Specialist, Information Security
Summary
Manages TMF Group's information security assurance programmes: running ISAE 3402 audit coordination end-to-end (planning, internal assessments, external audits, reporting) and ISO certification audits for ISMS/BCMS, serving as stakeholder point of contact, and supporting risk analysis and mitigation.
- ISAE 3402 programme management and audit coordination which includes but not limited to:
- Manage the programme deliverables end-to-end including the annual planning, internal assessments, external audits, reporting and programme reviews.
- Serve as point of contact, coordinating and collaborating with stakeholders to ensure compliance with the ISAE 3402 requirements.
- Work with the team on ISAE 3402 projects and tasks, as assigned.
- ISO certification audits which includes but not limited to:
- Manage the programme deliverables including the annual planning, internal audit and reporting.
- Collaborate with Governance, Risk and Compliance/Business Continuity Team to ensure compliance with the ISO standard and policies requirements at both local and global level
- Work with the team on ISMS/BCMS related projects and tasks, as assigned
- Others:
- Provide data-driven analysis to aid management in decision making to address risk and issues, as required.
- Escalate risks and coordinate actions needed to mitigate risks.
- Collaborate with team members by identifying opportunities for improvement within the assurance and accreditations related activities.