About Our Client
Our client is a fast-growing international technology group specializing in AI, cloud, and multimedia innovation, serving millions of users and enterprise customers across Asia and beyond. With operations spanning multiple countries, they are committed to building scalable, secure, and future-ready digital solutions.
Job Description
- Lead and enhance the company's ISMS and PIMS, ensuring compliance with ISO 27001 / 27701 and global privacy laws (GDPR, PDPA).
- Manage audits, third-party assessments, and enterprise-wide risk mitigation plans.
- Conduct Business Impact Analysis (BIA) and Privacy Impact Assessments (PIA).
- Develop and enforce information security and privacy policies and procedures.
- Partner with engineering, product, and business leaders to implement effective controls.
- Design and deliver training, simulations, and incident-response exercises.
- Provide leadership to the security team, setting objectives and driving performance.
The Successful Applicant
5+ years in information security, privacy, or compliance, with 2+ years in leadership.ISO 27001 Lead Auditor / Implementer and ISO 27701 certification (or equivalent).Solid knowledge of ISMS, PIMS, GDPR, PDPA, and international compliance frameworks.Experience leading audits, risk assessments, and policy frameworks.Excellent communication and leadership skills across global teams.Nice-to-have : consulting background (Big Four), SaaS / cloud industry experience, CISM / CISA / CISSP certifications, or cloud platform expertise (AWS, Azure, GCP).