Open roleIndividual ContributorOperations & Strategy
Regulatory and Compliance Officer
Translate obligations into workable controls with at least two years of relevant compliance, risk, legal-support, governance, privacy, or audit experience.
People & Operations GroupPhilippinesRemoteFlexible Time
About the role
With a minimum of two years of relevant experience in compliance, risk management, legal support, governance, privacy, regulatory operations, or audit coordination, you will help XieTech understand and meet its obligations. Partnering across product, security, people, finance, and operations, you will embed practical privacy, governance, and risk awareness into everyday decisions.
What you'll do
- Research applicable laws, regulations, contractual duties, and standards and maintain an obligation register
- Draft and maintain governance policies, procedures, notices, registers, approvals, and supporting records
- Support privacy and data-protection practices across websites, products, recruitment, and internal operations
- Coordinate risk assessments, compliance reviews, audits, evidence requests, and corrective actions
- Track findings and remediation commitments through ownership, due dates, evidence, and closure
- Provide practical compliance guidance to teams and escalate questions requiring qualified legal advice
- Handle personal, commercial, and regulatory information with strict care and appropriate access controls
What you'll bring
- Minimum of 2 years of relevant experience in compliance, risk management, legal support, governance, privacy, regulatory operations, or audit coordination
- Strong research skills and ability to distinguish requirements, guidance, assumptions, and legal advice
- Clear policy and procedure writing that internal teams can understand and apply
- Disciplined record keeping for obligations, evidence, findings, actions, and approvals
- Working knowledge of risk assessment, internal controls, audits, and remediation tracking
- High discretion and sound judgment when handling sensitive or potentially privileged information
- Collaborative approach suited to a remote, early-stage technology organization
Nice to have
- Familiarity with Philippine regulatory, data-privacy, technology-sector, or corporate-governance requirements
- Experience with technology, cybersecurity, consumer, employment, or corporate compliance
- Relevant privacy, compliance, audit, or risk-management training or certification
- Experience coordinating with regulators, counsel, auditors, or external advisers
