Skip to content
← Back to job listings

Director, Compliance [L7-II] (Information Security and TBA Compliance)

Coupang Internal · Seoul, South Korea

Corporate LawImported listingfull-time4 days ago

About The Role

  • 본 공고는 재직 임직원을 대상으로 하는 사내 공모 전용입니다. ( 임직원 추천은 Link 로 진행 )
  • This posting is exclusively for internal employees. (Employee referrals are submitted via the Link )
  • 지원 시에는 반드시 첨부된 ‘ 사내 공모 지원서 양식 ’을 작성한 후, 쿠팡 이메일 계정 으로 접수해 주시기 바랍니다.
  • To apply, please complete the attached ‘ Internal Transfer Request Form ’ and submit it via your Coupang email address .
  • 사내 공모 정책: [ Link ]
  • Internal Transfer Policy: [ Link ]

Company Introduction

We exist to wow our customers. We know we’re doing the right thing when we hear our customers say, “How did I ever live without Coupang?” Born out of an obsession to make shopping, eating, and living easier than ever, we are collectively disrupting the multi-billion-dollar commerce industry from the ground up and establishing an unparalleled reputation for being leading and reliable force in South Korean commerce.

We are proud to have the best of both worlds — a startup culture with the resources of a large global public company. This fuels us to continue our growth and launch new services at the speed we have been since our inception. We are all entrepreneurs surrounded by opportunities to drive new initiatives and innovations. At our core, we are bold and ambitious people that like to get our hands dirty and make a hands-on impact. At Coupang, you will see yourself, your colleagues, your team, and the company grow every day.

Our mission to build the future of commerce is real. We push the boundaries of what’s possible to solve problems and break traditional tradeoffs. Join Coupang now to create an epic experience in this always-on, high-tech, and hyper-connected world.

Role Overview

We are seeking a seasoned compliance expert to lead our Information Security and TBA (Telecommunication Business Act) Compliance functions. This pivotal leadership role focuses on establishing comprehensive visibility into critical information assets across all business sectors. You will be responsible for monitoring adherence to legal, certification, and internal policy requirements, ensuring that any non-compliance issues are identified and remediated swiftly to fortify the organization's security posture.

What You Will Do

  • -
  • Design and implement robust, efficient compliance monitoring programs centered on prioritized enterprise-wide critical assets.
  • -
  • Develop comprehensive monitoring checklists that integrate legal mandates (TBA, Network Act), certification standards (ISMS-P), and internal security policies.
  • -
  • Establish and execute data-driven monitoring plans to preemptively identify and mitigate potential critical vulnerabilities.
  • -
  • Partner with Security, Legal, and Engineering teams to drive the remediation process, ensuring all identified issues are resolved in a timely manner.
  • -
  • Maintain a systematic tracking system for unresolved gaps and manage the escalation process for high-priority risks to senior management.
  • -
  • Transform complex compliance status into actionable data visualizations, providing strategic insights to guide executive decision-making.

Basic Qualifications

  • -
  • Minimum of 10 years in Information Security, with proven experience in leadership and security monitoring/auditing.
  • -
  • Demonstrated success in securing asset visibility and managing critical inventories within complex enterprise environments.
  • -
  • Deep understanding of IT infrastructure, cloud architecture, emerging security trends, and the core principles of security controls.
  • -
  • Strong ability to pinpoint security blind spots within vast datasets and prioritize risks based on business impact.
  • -
  • Thorough knowledge of South Korean security regulations, including the Telecommunication Business Act (TBA) and the Network Act.
  • -
  • Bachelor’s degree or higher in a relevant field.

Preferred Qualifications

  • -
  • Holder of professional certifications such as ISMS-P Auditor, CISSP, or CSAP.
  • -
  • Experience in security operations and compliance within AWS, Azure, or GCP environments.
  • -
  • Exceptional ability to translate technical vulnerabilities into business risk language to persuade and influence stakeholders at all levels.

Recruitment Process and Others

Recruitment Process

  • Application Review - Phone Interview - Onsite (or Virtual Onsite) Interview – Offer
  • The exact nature of the recruitment process may vary according to the specific job and may be changed due to scheduling or other circumstances.
  • Interview schedules and the results will be informed to the applicant via the e-mail address submitted at the application stage.

Details to Consider

  • This job posting may be closed prior to the stated end date for application if all openings are filled.
  • Coupang has the right to rescind an offer of employment if a candidate is found to have submitted false information as part of the application process.
  • Those eligible for employment protection (recipients of veteran’s benefits, the disabled, etc.) may receive preferential treatment for employment in accordance with applicable laws.
  • Job titles and responsibilities may be subject to change depending on the candidate’s overall experience, etc. This will be communicated to the candidate at the appropriate time before the offer.
  • Hiring may be restricted in case

This is an external listing. JobSpring does not represent or verify the employer. Report this listing