Company Description Bangkok MSP (BMSP) is a leading IT Security Managed Service Provider in Thailand, offering cloud-based subscription solutions and globally recognized security services. The company supports organizations of all sizes and industries, delivering customized and cost-effective protection against evolving cyber threats. BMSP focuses on aligning security solutions with each client's unique business needs and risk profile. Team members gain exposure to diverse environments, modern security technologies, and industry best practices while helping organizations strengthen their security posture.
Role Description This is a full-time, on-site Junior Cybersecurity GRC role based in Bangkok. The Junior GRC team member helps implement and monitor cybersecurity policies, standards, and controls for client environments under the guidance of senior staff. Day-to-day activities include assisting with risk assessments, documenting security controls, supporting compliance initiatives, and contributing to security governance reporting. The role involves reviewing security-related data, helping track remediation activities, and coordinating with technical teams to ensure alignment with regulatory and industry requirements. The position also includes learning and applying GRC frameworks, preparing basic audit and compliance documentation, and participating in continuous improvement of security processes.
Qualifications
- Candidates should possess foundational skills in Cybersecurity and Information Security, including awareness of common threats, vulnerabilities, and security best practices.
- Candidates should possess basic Network Security and Cyber skills relevant to securing network infrastructure, monitoring for suspicious activity, and supporting incident response.
- Candidates should possess an understanding of Application Security principles, including secure development concepts and common application-layer risks.
- Candidates should possess strong analytical, documentation, and organizational skills to support risk assessments, policy creation, and compliance reporting.
- Candidates should possess effective written and verbal communication skills in English (Thai language skills are an advantage) and the ability to work collaboratively with technical and non-technical stakeholders.
- Candidates should possess a relevant educational background, such as a degree or ongoing studies in Computer Science, Information Security, Information Systems, or a related field; industry certifications (e.g., CompTIA Security+, ISO 27001 foundations) are a plus.
- Candidates should possess a willingness to learn GRC frameworks, attention to detail, integrity in handling sensitive information, and the ability to follow structured processes and guidelines.