What you will do:
- Risk Assessment & Tracking: Maintain the enterprise risk register and conduct comprehensive risk assessments across IT infrastructure, cloud environments, and the System Development Life Cycle (SDLC) for various organizational projects and technical assets.
- Remediation Coordination: Coordinate risk remediation plans across different teams and meticulously track risk acceptance decisions.
- Reporting & Visibility: Develop and maintain risk dashboards, generating clear, high-level executive summaries for management review.
- Emerging Tech Governance: Champion and drive AI security governance initiatives to ensure the safe and compliant adoption of artificial intelligence technologies
- Audit & Compliance: Actively support internal audit initiatives and facilitate robust security control testing. Maintain and continuously improve the Information Security Management System (ISMS) in compliance with ISO 27001 standards. Conduct regular PCI DSS assessments.
What you will need:
- Education: Bachelor’s degree in Cybersecurity, Information Technology, Risk Management, Business Administration, or a related field.
- Experience: 5+ years of experience in IT Risk Management, Information Security, Compliance, or IT Audit.
- Technical Skills:
- Strong understanding of risk assessment methodologies and frameworks (e.g., NIST CSF, ISO 27001, PCI DSS).
- Experience maintaining risk registers and tracking remediation lifecycles.
- Solid knowledge of IT infrastructure (networks, databases, cloud architecture) and secure system development practices (e.g., DevSecOps, CI/CD pipelines, secure architecture) to accurately identify and evaluate technical vulnerabilities.
- Familiarity with privacy regulations and emerging AI governance standards.
- Soft Skills: Exceptional communication skills with the ability to translate complex technical risks into business terms for management and stakeholders.
- Certifications (Preferred): CRISC, CISA, CISM, ISO 27001 Lead Auditor or similar industry-recognized risk and audit certifications.
Skills Required
- Bachelor’s degree in Cybersecurity, Information Technology, Risk Management, Business Administration, or a related field
- 5+ years of experience in IT Risk Management, Information Security, Compliance, or IT Audit
- Strong understanding of risk assessment methodologies and frameworks, including NIST CSF, ISO 27001, and PCI DSS
- Experience maintaining risk registers and tracking remediation lifecycles
- Knowledge of IT infrastructure, including networks, databases, and cloud architecture
- Knowledge of secure system development practices, including DevSecOps, CI/CD pipelines, and secure architecture
- Familiarity with privacy regulations and emerging AI governance standards
- Exceptional communication skills for translating technical risks into business terms
- CRISC, CISA, CISM, ISO 27001 Lead Auditor, or similar certification
Lalamove Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Lalamove and has not been reviewed or approved by Lalamove.
-
Strong & Reliable Incentives — Incentive programs such as missions, bonuses, and vehicle‑sticker promotions are highlighted as ways to boost driver earnings, with occasional commission reductions further enhancing take‑home. These extras can make the platform appealing for supplemental income and busy periods.
-
Healthcare Strength — Corporate roles in some markets describe access to employer‑provided medical and dental coverage. This indicates a conventional health benefits baseline for office staff.
-
Leave & Time Off Breadth — Office locations reference paid holidays, sick leave, and some work‑from‑home flexibility. This points to standard time‑off provisions for corporate employees in select markets.
Lalamove Insights
What We Do
Established in December 2013, Lalamove was created to make on-demand and same-day delivery possible for everyone at the touch of a button. Today, Lalamove operates in over 20 markets across Asia, Latin America, and the United States connecting over 7 million customers with a pool of over 700,000 driver partners. Our driver partners operate a vast array of vehicles to suit each market including lorries, trucks, vans and cars for deliveries of almost anything of any size. Fleets of two-wheel vehicles are also available for courier services providing fast and low-cost delivery solutions. Through dedicated mobile and web apps, Lalamove seamlessly connects users and drivers around the world to move things that matter.








