IT Compliance & Cybersecurity Analyst, Financial Service (2027 Graduate)
The Compliance and Risk Management team ensures that Shopee complies with applicable regulations and is primed for success with the right checks and balances while safeguarding the interests of our stakeholders in an inclusive and sustainable digital ecosystem. The team manages potential risks to the company's operations and reputation through risk assessments, internal fraud control, employee training as well as the implementation of information technology policy and cyber security tools.
About the Team:
Shopee will be prioritizing applicants who have a current right to work in Singapore, and do not require Shopee sponsorship of a visa.
Kindly note that you can only be considered in one recruitment process at a time within Sea Group and will be considered for jobs in the order that you have applied.
The IT Compliance & Risk (ITC) unit operates across both Monee and Shopee, and is responsible for managing the Information Technology and Cyber Security risk profiles, including risk identification, management and mitigation across the group (including overseas countries).
Job Description:
- Establish and oversee the implementation of cyber security and information technology risk policies, technology and tools, and governance processes to create solutions for minimising losses from cyber security issues, failed internal processes, inadequate controls, emerging risks and regulatory breaches.
- Support security and technology compliance to internal policies, processes, and controls, as well as compliance to external regulations while proactively evaluating existing control environment for enhancement opportunities.
- Work effectively with business, operations, engineering, security and infrastructure teams on evaluating, recommending, delivering and managing security/IT solutions across Cyber and IT domains.
- Manage audit or regulatory reviews including coordination, communications, and required actions with internal auditors, external auditors, regulators and internal stakeholders as appropriate.
Requirements:
- Bachelor's degree or above in computer science, technology, finance, accountancy or related disciplines
- Strong interest or experience in the following technology categories:
- Information Security;
- Infrastructure Security;
- Application and Data Security;
- Cloud Security;
- CI/ CD, containerisation security.
- Strong interest in information security standards (i.e. ISO 27001, PCI, NIST, CIS).
- Self-driven, positive attitude and team player striving for team success.
- Resourceful and able to adapt in a dynamic environment.