GRC Consultant<h4><strong>The Company</strong></h4><p>Founded in 1988, is one of the world's leading luxury goods groups. It's unique portfolio includes prestigious Maisons distinguished by their craftsmanship and creativity. Their online distributors pioneer expert curation and technological innovation to deliver the highest standards of service.</p><p> </p><p><strong>Your skills and experience</strong></p><ul><li>Provide reviews and comments to group lead GRC projects from local GRC perspective.</li><li>Coordinate on global project implementation in China technology team, share the visibility and impacts & plan in local.</li><li>Collect China technology team feedback and action on different projects by organizing meetings and discussions</li><li>Collaborate with the group teams to provide China feedback and define action plans</li><li>Support new topics and initiatives with local and global IT, including cloud security enhancement, secure software development lifecycle, and IT internal control system</li><li>Support Internal Audit within China technology team by review and proactively support the remediation of vulnerabilities identified.</li><li>Support & coordinate IT DRP activities aligned with global team and local application owners.</li><li>Monthly compliance report for IT team leaders with risks identified.</li><li>Process data subject requests within IT team to ensure compliance</li><li>Support the Group in defining the future approach to IT Risk & Compliance management in collaboration with Group Security</li><li>Coordinate the implementation of Group IT standards within the regions and provide visibility to Group IT GRC function regarding gaps identified.</li><li>Actively support the remediation of vulnerabilities identified by Cyber Resilience team at the regional level (when not handled by Group IT)</li><li>Actively support the China cyber regulatory compliance activities e.g. MLPS, PIPL CBDT, DSR case</li><li>Experience in Retail/luxury business and understood the operating model</li></ul><p> </p><p><strong>About you</strong></p><ul><li>7+ years working experience in Audit, Risk & Compliance or Cyber Security field</li><li>Solid knowledge in information security principles and practices</li><li>Industry recognized training and certification (e.g. CISA, CRISC, CISM etc.) is a plus</li><li>Knowledge on security tools is preferred eg: Gitguardian, Cortex XDR, Kubernetes, Jfrog, Prisma Cloud etc.</li><li>Experience working in large international environment/ international teams</li><li>Excellent communication skills in English</li><li>Good analytical and problem-solving skills</li><li>Good presentation skill and management report</li></ul><p> </p><p><strong>What's on offer?</strong></p><ul><li>A rare opportunity for you to demonstrate your skills, initiative and creativity in a rapidly growing company.</li><li>A fast-moving context, where you'll be given ownership of multiple projects backed by an amazing team.</li><li>The rewards of making a genuine impact in a corporate culture that embraces creativity, fosters innovation and offers real career progression.</li></ul><p><strong> </strong></p><p><em>Robert Half Ltd is committed to equal opportunity and we value diversity at our company. We do not discriminate on the basis of categories protected under local law.</em></p><p><em>By clicking 'apply', you give your express consent that Robert Half may use your personal information to process your job application and to contact you from time to time for future employment opportunities. For further information on how Robert Half processes your personal information and how to access and correct your information, please read the Robert Half privacy notice https://www.roberthalf.cn/en/privacy-statement. Please do not submit any sensitive personal data to us in your resume (such as government ID numbers, ethnicity, gender, religion, marital status or trade union membership) as we do not collect your sensitive personal data at this time.</em></p><hr /><p><em>点击"申请",即表示您明确同意 Robert Half 可以使用您的个人信息来处理您的工作申请,并不时与您联系以获得未来的就业机会。 如需进一步了解 Robert Half 如何处理您的个人信息以及如何访问和更正您的信息,请阅读 Robert Half 隐私声明<a href="https://nam02.safelinks.protection.outlook.com/?url=https://www.roberthalf.cn/en/privacy-statement&data=05|01|[email protected]|45960615caf741a897da08db12e2448b|16532572d5674d678727f12f7bb6aed3|0|0|638124535281002861|Unknown|TWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0=|3000|||&sdata=txey6FkFkoVyheBOucHzeYO1yTcFywlr7N4oX7M8axY=&reserved=0">https://www.roberthalf.cn/en/privacy-statement</a> 。请不要在您的简历中向我们提交任何敏感的个人数据(例如身份证号码、种族、性别、宗教、婚姻状况或工会会员身份),因为我们此时不收集您的敏感个人数据。</em></p><img src="https://counter.adcourier.com/V2VuZHkuWmhlbmcuNTg1NzEuMTA5MjFAcmhpY24uYXBsaXRyYWsuY29t.gif">