Back to Careers
Information Security Full-Time

IT Security & ISO 27001 Consultant

Ho Chi Minh City
Information Security
Full-Time

Role Overview

As cyber threats targeting Vietnamese businesses continue to escalate, demand for ISO/IEC 27001 Information Security Management System (ISMS) certification has never been stronger. UPLYFT360° Vietnam is seeking a skilled IT Security & ISO 27001 Consultant to join our growing information security practice. The role combines deep technical security knowledge with management system expertise to guide Vietnamese IT companies, financial institutions, healthcare providers, and technology-dependent organizations to certification.

Key Responsibilities

  • Conduct information security risk assessments aligned with ISO 27001 and ISO 31000 requirements
  • Design and implement Information Security Management Systems (ISMS) for client organizations
  • Develop ISMS documentation including information security policies, procedures, and Statement of Applicability (SoA)
  • Assess and recommend Annex A security controls appropriate to each client's risk profile
  • Deliver information security awareness training and management briefings
  • Conduct ISMS internal audits and prepare clients for third-party certification audits
  • Provide guidance on ISO/IEC 20000-1 IT Service Management System (ITSM) implementation where required
  • Advise on compliance with Vietnam's Cybersecurity Law and personal data protection regulations
  • Stay current with emerging cybersecurity threats, technologies, and regulatory developments
  • Support clients in managing information security incidents and developing incident response plans

Requirements

  • 1 Minimum 3 years of IT security or information security management experience
  • 2 ISO 27001 Lead Implementer or Lead Auditor certification
  • 3 Strong understanding of cybersecurity frameworks, threat landscapes, and security controls
  • 4 Experience with risk assessment methodologies (ISO 31000, NIST, or similar)
  • 5 Proficient Vietnamese and English communication skills
  • 6 IT or computer science background preferred
  • 7 Ability to communicate complex security concepts to non-technical stakeholders

Preferred Qualifications

  • CISSP, CISM, CISA, or CompTIA Security+ certification
  • Experience with cloud security (AWS, Azure, or GCP)
  • Knowledge of Vietnam's Cybersecurity Law (Luật An ninh mạng)
  • Experience with penetration testing or security auditing

What We Offer

  • Competitive salary with IT security specialist premium
  • ISO 27001 Lead Auditor certification sponsorship
  • Access to leading-edge cybersecurity tools and resources
  • Engagement with Vietnam's most progressive technology organizations
  • Opportunity to build the most comprehensive ISO 27001 practice in Vietnam
  • Flexible working arrangements and remote work options

Apply Now

Submit your application and we'll be in touch within 5 business days.

Please enter your name.
Please enter a valid email.
Please enter phone number.
Please select experience.
Please write your cover letter.
Apply Now Back to Careers

Build Your Career at UPLYFT360°

Join Vietnam's No. 1 ISO consultancy. A career with impact, growth, and purpose.

Contact Us