TopDev
job-image
Process Quality Assurance PQALogin to view salary
Quận Cầu Giấy, Hà Nội
Middle, Senior Fulltime2 năm
Application deadline: 27-03-2026
1
Your role & responsibilities

ISMS & Documentation

  • Build, maintain, and continuously improve ISMS documentation in alignment with ISO/IEC 27001 requirements.
  • Develop and manage security policies, procedures, standards, and SOPs.
  • Maintain ISMS artifacts including risk assessments, risk treatment plans, SoA, and records of controls.

 

Process & Compliance

  • Ensure ISMS processes are properly implemented, followed, and documented across teams.
  • Monitor compliance with information security policies and procedures.
  • Support the definition and improvement of internal processes related to information security and quality.

 

Audit & Assessment

  • Plan and conduct internal ISMS audits and follow up on corrective and preventive actions (CAPA).
  • Coordinate and support external ISO 27001 audits.
  • Track audit findings, nonconformities, and improvement actions until closure.

 

Risk & Awareness

  • Support information security risk assessment and risk treatment activities.
  • Assist in maintaining the risk register and control effectiveness tracking.
  • Support security awareness activities and ensure related records are properly maintained.

 

Collaboration & Reporting

  • Work closely with the Security (technical) team to align processes and controls with technical implementations.
  • Collaborate with Engineering, Product, and Operations teams to ensure ISMS requirements are understood and applied.
  • Prepare compliance reports, audit evidence, and management review materials.
2
Your skills & qualifications

Experience & Background

  • 2–4 years of experience in Quality Assurance, Process Management, Compliance, or ISMS-related roles.
  • Hands-on experience working with ISO/IEC 27001 (implementation, maintenance, or audit support).
  • Experience in software, SaaS, or product-based environments is preferred.
  • Exposure to other standards or frameworks (ISO 9001, SOC 2, GDPR, etc.) is a plus.
  • Background in QA, process improvement, or internal audit is a plus.

 

ISMS & Quality Knowledge

  • Good understanding of ISO/IEC 27001 clauses and Annex A controls.
  • Experience in writing and maintaining policies, procedures, and compliance documentation.
  • Familiarity with internal audit processes and corrective action management.

 

Skills

  • Strong analytical, documentation, and organizational skills.
  • Ability to work independently and manage multiple ISMS tasks in parallel.
  • Good communication and collaboration skills.
  • English level: Upper-Intermediate or above, capable of conducting ISO 27001 audits and compliance discussions fully in English.
3
Benefits
  • Salary: up to 30M
  • Work on cutting-edge Shopify apps with a talented team.
  • Competitive compensation and benefits.
  • Collaborative and inclusive work culture.
  • Ongoing professional growth opportunities.

 

Địa điểm làm việc (đã được cập nhật theo Danh mục Hành chính mới - thêm quận/huyện cũ tương ứng để dễ dàng tra cứu)

  • Hà Nội: Homecity, Phường Yên Hòa (quận Cầu Giấy cũ)

 

Thời gian làm việc

  • Thứ 2 - Thứ 6 (từ 08:00 đến 17:00)
  • Thứ 7 làm online từ 08:30 đến 12:30
⚙️ Candidates supporters
🧑🏾‍💻 Prepare for interviewsChecking TopDev QnA tool to practice your answers to common interview questions.Read QnA for interviews