks (e.g., ISO/IEC 27001, NIST-CSF, PCI-DSS, PDPA) by conducting a gap assessments, risk assessments, and internal audits to identify control weaknesses and provide actionable recommendations to assist clients in preparing for certification audit.
- Framework Development & Implementation: Develop, implement, and maintain comprehensive information security policies, standards, procedures, and security controls aligned with ISO/IEC 27001, NIST-CSF, PCI DSS, PDPA, relevant regulations, and legal requirements. Support the internal governance, risk, and compliance (GRC) functions, ensuring the organization meets its cybersecurity and regulatory obligations.
- Risk Management & Assessment: Perform comprehensive Information Security risk management to identify, analyze, and evaluate potential threats and vulnerabilities as well as suggest an appropriate security measure to control the risk by creating a risk treatment plan.
- Policy development: Provide professional consultation on information security policies and procedure development to ensure adherence to standards, best practice and regulatory obligations.
- Auditing: Provide professional auditing services to clients based on industry standards and frameworks (e.g., SEC regulations, ISO/IEC 27001, NIST-CSF). Develop the audit plan, execute the audit session, and summarize the audit report.
- Security Awareness & Training: Develop and deliver engaging information security awareness programs for clients including, instructor-led training, phishing simulation and learning platform management.
- Cybersecurity exercise: Develop, facilitate and deliver the cyber security exercise to client (e.g., Tabletop exercise)
- Knowledge & Skill Advancement: Continuously update knowledge of emerging vulnerabilities, threats, security technologies, and evolving regulatory landscapes to ensure the organization's security posture remains current and effective.
- Collaboration & Communication: Effectively communicate security and governance requirements, risks, and recommendations to technical and non-technical stakeholders at various levels within the organization, including senior management.
Qualifications:
- Bachelor's degree in Computer Science, Computer Engineering, Information Technology, or a related field.
- Proven experience in information security governance and risk management, threat modeling, secure solution design, and/or penetration testing.
- Hold relevant professional certifications such as CISSP, CISM, CISA, CRISC, ISO/IEC 27001 Lead Implementer or Lead auditor are advantageous.
- In-depth knowledge of Thailand's information security and data privacy regulations (PDPA, Cybersecurity Act, SEC regulation) and relevant international security standards (ISO 27001, PCI- DSS, NIST-CSF) with demonstrable experience in their implementation and audit.
- Strong understanding and practical experience in information security governance frameworks, risk management methodologies, threat modeling techniques, and secure solution design principles.
- Exceptional interpersonal and communication skills with the ability to effectively interact and build relationships with individuals at all levels of the organization (from end-users to executives).
- Strong analytical, logical, and systematic approach to problem-solving, decision-making and documentation skills.
- Familiarity with security tools and technologies used for risk management.
- Good command on both English and Thai
Working Location: True Digital Park
-
Security and IT Governance Specialist
7 days ago
Bangkok, Bangkok, Thailand Synphaet Co., Ltd. Full time ฿900,000 - ฿1,200,000 per yearResponsibilities:Develop and implement IT governance and security frameworks (e.g., ISO 27001, NIST, COBIT).Assess and audit IT security standards for systems such as HIS, EMR, PACS, IoT, and cloud-based services.Investigate and analyze security incidents and ensure proper incident response and documentation.Ensure data security and compliance with relevant...
-
Data Governance
5 days ago
Bangkok, Bangkok, Thailand บริษัท แอสเซนด์ กรุ๊ป จำกัด Full timeJob Summary: The Data Governance & Security Specialist (Data Engineering Focus)is a key individual contributor primarily responsible for operationalizing and monitoring datagovernance and data security frameworks across Amaze. This role ensures thecompany's data assets are secure, private, and compliant with PDPA regulations andinternal standards, through...
-
Government Affairs Consultant
3 days ago
Bangkok, Bangkok, Thailand PS-Engage Global Government Relations Full timeCompany DescriptionPS-Engage Global Government Relations focuses on helping organizations establish and nurture relationships with regulators, positively impact communities, and develop strategic partnerships to enhance their core business activities. The company primarily assists large multinationals operating in Southeast Asia.Role DescriptionThis is a...
-
Cloud Security Consultant
5 days ago
Bangkok, Bangkok, Thailand our Client Full timeThe Role: As a Cloud Security Consultant, you will be helping enterprise customers and partners design, implement, and operationalize secure cloud environments that meet stringent risk and compliance requirements. You will serve as a trusted security advisor throughout the client's cloud adoption journey — from strategy and design to deployment and...
-
Senior Security Consultant
5 days ago
Bangkok, Bangkok, Thailand Monroe Recruitment Consulting Group Co., Ltd. Full timeSalary: AttractiveAdditional Benefits: AttractiveCompany ProfileAward-winning executive recruitment company, Monroe Consulting Group, is recruiting on behalf of a leading cybersecurity consulting and services firm. Our esteemed client specializes in providing comprehensive security assessment and advisory services, including penetration testing,...
-
Senior Security Consultant
5 days ago
Bangkok, Bangkok, Thailand Monroe Recruitment Consulting Group Co., Ltd. Full timeSalary: AttractiveAdditional Benefits: AttractiveCompany ProfileAward-winning executive recruitment company, Monroe Consulting Group, is recruiting on behalf of a cutting-edge cybersecurity consultancy known for its elite offensive security team and its work on complex, high-stakes engagements. Join a high-impact security group where you'll lead offensive...
-
Identity Governance and Administration
2 weeks ago
Bangkok, Bangkok, Thailand Tata Consultancy Services (Thailand) Limited Full time ฿600,000 - ฿1,200,000 per yearKey Responsibilities• Lead and support the end-to-end Identity Governance and Administration (IGA)implementation lifecycle, including requirements gathering, design, configuration, testing, and deployment.• Conduct current state assessment of existing IAM/IGA processes across subsidiaries and design a target operating model.• Configure and integrate...
-
Security Specialist
1 day ago
Bangkok, Bangkok, Thailand Coda Full timeWhy CodaCoda is a global growth engine for commerce. We bring together powerful capabilities that connect people, digital products, and payments through our suite of trusted digital monetization and distribution solutions.We recently acquired Recharge, Europe's leading prepaid payments and digital gift card business, bringing both companies together into one...
-
Solutions Consultant
7 days ago
Bangkok, Bangkok, Thailand Exclusive Networks Full time ฿1,200,000 - ฿2,400,000 per yearSolutions Consultant / Pre-Sales SupportBangkokFull timeExclusive Networks (EXN) is a global cybersecurity specialist that provides partners and end-customers with a wide range of services and product portfolios via proven routes to market. With offices in over 45 countries and the ability to serve customers in over 170 countries, we combine a local...
-
Virtualization Specialist
2 weeks ago
Bangkok, Bangkok, Thailand ttb bank Full time $50,000 - $120,000 per yearJob descriptionDesign and lead infrastructure architecture for virtualization, storage, cloud, and backup systems. Manage high-level implementation and guide cross-functional project teamsDeliver architecture designs, cloud migration strategies, and DR planning. Review technical standards and policiesEvaluate and introduce new platforms, tools, and...