
Compliance and Security Program Manager

Compliance and Security Program Manager

Compliance and Security Program Manager
HitPay
HitPay is a full-stack payments infrastructure platform based in Singapore, serving over 20,000 SMBs in APAC. The Compliance & Security Program Manager will oversee compliance, IT governance, and security initiatives, ensuring adherence to regulatory frameworks and industry standards while collaborating with various internal teams.
Qualification
- Experience in compliance, IT governance, or security program management, ideally in fintech, payments, or regulated industries.
- Strong understanding of security and compliance frameworks (PCI DSS, SOC 2, ISO 27001, MAS TRM, GDPR).
- Ability to translate regulatory and compliance requirements into practical, technical implementations.
- Strong project management skills – able to coordinate across multiple stakeholders.
- Comfortable working with both auditors and engineers.
- Bonus: Technical background in security engineering, IT, or product/engineering experience.
Responsibility
- Lead PCI DSS, SOC 2, MAS PSA, and other regulatory compliance programs.
- Coordinate audits with internal stakeholders and external auditors.
- Maintain compliance calendar including pen tests, ASV scans, policy reviews, and risk assessments.
- Develop and improve internal policies, IT governance frameworks, and controls.
- Partner with engineering to design and implement security features such as encryption and access controls.
- Track security incidents, risk assessments, and vendor due diligence.
- Support business continuity planning, disaster recovery, and incident response.
- Drive cross-team initiatives ensuring security and compliance are embedded in product development.




