GRC Specialist
Mô tả công việc
The Governance, Risk, and Compliance (GRC) Specialist will play a key role in strengthening our overall compliance posture by implementing, maintaining, and improving our internal governance frameworks. This role requires learning the local laws and regulations in addition to assessing business processes, managing risk registers, supporting both internal and external audits, and ensuring alignment with relevant compliance frameworks. The ideal candidate should have experience in IT governance, data privacy, and operational risk management, preferably within a technology or SaaS environment or consulting company in Vietnam.
Roles and Responsibilities
- Provide expert guidance on and interpretation of key Vietnamese regulations impacting our digital operations, including but not limited to Decree 53/2022/ND-CP and Law on Cybersecurity (Decree 13/2023/ND-CP), ensuring compliance with data privacy and security requirements.
- Keep track of relevant local laws and regulations related to technology, telecommunications, data localization, and cross-border data transfers.
- Develop and maintain a comprehensive risk register for all Vietnam operations, focusing on regulatory, operational, and reputational risks in alignment with ISO 27001 and other standards as required.
- Drive the implementation of effective internal controls across various departments to mitigate identified risks.
- Prepare and present periodic reports to senior management on compliance status, risk posture, and governance effectiveness.
- Collaborate closely with the HR team to monitor updates to Vietnamese labor laws and regulations (e.g., Labor Code 2019, regulations on social insurance, personal income tax, etc.).
- Proactively learn and understand business processes and Zoho’s products, including attending events for learning products, to ensure understanding of the impact of regulations and to provide contextually accurate regulatory guidance.
- Conduct internal audits for different offices as needed.
- Travel to corporate headquarters in India for training and collaboration.
Yêu cầu công việc
Requirements
- Bachelor’s degree in Law, Finance, Accounting, Information Technology, Business, or a relevant field of studies.
- Minimum of 3 years’ experience in governance, risk, or compliance within a technology or IT services industry.
- Good understanding of ISO 27001, ISO 27701 (Vietnam and/or regional privacy laws).
- Experience with risk assessment methodologies and compliance management tools.
- Strong analytical and documentation skills with high attention to detail.
- Excellent communication and interpersonal skills for engaging with cross-functional teams.
- Professional certifications such as ISO 27001 Lead Implementer/Auditor, CISA, CRISC or similar are an advantage.
- Fluency in English and Vietnamese is required for communicating with stakeholders.
Competencies
- Decisiveness: Able to provide clear compliance guidance, even in ambiguous regulatory situations.
- Analytical Thinking: Strong ability at analyzing complex legal texts and translating them into practical business requirements.
- Integrity: Demonstrates highest level of professionalism and ethical standards.
- Proactive Monitoring: Committed to continuously tracking new and emerging legislation.
Phân tích mức độ cạnh tranh
VietnamWorks AI
-
Bạn phù hợp bao nhiêu % cho vị trí này?
-
Bạn xếp hạng Top bao nhiêu so với những hồ sơ ứng tuyển?
-
Thị trường đang trả mức lương bao nhiêu cho vị trí tương tự?
-
Nhu cầu tuyển dụng cho vị trí này trên thị trường cao hay thấp?
Giá
29.000đ / lượt
Các phúc lợi dành cho bạn
Nghỉ phép có lương
Máy tính xách tay
Thông tin việc làm
02/12/2025
Nhân viên
Kế Toán/Kiểm Toán > Kiểm Toán
Security Information, GRC, Cyber Security Analysis, An Toàn Thông Tin, An Ninh Bảo Mật
Phần Mềm CNTT/Dịch vụ Phần mềm
Tiếng Anh
3
Người Việt Nam
Địa điểm làm việc
281 Nguyen Van Troi, Phu Nhuan District, Ho Chi Minh City, Vietnam
10F, 3 Bees Tower Building, 281 Nguyen Van Troi, Phu Nhuan Ward, Ho Chi Minh City, Vietnam
(Xem bản đồ)Nhận diện một số hình thức lừa đảo
Lừa đảo thu phí
Đưa ra lời mời làm việc dễ dàng bất thường, đãi ngộ cao, kèm theo yêu cầu nộp các loại phí.
Xem chi tiết

