Search by job, company or skills

Specialist, IT Governance & Compliance

  • Posted 10 hours ago
  • Be among the first 10 applicants

Job Description

Life at U Mobile

We are Passionate, Innovative, Trustworthy, Team-Oriented & Fun-Loving.

At U Mobile, we are always on the lookout for great talents and passionate individuals to join our growing team.

Let's start your journey with an award-winning organization!

#UnbeatableCareerAwaits

Top Reasons To Join Us!

  • Awarded For
  • Most Preferred Employers in Telecommunication Industry (2022, 2023 & 2024)
  • Bronze Winner in Cross-Generational Workforce Engagement (2024)
  • Gold Winner for Excellence in Workplace Culture (2021)
  • Comprehensive medical, dental, optical and insurance benefits
  • Flexi working hours arrangements
  • Staff Line & Device Subsidy
  • Smart Casual Attire
  • Child Parental Care Leave
  • Convenient location with access to public transport (Imbi Monorail/Bukit Bintang MRT)
  • Special employee discounts for selected F&B Brands

Job Summary

Lead IT governance, risk, and compliance initiatives to ensure effective controls, regulatory compliance, risk management, and alignment with industry standards across the organisation.

The Day-to-Day Activities

  • Develop, implement, and maintain IT governance frameworks, policies, and procedures.
  • Ensure compliance with internal policies, regulatory requirements, and relevant industry standards, including GDPR, PDPA, ISO 27001, NIST, and PCI-DSS.
  • Lead IT risk assessments and audits, identify control gaps, and oversee remediation actions.
  • Work with internal stakeholders to embed IT controls into business processes and support incident response and business continuity planning.
  • Monitor compliance metrics and risk indicators, and provide regular reports to senior management.
  • Manage third-party risk assessments and vendor compliance reviews while staying updated on regulatory changes and emerging IT risks.

About You

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field.
  • At least 7 years of experience in IT governance, risk management, or compliance, preferably within a regulated industry.
  • Strong knowledge of IT governance frameworks, regulatory standards, audit processes, and GRC platforms.
  • Professional certification such as CISA, CISM, CRISC, or ISO 27001 Lead Implementer/Auditor.
  • Familiarity with cloud compliance across AWS, Azure, or GCP; project management experience or PMP certification is an advantage.
  • Strong communication, leadership, and stakeholder management skills.

Spoken Language: Malay, English

Written Language: Malay, English

What's Next Once you have applied online, our team will review your application and due to a high volume of applications, only shortlisted candidates will be notified.

More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 152976769

Similar Jobs

Malaysia, Kuala Lumpur

Skills:

Engineering and construction practicesProject managementHSES procedures

Malaysia, Kuala Lumpur

Skills:

Financial Modelling Analytics and Planning ToolsMacro and Micro Economics KnowledgeAccounting Standards FRS MFRSProject Management PrinciplesFinancial and Accounting Expert KnowledgeEnd-to-end Finance ProcessesFinancial PlanningIndustry Best Practices on Cost Control InitiativesCommercial Business AcumenCost Management FrameworkBanking Products Operations and Environment

Malaysia, Kuala Lumpur

Skills:

project managementworkflow automationoperational data dashboardsprocess improvementperformance reports

Malaysia, Kuala Lumpur

Skills:

Contract Administrationproject managementtechnical reportinghydro mechanical equipmenthydroelectric power plant operationsdam safetySCADA and control systemsenvironmental compliancebalance-of-plant systemsperformance optimizationwater resource managementmaintenanceengineering standardscodes and regulatory requirementsengineering analysishydraulic structuresroot cause investigationturbine-generator systems

Malaysia, Kuala Lumpur

Skills:

control testing business impact analysis CismRCSARecovery time objectivesRMITRegulatory SubmissionsDisaster recovery strategiesBCP testingCompliance issuesISO2700Cybersecurity threatsCobitCisspCRISCRisk assessmentsCisaSimulation exercisesRecovery point objectivesData breachesPCI-DSSSystem failuresnistCrisis management exercises

Beware of Scammers

We don’t charge money for job offers