Why this grade This listing scored 54/100, which is a D. It lost the most ground on pay transparency. See the breakdown
- Description depth 20 / 20 How much the posting actually says about the work, measured in characters of real text.
- Freshness 15 / 15 How recently it was posted. Older postings are likelier to be filled or abandoned.
- Remote clarity 8 / 15 Whether "remote" means anywhere, or is quietly restricted to one country.
- Role specificity 6 / 10 Whether the listing is tagged well enough to tell what the role actually is.
- Corroboration 5 / 10 Whether more than one source carries this listing.
- Pay transparency 0 / 25 A published salary range, worth more than any other single factor because it is what a candidate cannot find out without applying.
Every figure above is arithmetic over the posting itself — its salary field, its text, its age, its tags and how many sources carry it. How the grades work →
Senior Full Time
Product Segment : Corporate
Senior Information Security Specialist
We are looking for an experienced Information Security Specialist who can operate independently and keep KKCompanys rapidly scaling business aligned with ISO/IEC 27001, ISO/IEC 27701, and other relevant security and privacy requirements. You will drive internal audits, policy development, and security-awareness initiatives while collaborating with colleagues across product, operations, and compliance to embed a security-first mindset as the company grows. If you want a role that blends strategic impact with hands-on ownership of security and privacy, youll feel right at home here.
Responsibilities:
- Lead internal audits against ISO 27000-series standards, track remediation, and manage external audit schedules and evidence.
- Develop, update, and enforce information security and privacy policies, procedures, and records to meet regulatory and standard requirements.
- Monitor developments in security and privacy regulations (e.g., PDPA) and advise on control adjustments.
- Conduct annual risk assessments, maintain the risk register, and coordinate mitigation actions across teams.
- Design and deliver security and privacy awareness training and campaigns to raise organization wide security awareness.
- Collaborate with engineering, cloud operations, legal, and external consultants to ensure controls remain effective and aligned with business needs.
Requirements:
ISO/IEC 27001:2022 Lead Auditor certification, or equivalent direct audit experience.
Minimum 2 years of experience in information security management or security audit roles, with proven experience leading ISO 27001 internal audits.
Practical skills in drafting and maintaining security and privacy policies and procedures aligned with recognized standards.
Familiarity with risk assessment methodologies and experience maintaining a risk register.
Ability to design and deliver security awareness materials or training sessions for non-technical audiences.
Comfortable reading English standards and regulations and producing concise written documents; basic spoken English for discussions when required.
Strong interpersonal and coordination skills to work with colleagues from different functions and with external advisors.
Familiarity with project or issue tracking tools such as GitLab or Jira, and basic project management practices.
Nice to Have:
- Background in technology, software, or cloud service companies.
- Additional certifications such as CEH, CISA, CISM, CIPM, or ISO/IEC 27701 Lead Auditor certification.
- Excellent presentation, training, or cross cultural collaboration experience.
- Demonstrated proactivity and problem solving skills, with the ability to influence multiple teams on security matters.
Originally posted on Himalayas
Apply for this role Opens himalayas.app — the link as listed; we have not yet verified it is the employer's own page
Quick question · anonymous · one tap
Would you apply to this job?
Answer to see what other job seekers said.
Keep looking
Similar remote roles, still open
-
B
4h ago
Cardiac Device Specialist -Remote, All Shifts
PaceMate™ United States $35 - $44/hr
-
B
4h ago
Arkansas Blue Cross United States $20 - $26/hr
-
D
4h ago
Regional Sales Manager, Kuwait
Palo Alto Networks United Arab Emirates
- C 9h ago
See every "Information Security Specialist" role →
Get new “Information Security Specialist” roles by email
One email a day with what is new in "Information Security Specialist". Nothing new, no email.
We confirm the address first, and every mail carries an unsubscribe link. Alerts are ours, not a third party's.
Your turn · no account needed
Help the next applicant
You may know something about this listing that we cannot see from here. One tap. No account needed. Signed-in reports earn points once the evidence agrees with you.
I know what it pays
Sign in with Google to earn points for reports — 100 confirmed points buy a week of Early Access.
Where this listing came from
- 10 Oct 2026 Himalayas first sighting
Seen on 1 board over 0 days.