Senior GRC Specialist for APAC, managing regional compliance and acting as a regulatory contact.
•Airwallex is seeking a Senior GRC Specialist for the APAC region to act as a regional hub for the Information Security team.
•This role involves managing international regulatory compliance, data privacy, and risk, while also serving as a contact for government and regulatory bodies.
•Key Responsibilities Act as a regional anchor for the security compliance team, focusing on regional requirements while integrating with the global effort.
•Serve as a trusted contact for regulatory bodies, customers, partners, and vendors, controlling external perception of enterprise security.
•Manage the implementation and monitoring of security controls, refining and iterating on processes.
•Develop and maintain security documentation, including standards, policies, reporting metrics, and evidence artifacts.
•Become a subject matter expert for Airwallex teams as a regional and generalist expert.
•Requirements Deep knowledge of compliance frameworks like PCI-DSS, ISO 27001, and SOC2, with an understanding of information security audits.
•Strong familiarity with Information Security concepts, practices, and solutions, with the ability to communicate effectively with engineering teams.
•Working knowledge of policy creation and maintenance, especially for security and complex regulatory requirements.
•Understanding of complex cloud environments and their impact on security and compliance.
•Experience in financial services or the fintech industry is highly valued.