Audit And Compliance Manager
Current(Open to providing ISO 9001, ISO 27001, ISO 45001, ISO 22301 implementation, consulting, auditing & training services)- managing and safeguarding company’s assets, to maintain confidentiality, availability and integrity of systems and data- leading teams to identify, manage and mitigate security risks, threats and vulnerabilities within the IT system and business processes. - developing risk profile reports to support and monitor risk exposure, and guide risk committee decision… Show more (Open to providing ISO 9001, ISO 27001, ISO 45001, ISO 22301 implementation, consulting, auditing & training services)- managing and safeguarding company’s assets, to maintain confidentiality, availability and integrity of systems and data- leading teams to identify, manage and mitigate security risks, threats and vulnerabilities within the IT system and business processes. - developing risk profile reports to support and monitor risk exposure, and guide risk committee decision making - developed and maintain information security & data protection policies and procedures to ensure adequate oversight of compliance posture- implementing security solutions and deploying strategies to protect data and systems from risks and threats.- spearheaded the establishment of the enterprise risk management framework, developed the enterprise risk management register, implementing risk controls, and maintaining business continuity plans - leading teams to achieve and maintain certification to ISO 27001, ISO 22301, ISO 27701, ISO 27017, ISO 27032 and PCI DSS.- conducting periodic security assessments and internal audits to ensure compliance with IT and cyber security policies and procedures- monitoring latest cyber threats, trends and implementing appropriate and adequate risk-mitigating measures- driving internal and external audit programme to ensure compliance with information security, data protection/privacy requirements. Show less