Information Security Compliance Senior Manager / Director
Seoul, South Korea
Full time
Hybrid
Compensation is not specified
Role
CTO
Description
As a pivotal member of our team, you will oversee security compliance initiatives and programs, ensuring adherence to industry best practices and regulations. Your role involves conducting assessments, audits, and risk management activities while providing expert advice to address any compliance gaps and drive remediation efforts. You will collaborate with cross-functional teams to implement controls and frameworks to meet global standards and local regulations like ISO27001, ISO27701, PCI-DSS, SOC2, KISMS, and regional requirements. Additionally, you will play a vital role in enhancing operational efficiencies within the security compliance function.
Key Responsibilities
- Collaborate on security compliance programs such as ISO27001, ISO27701, PCI-DSS, SOC2 Type 2, KISMS, and local laws
- Engage in internal security assessments, audits, and risk management activities
- Respond effectively to internal and external queries regarding security compliance matters
- Conduct regular compliance assessments and drive remediation efforts
- Develop and implement necessary controls to align with international standards and Korean regulations
- Identify opportunities for process improvements to enhance global security compliance operations
Requirements
- Minimum of 10 years in information security, privacy, IT audit, or IT risk management
- Experience in security and privacy operations, control assessments, risk assessments, or audits
- Knowledge of ISO27001, ISO27701, SOC1, SOC2, PCI, KISMS, SOX, cloud technologies, and data protection regulations
- Proficient in analyzing and advising on Korea and Global privacy and information security compliance
- Relevant security certifications (e.g., CISSP, CRISC, CISM, CISA, ISO27001 LA, CIPT, CIPP/E)
Preferred Qualifications
- Ability to communicate in English for international engagements
- Background in information security and privacy within virtual assets, fintech, online services, or global service environments
- Experience in establishing information security and privacy frameworks compliant with Korean regulations (PIPA, ICNA, Virtual Asset User Protection Act, Credit Information Protection Act)
- Team-oriented attitude with a focus on personal growth and development
- Strong attention to detail and analytical approach
- Excellent communication skills to convey technical concepts to non-technical stakeholders
- Previous exposure to project management
- Interest in Blockchain and AI technologies
Skills Required

Сrypto.com
Website
Сrypto.comCompany size
Not specified
Location
United States
Description
Not specified