Expires 3 months from now
Data Protection and IT Risk Control Officer
full-time
Share this job
Job Summary
Responsible for leading the internal audit function, ensuring the integrity and efficiency of financial and operational processes, and providing independent assurance that the organization’s risk management, governance, and internal control processes are operating effectively.
Job Details
Data Protection Compliance & Management:
- Develop and implement data protection policies and procedures in accordance with relevant regulations (e.g., GDPR, CCPA).
- Conduct regular assessments and audits to ensure compliance with data protection laws and internal policies.
- Handle data breach incidents, including investigation, reporting, and remediation.
- Ensure compliance with data protection laws and regulations.
- Perform regular audits to ensure compliance with data protection standards.
- Prepare reports for regulatory bodies and internal management.
- Address compliance gaps.
- Advise on data protection technologies.
- Provide expert advice on implementing secure IT systems.
- Collaborate with IT and other departments to develop and implement IT security policies and procedures.
- Conduct training sessions on data protection and IT security risks.
- Raise awareness about data security best practices among employees.
- Ensure that policies are communicated effectively and adhered to across the organization.
- Stay updated with the latest technologies and security trends.
IT Risk Assessment and Management:
- Identify, assess, and manage IT risks, including cybersecurity threats, data breaches, and system vulnerabilities.
- Develop and maintain an IT risk management framework and risk register.
- Monitor, evaluate and report on the effectiveness of existing IT controls and risk mitigation measures. Determine the impact of deficiencies on the operational and financial functions.
- Conduct audits in accordance with standards and a predefined audit plan.
- Perform audit tests and procedures, including the verification of specific information as requested by management.
Security Incident Management :
- Identify, assess, and manage IT risks, including cybersecurity threats, data breaches, and system vulnerabilities.
- Develop and maintain an IT risk management framework and risk register.
- Monitor, evaluate and report on the effectiveness of existing IT controls and risk mitigation measures. Determine the impact of deficiencies on the operational and financial functions.
- Conduct audits in accordance with standards and a predefined audit plan.
- Perform audit tests and procedures, including the verification of specific information as requested by management.
Regulatory Liaison & Audit Support:
- Serve as the point of contact for data protection authorities and other regulatory bodies.
- Ensure timely and accurate reporting to regulators as required.
- Assist in the planning and execution of IT and data protection audits.
- Provide technical expertise and support during internal and external audits.
- Track and follow up on the implementation of audit recommendations related to IT and data protection.
Requirements
- Bachelor’s degree in Information Technology, Cybersecurity, Law, or a related field.
- Professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Information Privacy Professional (CIPP), or equivalent are highly desirable.
Experience:
- Minimum of 3- 5 years of experience in data protection, IT risk management, IT security, IT compliance or a related field.
- Experience in the financial services industry, particularly in consumer lending, is preferred.
- Experience in managing IT risks and implementing IT security policies.
- Strong understanding of data protection regulations and IT risk management frameworks.
- Proficiency in technologies for data protection, security software, and risk assessment tools.
- Knowledge of GDPR, CCPA, and other regulatory compliance software.
- Experience with cloud security frameworks and IT infrastructure.
Technical:
- Data Analysis
- Financial Analysis
- Forensic Auditing and Investigation
- Internal Auditing
- Internal Control
- IT Auditing
- Quality Assurance
- Regulatory Compliance
- Research
- Risk Management
Behavioural:
- Entrepreneurial Mindset
- Excellence
- Execution
- Energy
- Empathy
- Evolution
- Emotional Intelligence
- Business Acumen
- Decision-Making
- Result Oriented
- Strategic Thinking
- Communication written & verbal
- Stakeholder Management
- Developing Others
- Analytical Thinking
- Leading Change
- Managing Risk
- Service Orientation
Benefits
At Credit Direct Finance Company Limited, we value our employees and strive to provide a comprehensive benefits package that recognizes their contributions and supports their well-being. As part of our commitment to a positive work environment, we offer the following benefits:
Competitive Salary: We offer a competitive salary structure that is commensurate with industry standards and recognizes the skills and experience of our employees.
Quarterly Performance Pay: We recognize and reward exceptional performance. Our quarterly performance pay program allows employees to earn additional compensation based on their individual and team achievements.
Transport Subsidy: We understand the importance of accessible transportation for our employees. To assist with commuting expenses, we provide a transport subsidy to help alleviate the financial burden associated with travel to and from work.
Staff Bus: We offer a convenient and reliable staff bus service for eligible employees, ensuring a comfortable and stress-free commute to the workplace.
Hybrid Work: We believe in providing flexibility and work-life balance. Our hybrid work policy allows eligible employees to work remotely for a certain number of days per week, promoting a healthy work-life integration.
13th Month Salary: As an additional financial benefit, we provide a 13th-month salary to our employees. This extra payment, usually received at the end of the year, serves as a bonus and acknowledges their dedication and commitment throughout the year.
Leave Allowance: We recognize the importance of taking time off for rest and relaxation. In addition to annual leave entitlement, we provide a leave allowance to eligible employees, offering financial support during their vacation time.
Profit Sharing: We believe in sharing our success with our employees. Through our profit-sharing program, eligible employees have the opportunity to receive a share of the company's profits, providing an additional incentive for their dedication and hard work.
These benefits are designed to support our employees' financial well-being, work-life balance, and professional growth. We continuously review and enhance our benefits package to ensure that it remains competitive and aligned with the needs and preferences of our valued employees.
About Company
Credit Direct Finance Company Limited
Credit Direct is the Fintech arm of the FCMB Group.