Share this Job
Apply now »

Risk & Compliance Specialist-211173

Risk & Compliance Specialist-211173

Position Snapshot

- Business Unit/Function: IT

- Location: Beijing

 

Main Purpose of Job:
Under the supervision and guidance of her/his Product Stream Operations Manager / BRM / FRM , the Risk and Compliance Specialist's role is to assess, oversee and drive all compliance issues within their area (market, product, product group, stream ) including but not limited to information security, data protection, privacy, 3rd party/vendor and procurement. The role includes evaluating the unit's compliance with internal and extrenal policies, standards and regulations, assessing the risks associated with each product and supporting the product teams in documenting and implementing corrective and ensuring the appropriate actions, checks and reviews are in place to deliver a risk based continuous improvement management system for compliance. The role also includes the coordination of audit management activities for the Market/Stream/Product Group/Product .

 

Key Outputs:

General Outputs
Responsible for driving Risk, Compliance & Security as a management system within the market/stream/productgroup/product team (for the assigned geographical scope):
• Ensures the proper implementation, management and follows up of Risk, Compliance & Security within stream/product groups/product
• Ensures risk identification and controls mapping for all solutions and processes instream/product groups/product using the Nestlé Risk, Compliance & Security framework
• Supports stream/product groups/product in identifying and applying internal and external (legal, regulatory and commercial) compliance requirements
• Coordinates audit-related tasks such as ensuring the readiness of IS/IT Product Managers, Product Owners, Partner Delivery Managers and their organizations for audits testing and facilitating the timely resolution of any audit findings
• Ensures Risk, Compliance & Security gaps within the stream/product groups/product are documented in corrective& preventative actions and tracked through the management system
• Facilitates the creation and modification of all technology compliance policies and frameworks owned by their stream/product groups/product
• Supports the stream/product groups/product teams on implementing by design the required IS/IT compliance in their solutions to meet the desired level of compliance maturity in the Nestlé Framework
• Responsible for tracking the stream/product groups/product compliance through relevant metrics and driving continuos improvement through the management system

 

Regulatory & Audit Outputs
• Coordinates all the audits requests in the market/stream/product group/product team for assigned scope
• Represents the market/stream/product group/product teams with the auditors
• Tracks and follows-up the market/stream/product group/product team audit, internal review or regulatory findings as corrective & preventative actions through the management system
• Validates root causes have been addressed prior to closure of corrective & preventative actions
• Works with Risk, Compliance & Security function to identify required levels of documentation and evidence to support audit and regulatory requirements
• Ensures market/stream/product group/product team is trained in reporting Risk, Compliance & Security incidents and events to meet internal & external requirements
• Supports market/stream/product group/product team in the execution and follow-up of Partner Compliance Audits (including cloud)
• Implement and sustain processes with Legal, Quality and Corporate Compliance to ensure market/stream/product group/product teams are able to identifying and applying internal and external (legal, regulatory and commercial) compliance requirements

 

Capability & Organizational Outputs
• Supports and advises product managers, Product Owners and Application Owners in any IS/IT compliance questions
• Oversees the development & roll out of the Risk, Compliance & Security capability framework for their market/stream/product group/product team, including the roll out and tracking of the awareness and behaviour training for all team members
• Performs, and/or coaches to ensure consistency, risk assessment according to agreed Risk & Compliance framework
• Coaches & trains market/stream/product group/product team teams on the implementation and management of risks, controls and corrective actions through the implementation of the Nestlé Compliance & Information Security Management System
• Trains market/stream/product group/product team teams on standards, policies, frameworks and regulatory requirements
• Identifies gaps between the desired level of compliance capability and the current level of maturity and propose and implement adjustments in capability development for market/stream/product group/product team team
• Oversees the market/stream/product group/product team managers’ monitoring of IS/IT compliance to ensure ongoing adherence, within the Nestlé framework

 

Key Experiences:

• 8+ years of experience in a combination of risk management, compliance, information security and IS/IT jobs — at least 4 years in a senior leadership role
• Undergraduate degree in the field of computer science, law, IS/IT Security, Quality Management or business administration; graduate degree in one these fields preferred
• Experience in developing and submitting IS/IT audit and compliance reports
• Experience with effective communication at different levels in the organization and in English
• Experience having worked in a global environment and with virtual teams

 

211173/51 /ZP /LP

We are Nestlé, the largest food and beverage company. We are 308,000 employees strong driven by the purpose of enhancing the quality of life and contributing to a healthier future. Our values are rooted in respect: respect for ourselves, respect for others, respect for diversity and respect for our future. With more than CHF 91.4 billion sales in 2018, we have an expansive presence with 413 factories in more than 85 countries. We believe our people are our most important asset, so we'll offer you a dynamic inclusive international working environment with many opportunities across different businesses, functions and geographies, working with diverse teams and cultures. Want to learn more? Visit us at www.nestle.com.

Position Snapshot

- Business Unit/Function: IT

- Location: Beijing

 

Main Purpose of Job:
Under the supervision and guidance of her/his Product Stream Operations Manager / BRM / FRM , the Risk and Compliance Specialist's role is to assess, oversee and drive all compliance issues within their area (market, product, product group, stream ) including but not limited to information security, data protection, privacy, 3rd party/vendor and procurement. The role includes evaluating the unit's compliance with internal and extrenal policies, standards and regulations, assessing the risks associated with each product and supporting the product teams in documenting and implementing corrective and ensuring the appropriate actions, checks and reviews are in place to deliver a risk based continuous improvement management system for compliance. The role also includes the coordination of audit management activities for the Market/Stream/Product Group/Product .

 

Key Outputs:

General Outputs
Responsible for driving Risk, Compliance & Security as a management system within the market/stream/productgroup/product team (for the assigned geographical scope):
• Ensures the proper implementation, management and follows up of Risk, Compliance & Security within stream/product groups/product
• Ensures risk identification and controls mapping for all solutions and processes instream/product groups/product using the Nestlé Risk, Compliance & Security framework
• Supports stream/product groups/product in identifying and applying internal and external (legal, regulatory and commercial) compliance requirements
• Coordinates audit-related tasks such as ensuring the readiness of IS/IT Product Managers, Product Owners, Partner Delivery Managers and their organizations for audits testing and facilitating the timely resolution of any audit findings
• Ensures Risk, Compliance & Security gaps within the stream/product groups/product are documented in corrective& preventative actions and tracked through the management system
• Facilitates the creation and modification of all technology compliance policies and frameworks owned by their stream/product groups/product
• Supports the stream/product groups/product teams on implementing by design the required IS/IT compliance in their solutions to meet the desired level of compliance maturity in the Nestlé Framework
• Responsible for tracking the stream/product groups/product compliance through relevant metrics and driving continuos improvement through the management system

 

Regulatory & Audit Outputs
• Coordinates all the audits requests in the market/stream/product group/product team for assigned scope
• Represents the market/stream/product group/product teams with the auditors
• Tracks and follows-up the market/stream/product group/product team audit, internal review or regulatory findings as corrective & preventative actions through the management system
• Validates root causes have been addressed prior to closure of corrective & preventative actions
• Works with Risk, Compliance & Security function to identify required levels of documentation and evidence to support audit and regulatory requirements
• Ensures market/stream/product group/product team is trained in reporting Risk, Compliance & Security incidents and events to meet internal & external requirements
• Supports market/stream/product group/product team in the execution and follow-up of Partner Compliance Audits (including cloud)
• Implement and sustain processes with Legal, Quality and Corporate Compliance to ensure market/stream/product group/product teams are able to identifying and applying internal and external (legal, regulatory and commercial) compliance requirements

 

Capability & Organizational Outputs
• Supports and advises product managers, Product Owners and Application Owners in any IS/IT compliance questions
• Oversees the development & roll out of the Risk, Compliance & Security capability framework for their market/stream/product group/product team, including the roll out and tracking of the awareness and behaviour training for all team members
• Performs, and/or coaches to ensure consistency, risk assessment according to agreed Risk & Compliance framework
• Coaches & trains market/stream/product group/product team teams on the implementation and management of risks, controls and corrective actions through the implementation of the Nestlé Compliance & Information Security Management System
• Trains market/stream/product group/product team teams on standards, policies, frameworks and regulatory requirements
• Identifies gaps between the desired level of compliance capability and the current level of maturity and propose and implement adjustments in capability development for market/stream/product group/product team team
• Oversees the market/stream/product group/product team managers’ monitoring of IS/IT compliance to ensure ongoing adherence, within the Nestlé framework

 

Key Experiences:

• 8+ years of experience in a combination of risk management, compliance, information security and IS/IT jobs — at least 4 years in a senior leadership role
• Undergraduate degree in the field of computer science, law, IS/IT Security, Quality Management or business administration; graduate degree in one these fields preferred
• Experience in developing and submitting IS/IT audit and compliance reports
• Experience with effective communication at different levels in the organization and in English
• Experience having worked in a global environment and with virtual teams

 

211173/51 /ZP /LP

We are Nestlé, the largest food and beverage company. We are 308,000 employees strong driven by the purpose of enhancing the quality of life and contributing to a healthier future. Our values are rooted in respect: respect for ourselves, respect for others, respect for diversity and respect for our future. With more than CHF 91.4 billion sales in 2018, we have an expansive presence with 413 factories in more than 85 countries. We believe our people are our most important asset, so we'll offer you a dynamic inclusive international working environment with many opportunities across different businesses, functions and geographies, working with diverse teams and cultures. Want to learn more? Visit us at www.nestle.com.

Beijing, CN

Beijing, CN

Apply now »