Job Description
We are seeking suitably qualified high performers to join our Digital Risk service lines. You will be involved in providing technology risk assurance services to our portfolio of international and local clients. You will be responsible for the execution of the Crowe approach during the audit fieldwork. In addition, you also could provide a variety of non-assurance (advisory) services to our clients.
Work you will do
- Assist in creating and implementing IT governance policies aligned with industry standards.
- Identify, analyze, and help mitigate IT risks to protect organizational assets.
- Assist in internal and external audits to ensure adherence to PBI and POJK regulations.
- Track IT compliance with policies and regulatory requirements and assist in reporting findings.
- Maintain accurate records of GRC activities, including risk assessments and audit results.
- Stay informed on changes in PBI, POJK, and other relevant regulations, updating practices as needed.
- Participate in client projects, providing GRC-related consultancy and support during engagements.
- Develop knowledge in frameworks like COBIT, ISO 27001, and ITIL, applying them to enhance governance and compliance.
Qualifications
- 0-2 years of experience in IT, cybersecurity, risk management, or a related field. Internships or relevant academic projects are beneficial.
- Bachelor's degree in information technology, Information Systems, Cybersecurity, Risk Management, or a related field.
- Basic understanding of IT governance frameworks such as COBIT, ISO 27001, or ITIL.
- Familiarity with risk management principles and compliance standards.
- Basic knowledge of regulations like PBI (Peraturan Bank Indonesia) and POJK (Peraturan Otoritas Jasa Keuangan) is a plus.
- Strong analytical and problem-solving skills, with the ability to identify risks and propose mitigation strategies.
- Excellent verbal and written communication skills, with the ability to convey complex information clearly and effectively.
- Ability to work effectively in a team environment, collaborating with different departments and clients.
- Willingness to learn and adapt to new regulations, frameworks, and technologies as needed.
- High attention to detail, especially in documentation, reporting, and compliance-related tasks.
- Proactive attitude, integrity, and a strong commitment to professional growth in the IT GRC field.