
Governance, Risk, and Compliance
2 days ago
Get AI-powered advice on this job and more exclusive features.
The GRC Lead will be responsible for responsible for initiating, running, and managing information security governance, risk management, audits, and compliance with SOX and other relevant regulations. Successful candidate is expected to plan, initiate, coordinate, and run the Governance, Risk, and Compliance activities, including running the information security awareness program, and producing the reports and presenting them to the management, coordinating the resolution of outstanding security and IT audit issues, and tracking the overall risk and audit points, to keep the company’s security risk at acceptable level.
This is an individual contributor position reporting to Senior Director, GIS.
Responsibilities:
- Develop, maintain, and enhance the Information Security Management System (ISMS) in alignment with ISO 27001 and other relevant security frameworks such as NIST CSF and CIS CSC.
- Lead and manage the organization’s SOX ITGC, ISO 27001, CIS CSC, and NIST CSF programs, ensuring compliance with regulatory requirements and industry best practices.
- Monitors compliance with the organization's security policies, standards and procedures among employees, contractors, and other third parties and drive the necessary corrective actions including running the relevant infosec awareness training program.
- Support and participate in the Enterprise Risk Management, SOX compliance, and personal data protection activities related to IT and information security – work closely with relevant departments and business units to develop the necessary policies and action plans.
- Lead and conduct regular information security risk assessment, vulnerability management and security review on IT assets and provision of exception/ exposure reporting and remediation plans to the Head of GIS, VP of Finance and the rest of Executive Leadership Team. Identify and communicate vulnerability and risk exposure to internal employees and key stakeholders, and senior management when deemed necessary.
- Review and ensure that new technology solutions and processes proposed comply with the Company’s security policies as well as relevant regulations. Provide security requirements for new initiatives. Where necessary, provide security requirements for new initiatives, perform and document gap analysis against such requirements.
- Lead and manage the GRC initiatives and work closely with key people with security responsibilities in different functions in the IT organization and business units. Where necessary, develop pragmatic security guidelines and operational documents, review and suggest changes to existing infosec related processes and procedures to improve the overall security posture of the enterprise.
Qualifications:
- Typically 10 years or more of experience in security governance, risk assessment, compliance, and audit; some experience in various security technology related administrations (e.g., FW, SIEM, IPS, VPN, DLP, End-point Security administrations), and IT/infosec operations will be advantageous.
- Solid information security knowledge on relevant security compliance requirements, frameworks, controls, and standards, such as ISO 27000 series, SOX, NIST CSF, and CIS CSC, and their application into manufacturing environment.
- Experience in leading and running SOX ITGC related activities, performing and leading IT audit and risk assessment, with proven track record in planning, coordinating and executing the processes and performing the assessments based on recognized standards and requirements.
- Demonstrated ability to work with people from various level of management, from operational and working level people to senior management level. Effective oral, written communication, and presentation skills.
- Experience in consulting or vendor environment would be an advantage.
- Working experience in global multi-national company with multicultural people, dealing with people from diverse cultural background and cross-border team across different time zones.
- Broad understanding of security strategy, technology and operations
- Able to work alone with minimum supervision/guidance.
- Bachelor’s degree from an accredited institution, with degree preferred in Computer Science or Information technology systems, cyber security, or related disciplines.
- CISSP, CISA, CRISC certifications or equivalent would be advantageous.
- Strong Emotional Intelligence with demonstrated sustained leadership in a large organization involving multiple stakeholders.
- Demonstrated management skills, e.g., budget development and administration, policy development and implementation, personnel administration, staff training and development.
Company Overview
Founded in 1951, Kulicke and Soffa Industries, Inc. (NASDAQ: KLIC) specialize in developing cutting-edge semiconductor and electronics assembly solutions enabling a smarter and more sustainable future. Ever-growing range of products and services supports growth and facilitates technology transitions across large-scale markets.
Please refer to the website for more details:
Kulicke & Soffa recruits on the basis of merit (such as skills, experience or ability to perform the job), regardless of age, race, gender, religion, marital status and family responsibilities, or disability.
Seniority level- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Semiconductor Manufacturing
Referrals increase your chances of interviewing at Kulicke & Soffa by 2x
Sign in to set job alerts for “Compliance Specialist” roles. Compliance Manager/Officer - Regulatory Advisory and Affairs Manager, Regulatory Monitoring and Testing Assistant Manager / Manager – Regulatory Compliance Manager/Senior Manager, Group Compliance Assistant Manager, Compliance (Corporate Functions) Senior Compliance Officer / Compliance Manager Financial Crime Compliance Specialist (FCC) Compliance Manager - ARRC Secretariat (AVP) Ethics & Compliance Specialist (Data Analytics)- SingaporeWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr-
Risk and Compliance Associate
4 days ago
Singapore CAPITAL GOVERNANCE (S) PTE. LTD. Full time**Capital Governance (S) Pte Ltd **is an advisory group which provides a comprehensive range of Governance, Risk Management and compliance (GRC) solutions aimed at assisting our clients in enhancing their overall GRC capabilities, one of the most critical areas of operations in an increasing complex business world. We are one of the most established GRC...
-
Assistant Director, Governance, Risk
1 week ago
Singapore EMPLOYMENT AND EMPLOYABILITY INSTITUTE PTE. LTD. Full timeThe e2i Assistant Director, Governance, Risk & Compliance (GRC) is key in operationalising and strengthening the organisation's GRC functions. This role reports to the Deputy Director and is responsible for fronting all audits, overseeing and reviewing the Enterprise Risk Management (ERM) framework, and providing secretariat support to the Audit & Risk...
-
Senior Specialist, Governance, Risk
7 days ago
Singapore EMPLOYMENT AND EMPLOYABILITY INSTITUTE PTE. LTD. Full timeThe e2i Senior Specialist, Governance, Risk & Compliance (GRC) is a seasoned individual contributor responsible for executing key GRC activities, with a particular focus on recommending follow up actions on Statement of Grant Claim (SOGC) audits, investigations into whistleblowing cases, and providing secretariat support to the Audit & Risk Committee (ARC)...
-
IT Governance, Risk, Compliance
1 week ago
Singapore Amsers Con Full time $90,000 - $120,000 per yearAbout the job IT Governance, Risk, Compliance Key Responsibilities Serve as the primary liaison between first line of defense and second/third lines for all matters related to IT risk, audit, and regulatory compliance Collaborate with risk and compliance teams to implement strategic initiatives that strengthen technology risk management and align...
-
Principal Specialist, Governance, Risk
7 days ago
Singapore EMPLOYMENT AND EMPLOYABILITY INSTITUTE PTE. LTD. Full time**Key Responsibilities**: **Expert GRC Advisory & Solution Development**: - Work with the Deputy Director and Assistant Director on developing, implementing, and enhancing advanced GRC policies, procedures, and controls, ensuring they are robust, efficient, and aligned with industry best practices and regulatory changes. - Design and implement GRC solutions...
-
Governance, Risk, and Compliance
4 weeks ago
Singapore Kulicke & Soffa Full timeGovernance, Risk, and Compliance (GRC) Lead Governance, Risk, and Compliance (GRC) Lead Get AI-powered advice on this job and more exclusive features. The GRC Lead will be responsible for responsible for initiating, running, and managing information security governance, risk management, audits, and compliance with SOX and other relevant regulations....
-
Governance, Risk and Compliance Specialist
2 weeks ago
Singapore TECH AALTO PTE. LTD. Full time**Job Title**:Governance, Risk and Compliance Specialist **Position Type**:Contract **Key Responsibilities**: - Develop, implement, and monitor IT governance, risk, and compliance frameworks to support organizational security objectives. - Conduct and manage audit activities, ensuring adherence to established cybersecurity and data security policies and...
-
Governance, Risk, and Compliance
4 weeks ago
Singapore Kulicke & Soffa Full timeGovernance, Risk, and Compliance (GRC) LeadGovernance, Risk, and Compliance (GRC) LeadGet AI-powered advice on this job and more exclusive features.The GRC Lead will be responsible for responsible for initiating, running, and managing information security governance, risk management, audits, and compliance with SOX and other relevant regulations. Successful...
-
Governance, Risk and Compliance Specialist
1 week ago
Singapore Unison Consulting Pte Ltd Full time**Job Summary**:As a Governance Risk and Compliance Specialist to join our team, this role is crucial in developing and maintaining a robust culture of technology and cybersecurity risk governance across our organization. **What we are looking for** At least 5 years relevant experience in ICT cybersecurity, data security, audit management, governance, risk...
-
Governance Risk Compliance Professional
2 weeks ago
Singapore beBeeGovernance Full time $90,000 - $120,000We are seeking a highly skilled Governance Risk Compliance Professional to join our organisation.The successful candidate will be responsible for operationalising and strengthening our GRC functions, fronting all audits, overseeing the Enterprise Risk Management (ERM) framework, and providing secretariat support to committees.This is a key role that requires...