Hello,

Sign in to find your next job.

Threat and Process Compliance Lead

Coca-Cola Beverages Vietnam

485 Ha Noi Street, Linh Trung Ward, Thu Duc District, Ho Chi Minh City

Posted date: 17-10-2025

  • Experience

    5 - 10 Years

  • Job level

    Manager

  • Salary

    Competitive

Job Description

JOB SUMMARY:
The Threat and process compliance lead is responsible for leading enterprise-wide IT risk assessment and mitigation efforts. This role collaborates closely with business leaders, compliance teams, and senior leadership to ensure that IT policies, procedures, and controls are aligned with business goals and regulatory requirements. The individual proactively identifies technical risks and prioritizes mitigation activities based on potential impact, while ensuring alignment with business goals.

KEY RESPONSIBILITIES:

· The role is responsible for identifying, assessing, and managing technical risks across IT systems and services.

· It involves developing and implementing IT risk management policies in line with Swire group’s audit and compliance requirements such as vulnerability management and access and identity management. The individual collaborates with business and IT leaders to ensure risks are understood and mitigated in alignment with the organization’s risk posture. They communicate technical risk events and mitigation strategies to senior leadership, maintain operational risk documentation, and respond to client inquiries regarding technical risk matters.

· The position leads policy development for all aspects of the technical environment and oversees technical components of third-party oversight, including vendor onboarding and ongoing diligence. It works with Compliance to manage third-party IT risk assessments and address identified weaknesses such as SOC-1 reviews and tabletop exercises. The role ensures controls are aligned with industry-standard frameworks like NIST and ISO 27001.

· The individual works closely with the Cybersecurity Director to review and monitor threat detection, response, and remediation controls with the current threat landscape. They lead the vulnerability management program, including scanning, prioritization, and remediation tracking. They collaborate with the Security Operations Center (SOC) to coordinate incident response and threat intelligence sharing and standardize incident management processes including root cause analysis and implementation of mitigating controls.

· The role also partners with the Chief Compliance Officer and risk owners to ensure technical risks are integrated into the enterprise risk management framework. It evaluates and onboards tool to support the enterprise risk program and develops and reports on key risk and performance metrics. Additionally, the individual collaborates with IT and business stakeholders to enhance firm-wide data governance including classification, retention, and handling.

· Overseeing regular vulnerability scans across infrastructure, applications, and cloud environments using tools such as Qualys, Tenable.

· Prioritizing vulnerabilities based on risk impact, exploitability, and business context using CVSS scoring and threat intelligence.

· Reporting vulnerability metrics and trends to senior leadership and audit committees, highlighting areas of concern and progress.

· Ensuring integration of vulnerability data into broader risk management and compliance reporting frameworks.

· Coordinating with the Security Operations Center (SOC) to align vulnerability insights with threat detection and incident response activities.

Job Requirement

  • Bachelor’s degree in information technology, Cybersecurity, or related field. ITIL certification or equivalent experience preferred. 
  • Proven experience in IT risk management, cybersecurity, and governance.
  • Strong understanding of MITRE ATT&CK or similar frameworks.
  • Experience with SOC 1, SOC 2, and control-based reviews. 
  • Excellent written and oral English and Local Language.
  • Excellent leadership, organizational, and interpersonal skills with a proven ability to build and mentor high-performing teams.
  • Risk Management Expertise: Advanced knowledge of IT risk identification, assessment, and mitigation techniques. Skilled in applying risk frameworks such as NIST RMF, ISO 31000, and COBIT to complex enterprise environments.
  • Cybersecurity Acumen: Strong understanding of threat modeling, vulnerability management, and incident response. Familiarity with MITRE ATT&CK, CVSS scoring, and SOC operations.
  • Governance & Compliance: Expertise in designing and enforcing IT governance structures. Deep familiarity with regulatory requirements including SOX, GDPR, and FedRamp, and experience managing audits and control reviews (SOC 1, SOC 2).
  • Policy Development & Implementation: Proven ability to draft, implement, and maintain IT policies and procedures across diverse technical domains including access control, data protection, and third-party risk.
  • Analytical & Reporting Skills: Ability to interpret technical risk data and translate it into actionable insights. Skilled in developing dashboards, KPIs, and executive-level reporting.
  • Stakeholder Engagement: Effective communicator with the ability to influence senior leadership and cross-functional teams. Experience in presenting risk scenarios and mitigation strategies to non-technical audiences.
  • Tooling & Automation: Hands-on experience with GRC platforms, vulnerability scanners (e.g., Qualys, Tenable), and risk analytics tools. Ability to evaluate and onboard new technologies to enhance risk visibility and control effectiveness.
  • Incident Management & Root Cause Analysis: Capable of leading post-incident reviews, conducting root cause analysis, and implementing corrective actions to prevent recurrence.
  • Ability to travel as needed to support global and regional operations.

***Please note that by submitting an application to us, you consent to our processing of personal data about you that is provided by you and otherwise lawfully collected by us (which may include sensitive data) for our company's recruitment purpose. Where you provide us personal data of others, you further undertake that we are permitted to receive and process such data for the purpose for which you provided it. You may send your queries or request for support concerning our personal data processing activities to hrvn(at)coca-cola.com.vn. To better understand our personal data processing practices, please visit swirecocacola.(com)/en/Others/Privacy-Policies.html to the full Privacy Policy of Coca-Cola Beverages Viet Nam Limited.

Swire Coca-Cola is committed to fostering an environment that values Diversity, Equality, Inclusion, and Belonging. We believe that a diverse workforce drives our goals and contributes to overall success. As an equal opportunity employer, Swire Coca-Cola hires talented individuals from any backgrounds and conditions. We strive to create a work environment that is respectful, inclusive, and free from any form of discrimination, harassment, or intimidation. If you require special assistance due to disability or any other conditions during any stage of the recruitment process, please feel free to contact us via email hrvn(at)coca-cola.com.vn at any time. We appreciate your interest in joining our team and your commitment to contributing to a diverse and inclusive workplace

More Information

  • Degree: Bachelor
  • Age: Unlimited
  • Working time: Permanent

You should be skill

Apply for:

Your Contact Information

Your resume

Upload resume (Only supports *.doc, .*docx, *.pdf and less than 3 MB).
I consent to the processing of my data and agree to provide personal information and have read and agree to the CareerViet Terms of Use and Personal Information Protection Policy.

Coca-Cola Beverages Vietnam

Coca-Cola Việt Nam là một phần của Swire Coca-Cola Limited - đối tác đóng chai lớn thứ năm trong hệ thống dựa trên số bán toàn cầu, được cấp quyền sản xuất, tiếp thị và phân phối các sản phẩm của Tập đoàn Coca-Cola.

COCA-COLA VIỆT NAM TỰ HÀO VỚI HÀNH TRÌNH ĐỒNG KIẾN TẠO SỰ SẢNG KHOÁI TRONG VĂN HÓA DOANH NGHIỆP

Tại Coca-Cola Việt Nam, chúng tôi cam kết tạo ra các thương hiệu và nước giải khát được mọi người yêu thích với nhiều sản phẩm và kích cỡ khác nhau, đồng thời thúc đẩy các giải pháp bền vững cho doanh nghiệp nhằm mang lại những ảnh hưởng tích cực đối với cuộc sống của mọi người dân, cộng đồng và toàn thế giới. Chúng tôi tin rằng mục đích, tầm nhìn, sứ mệnh và các giá trị cốt lõi giúp chúng tôi trở nên khác biệt và dẫn đầu cuộc chơi. Những giá trị này không chỉ đơn thuần là khẩu hiệu, chúng là động lực thúc đẩy mọi quyết định của chúng tôi.

MỤC ĐÍCH

Mang lại sự sảng khoái đến cộng đồng nơi mà chúng tôi gọi là Nhà​

TẦM NHÌN

Trở thành tập đoàn nước giải khát đóng chai hàng đầu trong hệ thống Coca-Cola thông qua hiệu suất cao, phát triển năng lực,​ con người và văn hóa chiến thắng​

SỨ MỆNH

Tại Swire Coca-Cola, chúng ta chiến thắng cùng nhau qua việc trở thành người ủng hộ thực sự và liên tục cho ​

con người, cho đối tác, cho cộng đồng và cho hành tinh của chúng ta​

GIÁ TRỊ CỐT LÕI

• Liêm chính: Làm điều đúng đắn, giữ lời hứa và xây dựng lòng tin với các bên liên quan và cộng đồng.

• Xuất sắc: Cố gắng hết sức để thực hiện công việc tốt nhất và mang lại những kết quả chất lượng cao.

• Nỗ lực: Vượt qua giới hạn bản thân và làm việc chăm chỉ, đương đầu với thử thách và không bao giờ bỏ cuộc.

• Liên tục: Tư duy theo hướng dài hạn, bền vững và tạo ra những giá trị tích cực, lâu dài cho tất cả mọi người.

• Khiêm nhường: Nhận thức được những điểm cần cải thiện, luôn lắng nghe cởi mở và thấu hiểu những góc nhìn khác nhau.

MỘT VÀI PHÚC LỢI TỪ CÔNG TY

• Khám sức khỏe: Từ nhân viên mới đến các lãnh đạo cấp cao, mọi nhân viên đều được nhận Bảo hiểm sức khỏe toàn diện và cao cấp của CCBV. Bảo hiểm sức khỏe không chỉ bảo vệ cho bạn mà còn cho những người phụ thuộc, đảm bảo quyền tiếp cận dịch vụ chăm sóc sức khỏe đẳng cấp trên toàn quốc

• Phép năm: Tại CCBV, mỗi nhân viên đều nhận được chế độ nghỉ phép vượt trội hàng đầu so với thị trường với 18 ngày phép/năm. Chúng tôi tin rằng mỗi nhân viên luôn có thời gian để tái tạo năng lượng tinh thần sảng khoái và khỏe mạnh

• Phúc lợi linh hoạt: Nhân viên được trao quyền lựa chọn các phúc lợi linh hoạt sao cho phù hợp với các ưu tiên của bản thân và mang lại nhiều lợi ích nhất

_____________________________________________________________________________________________________________

 

Coca-Cola Beverages Vietnam is a part of Swire Coca-Cola Limited  - the fifth largest bottling partner of the system by global volume with a franchise to manufacture, market and distribute products of The Coca-Cola Company.

WE ARE PROUD TO CO-CREATE A “REFRESHING” CULTURE

At Coca-Cola Beverages Vietnam, we are committed to offering people more of the drinks they want across a range of categories and sizes while driving sustainable solutions that build resilience into our business and create positive change for the planet. We truly believe that our brand purpose, vision, mission, and core values set us apart from others and drive our business forward. They aren't just words on a page; they're the fuel that propels every decision.​

BRAND PURPOSE

Our purpose is to deliver refreshment to the communities we call home.

VISION

We want to be a leading bottler for the Coca-Cola system through winning performance, capabilities, people and culture.

MISSION

At Swire Coca-Cola, we win together by serving as constant and true advocates for our people, our partners, our community, and our planet.

CORE VALUES

• Integrity: Doing what's right, keeping promises, and earning trust with our stakeholders and communities.

• Excellence: Striving to do our best work and deliver high-quality results.

• Endeavor: Pushing our limits and working hard. We take on tough challenges and never give up.

• Continuity: Prioritizing long-term thinking, sustainability, and community impact to create lasting value for everyone.

• Humility: Being aware of our limits, listening openly, and understanding different perspectives.

BENEFITS

• Healthcare Plan: From entry-level employees to country leaders, you’re all eligible for competitive and comprehensive Medical Insurance. Our medical insurance covers you and your dependents, ensuring access to quality healthcare national wide.

• Paid Leave: At CCBV, every employee receives the competitive leave policy with 18 days/year. We believe that each employee always has time to regenerate mental energy to be refreshed and healthy.

• Flexible Benefits: We embrace the uniqueness of each employee. With our flexible benefits, the employee can tailor their benefits to match their priority and maximize the impact.

 

 

 

485 Ha Noi Street, Linh Trung Ward, Thu Duc District, Ho Chi Minh City

https://www.linkedin.com/company/cocacolavietnam/

Contact person: HR Department

View more