Routiqo

Specialist, IT Governance & Compliance

U Mobile

  • Malaysia
  • Full-time

Job Summary

Lead IT governance, risk, and compliance initiatives to ensure effective controls, regulatory compliance, risk management, and alignment with industry standards across the organisation.

The Day-to-Day Activities

  • Develop, implement, and maintain IT governance frameworks, policies, and procedures.
  • Ensure compliance with internal policies, regulatory requirements, and relevant industry standards, including GDPR, PDPA, ISO 27001, NIST, and PCI-DSS.
  • Lead IT risk assessments and audits, identify control gaps, and oversee remediation actions.
  • Work with internal stakeholders to embed IT controls into business processes and support incident response and business continuity planning.
  • Monitor compliance metrics and risk indicators, and provide regular reports to senior management.
  • Manage third-party risk assessments and vendor compliance reviews while staying updated on regulatory changes and emerging IT risks.

About You

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field.
  • At least 7 years of experience in IT governance, risk management, or compliance, preferably within a regulated industry.
  • Strong knowledge of IT governance frameworks, regulatory standards, audit processes, and GRC platforms.
  • Professional certification such as CISA, CISM, CRISC, or ISO 27001 Lead Implementer/Auditor.
  • Familiarity with cloud compliance across AWS, Azure, or GCP; project management experience or PMP certification is an advantage.
  • Strong communication, leadership, and stakeholder management skills.

Skills

  • AWS
  • Azure
  • Communication
  • Financial reporting
  • Gcp
  • Leadership
  • Project Management
  • Risk assessment
  • Stakeholder management