Specialist, Security Governance Consultant

2 weeks ago


Bangkok, Bangkok, Thailand True Corporation Public Company Limited Full time ฿1,200,000 - ฿4,800,000 per year

Job Summary:

We are seeking a highly motivated and experienced Security Governance Consultant to play a crucial role in establishing and maintaining a robust information security. The ideal candidate will be responsible for developing, implementing, and continuously improving policies, standards, processes, and security controls to safeguard the organization's information assets. This role requires a strong understanding of relevant international standards (e.g., ISO 27001, NIST-CSF and PCI-DSS), local regulations (PDPA, SEC and other applicable laws), and industry best practices.

Principal Accountabilities:

  • Consultation: Provide professional cybersecurity consultation and implementation support to clients based on industry standards and frameworks (e.g., ISO/IEC 27001, NIST-CSF, PCI-DSS, PDPA) by conducting a gap assessments, risk assessments, and internal audits to identify control weaknesses and provide actionable recommendations to assist clients in preparing for certification audit.
  • Framework Development & Implementation: Develop, implement, and maintain comprehensive information security policies, standards, procedures, and security controls aligned with ISO/IEC 27001, NIST-CSF, PCI DSS, PDPA, relevant regulations, and legal requirements. Support the internal governance, risk, and compliance (GRC) functions, ensuring the organization meets its cybersecurity and regulatory obligations.
  • Risk Management & Assessment: Perform comprehensive Information Security risk management to identify, analyze, and evaluate potential threats and vulnerabilities as well as suggest an appropriate security measure to control the risk by creating a risk treatment plan.
  • Policy development: Provide professional consultation on information security policies and procedure development to ensure adherence to standards, best practice and regulatory obligations.
  • Auditing: Provide professional auditing services to clients based on industry standards and frameworks (e.g., SEC regulations, ISO/IEC 27001, NIST-CSF). Develop the audit plan, execute the audit session, and summarize the audit report.
  • Security Awareness & Training: Develop and deliver engaging information security awareness programs for clients including, instructor-led training, phishing simulation and learning platform management.
  • Cybersecurity exercise: Develop, facilitate and deliver the cyber security exercise to client (e.g., Tabletop exercise)
  • Knowledge & Skill Advancement: Continuously update knowledge of emerging vulnerabilities, threats, security technologies, and evolving regulatory landscapes to ensure the organization's security posture remains current and effective.
  • Collaboration & Communication: Effectively communicate security and governance requirements, risks, and recommendations to technical and non-technical stakeholders at various levels within the organization, including senior management.

Qualifications:

  • Bachelor's degree in Computer Science, Computer Engineering, Information Technology, or a related field.
  • Proven experience in information security governance and risk management, threat modeling, secure solution design, and/or penetration testing.
  • Hold relevant professional certifications such as CISSP, CISM, CISA, CRISC, ISO/IEC 27001 Lead Implementer or Lead auditor are advantageous.
  • In-depth knowledge of Thailand's information security and data privacy regulations (PDPA, Cybersecurity Act, SEC regulation) and relevant international security standards (ISO 27001, PCI- DSS, NIST-CSF) with demonstrable experience in their implementation and audit.
  • Strong understanding and practical experience in information security governance frameworks, risk management methodologies, threat modeling techniques, and secure solution design principles.
  • Exceptional interpersonal and communication skills with the ability to effectively interact and build relationships with individuals at all levels of the organization (from end-users to executives).
  • Strong analytical, logical, and systematic approach to problem-solving, decision-making and documentation skills.
  • Familiarity with security tools and technologies used for risk management.
  • Good command on both English and Thai

Working Location: True Digital Park



  • Bangkok, Bangkok, Thailand Synphaet Co., Ltd. Full time ฿900,000 - ฿1,200,000 per year

    Responsibilities:Develop and implement IT governance and security frameworks (e.g., ISO 27001, NIST, COBIT).Assess and audit IT security standards for systems such as HIS, EMR, PACS, IoT, and cloud-based services.Investigate and analyze security incidents and ensure proper incident response and documentation.Ensure data security and compliance with relevant...

  • Data Governance

    5 days ago


    Bangkok, Bangkok, Thailand บริษัท แอสเซนด์ กรุ๊ป จำกัด Full time

    Job Summary: The Data Governance & Security Specialist (Data Engineering Focus)is a key individual contributor primarily responsible for operationalizing and monitoring datagovernance and data security frameworks across Amaze. This role ensures thecompany's data assets are secure, private, and compliant with PDPA regulations andinternal standards, through...


  • Bangkok, Bangkok, Thailand PS-Engage Global Government Relations Full time

    Company DescriptionPS-Engage Global Government Relations focuses on helping organizations establish and nurture relationships with regulators, positively impact communities, and develop strategic partnerships to enhance their core business activities. The company primarily assists large multinationals operating in Southeast Asia.Role DescriptionThis is a...


  • Bangkok, Bangkok, Thailand our Client Full time

    The Role: As a Cloud Security Consultant, you will be helping enterprise customers and partners design, implement, and operationalize secure cloud environments that meet stringent risk and compliance requirements. You will serve as a trusted security advisor throughout the client's cloud adoption journey — from strategy and design to deployment and...


  • Bangkok, Bangkok, Thailand Monroe Recruitment Consulting Group Co., Ltd. Full time

    Salary: AttractiveAdditional Benefits: AttractiveCompany ProfileAward-winning executive recruitment company, Monroe Consulting Group, is recruiting on behalf of a leading cybersecurity consulting and services firm. Our esteemed client specializes in providing comprehensive security assessment and advisory services, including penetration testing,...


  • Bangkok, Bangkok, Thailand Monroe Recruitment Consulting Group Co., Ltd. Full time

    Salary: AttractiveAdditional Benefits: AttractiveCompany ProfileAward-winning executive recruitment company, Monroe Consulting Group, is recruiting on behalf of a cutting-edge cybersecurity consultancy known for its elite offensive security team and its work on complex, high-stakes engagements. Join a high-impact security group where you'll lead offensive...


  • Bangkok, Bangkok, Thailand Tata Consultancy Services (Thailand) Limited Full time ฿600,000 - ฿1,200,000 per year

    Key Responsibilities• Lead and support the end-to-end Identity Governance and Administration (IGA)implementation lifecycle, including requirements gathering, design, configuration, testing, and deployment.• Conduct current state assessment of existing IAM/IGA processes across subsidiaries and design a target operating model.• Configure and integrate...


  • Bangkok, Bangkok, Thailand Coda Full time

    Why CodaCoda is a global growth engine for commerce. We bring together powerful capabilities that connect people, digital products, and payments through our suite of trusted digital monetization and distribution solutions.We recently acquired Recharge, Europe's leading prepaid payments and digital gift card business, bringing both companies together into one...


  • Bangkok, Bangkok, Thailand Exclusive Networks Full time ฿1,200,000 - ฿2,400,000 per year

    Solutions Consultant / Pre-Sales SupportBangkokFull timeExclusive Networks (EXN) is a global cybersecurity specialist that provides partners and end-customers with a wide range of services and product portfolios via proven routes to market. With offices in over 45 countries and the ability to serve customers in over 170 countries, we combine a local...


  • Bangkok, Bangkok, Thailand ttb bank Full time $50,000 - $120,000 per year

    Job descriptionDesign and lead infrastructure architecture for virtualization, storage, cloud, and backup systems. Manage high-level implementation and guide cross-functional project teamsDeliver architecture designs, cloud migration strategies, and DR planning. Review technical standards and policiesEvaluate and introduce new platforms, tools, and...