190 Application Security jobs in Malaysia

Application Security Architect

Selangor, Selangor Accenture Southeast Asia

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Join to apply for the Application Security Architect role at Accenture Southeast Asia .

Responsibilities:

  • Review and integrate application security requirements and technical architecture.
  • Perform independent work and become a Subject Matter Expert (SME).
  • Participate actively in team discussions.
  • Contribute solutions to work-related problems.
  • Develop and implement application security strategies to ensure data protection.
  • Conduct security assessments and audits to identify vulnerabilities.
  • Collaborate with cross-functional teams to enhance security measures.
  • Stay updated on security trends and technologies.

Qualifications:

  • Advanced proficiency in SAP Business Planning and Consolidation (SAP BPC).
  • Proficiency in SAP ERP Central Component (SAP ECC) is recommended.
  • Proficiency in SAP S/4HANA is suggested.
Seniority level
  • Mid-Senior level
Employment type
  • Full-time
Job function
  • Information Technology
Industries
  • Business Consulting and Services
#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Associate Director, Application Security

Kuala Lumpur, Kuala Lumpur AIA Digital+

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Associate Director, Application Security Associate Director, Application Security

The incumbent will be managing 9 team members and responsible for defining and overseeing the organization’s application security architecture, ensuring alignment with target architectures and modern development practices.

Strategic Oversight of Security Architecture

  • Define, design, and implement the target application security architecture in line with organizational goals and industry/regulatory standards.
  • Establish a comprehensive application security strategy, ensuring seamless integration into enterprise architecture and technology roadmaps.
  • Conduct architectural reviews to identify risks and recommend mitigation strategies, focusing on secure and scalable solutions.
  • Lead the integration of security controls into CI/CD pipelines, ensuring automated detection and remediation of vulnerabilities.

Secure Software Development Lifecycle (SDLC)

  • Develop and enforce secure development guidelines, ensuring security is incorporated at every stage of the SDLC.
  • Provide leadership in threat modelling, secure coding practices, and software code quality management across development teams.
  • Work with application teams to prioritize security requirements, balancing business objectives with technical risks.

Vulnerability Management and Mitigation

  • Oversee the overall strategy for SAST, DAST, to identifying and remediating vulnerabilities.
  • Ensure timely resolution of identified issues, coordinating efforts across development, QA, and DevOps teams.
  • Maintain and communicate detailed metrics and dashboards on the security posture of applications and pipelines.

Cross-Functional Collaboration

  • Partner with application teams to align security architecture with business needs and project timelines.
  • Act as the primary liaison between technical teams and executive leadership, effectively conveying security risks and architectural priorities.

Education and Certifications:

  • Bachelor’s degree in computer science, Information Security, or a related field. A Master’s degree is desired.
  • Relevant certifications such as CISSP, CSSLP, CEH, OSCP or CREST

Professional Experience:

  • At least 15 years of experience in cybersecurity, with a focus on application security, security architecture, and secure development practices.
  • Proven expertise in designing and implementing security controls within CI/CD pipelines in Agile and DevOps environments.
  • Demonstrated success in defining and overseeing secure application architectures for cloud-native and hybrid environments.
  • Deep understanding of secure software development lifecycle (SDLC) methodologies and best practices.
  • A team-player with systematic problem-solving approach and have sense of ownership and drive.
  • Must have strong people skill to lead a team effectively and demonstrable experience of working at the most senior levels of large and complex organizations.
  • Excellent interpersonal skills and stakeholders' management.
  • Always have customer in mind when dealing with any situations/projects/deliverables.
  • Interprets customer needs, assesses requirements and identifies solutions to non-standard requests.
  • Able to negotiate with, influence and engage others in complex and conflicting situations across multiple parties to drive a positive outcome.
  • Good communication skills and the communication network of the incumbent is expected to be internally within the enterprise (80%) and external with Vendors and Service Providers (20%).
Seniority level
  • Seniority level Director
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology
  • Industries IT Services and IT Consulting

Referrals increase your chances of interviewing at AIA Digital+ by 2x

Get notified about new Director of Application Security jobs in Greater Kuala Lumpur .

Expression of Interest - Cyber Security Manager

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Senior Application Operations Engineer - Pune

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Associate Director, Application Security

Kuala Lumpur, Kuala Lumpur AIA Digital+

Posted today

Job Viewed

Tap Again To Close

Job Description

Associate Director, Application Security

Associate Director, Application Security

The incumbent will be managing 9 team members and responsible for defining and overseeing the organization’s application security architecture, ensuring alignment with target architectures and modern development practices. Strategic Oversight of Security Architecture Define, design, and implement the target application security architecture in line with organizational goals and industry/regulatory standards. Establish a comprehensive application security strategy, ensuring seamless integration into enterprise architecture and technology roadmaps. Conduct architectural reviews to identify risks and recommend mitigation strategies, focusing on secure and scalable solutions. Lead the integration of security controls into CI/CD pipelines, ensuring automated detection and remediation of vulnerabilities. Secure Software Development Lifecycle (SDLC) Develop and enforce secure development guidelines, ensuring security is incorporated at every stage of the SDLC. Provide leadership in threat modelling, secure coding practices, and software code quality management across development teams. Work with application teams to prioritize security requirements, balancing business objectives with technical risks. Vulnerability Management and Mitigation Oversee the overall strategy for SAST, DAST, to identifying and remediating vulnerabilities. Ensure timely resolution of identified issues, coordinating efforts across development, QA, and DevOps teams. Maintain and communicate detailed metrics and dashboards on the security posture of applications and pipelines. Cross-Functional Collaboration Partner with application teams to align security architecture with business needs and project timelines. Act as the primary liaison between technical teams and executive leadership, effectively conveying security risks and architectural priorities. Education and Certifications: Bachelor’s degree in computer science, Information Security, or a related field. A Master’s degree is desired. Relevant certifications such as CISSP, CSSLP, CEH, OSCP or CREST Professional Experience: At least 15 years of experience in cybersecurity, with a focus on application security, security architecture, and secure development practices. Proven expertise in designing and implementing security controls within CI/CD pipelines in Agile and DevOps environments. Demonstrated success in defining and overseeing secure application architectures for cloud-native and hybrid environments. Deep understanding of secure software development lifecycle (SDLC) methodologies and best practices. A team-player with systematic problem-solving approach and have sense of ownership and drive. Must have strong people skill to lead a team effectively and demonstrable experience of working at the most senior levels of large and complex organizations. Excellent interpersonal skills and stakeholders' management. Always have customer in mind when dealing with any situations/projects/deliverables. Interprets customer needs, assesses requirements and identifies solutions to non-standard requests. Able to negotiate with, influence and engage others in complex and conflicting situations across multiple parties to drive a positive outcome. Good communication skills and the communication network of the incumbent is expected to be internally within the enterprise (80%) and external with Vendors and Service Providers (20%). Seniority level

Seniority level Director Employment type

Employment type Full-time Job function

Job function Information Technology Industries IT Services and IT Consulting Referrals increase your chances of interviewing at AIA Digital+ by 2x Get notified about new Director of Application Security jobs in

Greater Kuala Lumpur . Expression of Interest - Cyber Security Manager

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Senior Application Operations Engineer - Pune

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Information and Application Security Analyst

Kuala Lumpur, Kuala Lumpur Turnkey Consulting Malaysia Sdn Bhd

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Turnkey provides consulting and managed services in the areas of Identity and Access Management, Risk and Controls Management and Application/Cyber Security for corporations predominantly running SAP software. We deliver consulting and application support services within this specialised niche to customers regardless of their size or industry, helping them to minimise their business risks with appropriate controls throughout their day to day and critical business transactions.

We are an established and fast-growing company with a culture of personal responsibility, knowledge sharing and a commitment to putting our clients at the centre of everything that we do. Founded in the UK in 2004, we have gone on to establish ourselves as a truly global organisation with offices in Australia, Germany, the US, Malaysia, Singapore and France.

Our aim is to ensure that all our clients can achieve the fine balance between business enablement and security.We do this through having the strongest team in the business, providing a unique insight into security and risk management best practice.

Our daily tasks vary significantly throughout the team; however, the focus remains on delivering often highly technical solutions that help our clients improve their security and controls posture. This might include analysing granular details such as user access within a set of systems, providing new data protection measures, or drawing solutions from data sets.

In joining our team, you can expect to be working on challenging projects across a wide range of global clients (e.g. FTSE 100) and industries. The nature of projects will be diverse and will vary across the categories of advisory, assurance, managed services and system implementation. Whilst being actively engaged on solving business problems, our core practice remains specialised in technical solutions for our clients.

About You

We are looking for independent, proactive and ambitious individuals who are committed to making a meaningful contribution to Turnkey. While an Information Security background would be advantageous, intellectual curiosity and a can-do attitude is more important than the subject of your degree. If you appreciate attention to detail, utilising data to inform decisions, and working on projects alongside a range of clients, then this is an excellent opportunity for you.

Our training programme is designed to equip you with a broad set of skills that will help you to excel in your consultancy career with us. Although the role has a technical bias, we expect to build your technical skills throughout the scheme, so no existing technical knowledge is required to apply.

What to expect in your first twelve months:

  • An initial immersive training schedule to introduce you to our strategic practice pillars and provide an understanding of the technical aspects fundamental to this role

  • We will then aim to place you on projects across the strategic service lines as soon as possible after completing initial training, where the more senior delivery team will provide continued support

  • Throughout your first year, you will be encouraged to complete soft skills training and be mentored to develop these skills further, with the expectation of gaining certification within twelve months of joining

  • After twelve months, you can expect to be aligned to one of our strategic practices, giving you the opportunity to work towards a more technically focussed and specialised certification in your second year.

Key attributes we are looking for are:

  • Excellent communication skills (written and verbal)

  • Ability to build enduring relationships

  • Analytical skills to investigate and solve complex problems in a structured manner

  • Ability to explain technical concepts clearly and concisely

  • Flexibility to work on multiple different types of projects

  • Confidence to ask questions and contribute

  • Initiative - always looking for better ways of doing things

  • An Honours Degree in any discipline

  • Ideally an understanding of basic networking and operating systems (e.g. windows or linux) would be desirable but not necessary

  • An inquisitive mind capable of considering the unintended opportunities for disruption and consequences of security gaps

Your responsibilities will include:

  • Working with a range of clients on multidisciplinary projects

  • Working on our managed service engagements to deliver improvements and enhancements to our customers’ ongoing business operations

  • Supporting application/solution implementation including definition of relevant master data requirements

  • Critical analysis of information to validate solution adherence to requirements, including various application testing techniques

  • Coordination of activities with clients and team members to deliver project tasks to the required quality standards

  • Analysing data to drive decision-making and help in providing the best solutions to our clients

  • Internally you will be involved in operational and practice-development activities which may include marketing, HR, events or managing team social calendars

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Information and Application Security Analyst

Kuala Lumpur, Kuala Lumpur Turnkey Consulting Malaysia Sdn Bhd

Posted today

Job Viewed

Tap Again To Close

Job Description

Turnkey provides consulting and managed services in the areas of Identity and Access Management, Risk and Controls Management and Application/Cyber Security for corporations predominantly running SAP software. We deliver consulting and application support services within this specialised niche to customers regardless of their size or industry, helping them to minimise their business risks with appropriate controls throughout their day to day and critical business transactions. We are an established and fast-growing company with a culture of personal responsibility, knowledge sharing and a commitment to putting our clients at the centre of everything that we do. Founded in the UK in 2004, we have gone on to establish ourselves as a truly global organisation with offices in Australia, Germany, the US, Malaysia, Singapore and France. Our aim is to ensure that all our clients can achieve the fine balance between business enablement and security.We do this through having the strongest team in the business, providing a unique insight into security and risk management best practice. Our daily tasks vary significantly throughout the team; however, the focus remains on delivering often highly technical solutions that help our clients improve their security and controls posture. This might include analysing granular details such as user access within a set of systems, providing new data protection measures, or drawing solutions from data sets. In joining our team, you can expect to be working on challenging projects across a wide range of global clients (e.g. FTSE 100) and industries. The nature of projects will be diverse and will vary across the categories of advisory, assurance, managed services and system implementation. Whilst being actively engaged on solving business problems, our core practice remains specialised in technical solutions for our clients. About You We are looking for independent, proactive and ambitious individuals who are committed to making a meaningful contribution to Turnkey. While an Information Security background would be advantageous, intellectual curiosity and a can-do attitude is more important than the subject of your degree. If you appreciate attention to detail, utilising data to inform decisions, and working on projects alongside a range of clients, then this is an excellent opportunity for you. Our training programme is designed to equip you with a broad set of skills that will help you to excel in your consultancy career with us. Although the role has a technical bias, we expect to build your technical skills throughout the scheme, so no existing technical knowledge is required to apply. What to expect in your first twelve months: An initial immersive training schedule to introduce you to our strategic practice pillars and provide an understanding of the technical aspects fundamental to this role

We will then aim to place you on projects across the strategic service lines as soon as possible after completing initial training, where the more senior delivery team will provide continued support

Throughout your first year, you will be encouraged to complete soft skills training and be mentored to develop these skills further, with the expectation of gaining certification within twelve months of joining

After twelve months, you can expect to be aligned to one of our strategic practices, giving you the opportunity to work towards a more technically focussed and specialised certification in your second year.

Key attributes we are looking for are: Excellent communication skills (written and verbal)

Ability to build enduring relationships

Analytical skills to investigate and solve complex problems in a structured manner

Ability to explain technical concepts clearly and concisely

Flexibility to work on multiple different types of projects

Confidence to ask questions and contribute

Initiative - always looking for better ways of doing things

An Honours Degree in any discipline

Ideally an understanding of basic networking and operating systems (e.g. windows or linux) would be desirable but not necessary

An inquisitive mind capable of considering the unintended opportunities for disruption and consequences of security gaps

Your responsibilities will include: Working with a range of clients on multidisciplinary projects

Working on our managed service engagements to deliver improvements and enhancements to our customers’ ongoing business operations

Supporting application/solution implementation including definition of relevant master data requirements

Critical analysis of information to validate solution adherence to requirements, including various application testing techniques

Coordination of activities with clients and team members to deliver project tasks to the required quality standards

Analysing data to drive decision-making and help in providing the best solutions to our clients

Internally you will be involved in operational and practice-development activities which may include marketing, HR, events or managing team social calendars

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Application Security Engineer | HYBRID | Mandarin Speaker

Kuala Lumpur, Kuala Lumpur Agensi Pekerjaan Eternity Sdn Bhd

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

Application Security Engineer | HYBRID | Mandarin Speaker Application Security Engineer | HYBRID | Mandarin Speaker

1 week ago Be among the first 25 applicants

Get AI-powered advice on this job and more exclusive features.

Direct message the job poster from Agensi Pekerjaan Eternity Sdn Bhd

Salary Range: RM9,000 - RM12,000

Position Overview:

We are seeking a skilled Application Security Engineer to assess and enhance the security of Android and iOS apps. You'll conduct dynamic and static testing, simulate attacks (e.g., MITM, tampering), and work closely with developers to ensure app resilience and test coverage. Integration of security testing into CI/CD pipelines and staying current on mobile security trends is expected.

Key Responsibilities:

  • Perform dynamic and static analysis on Android/iOS applications to identify potential security vulnerabilities.
  • Simulate attack vectors such as MITM, code injection, and tampering to evaluate application resilience .
  • Identify and document issues such as SSL pinning bypass, insecure data storage, and obfuscation weaknesses .
  • Analyze API structures, application logic, and encryption methods for vulnerabilities .
  • Collaborate with development teams to ensure secure architecture and comprehensive test coverage.
  • Integrate automated security tests into CI/CD pipelines to streamline and safeguard deployment workflows.
  • Continuously stay informed about the latest mobile security trends, tools, and best practices.

Requirements:

  • Minimum Diploma or higher in Computer Science, Engineering, or a related field.
  • Proficiency in Mandarin and English is required. We are seeking candidates proficient in both English and Mandarin to effectively communicate with our diverse client base and stakeholders.
  • Minimum 2 years of relevant experience in application security or related fields.
  • iOS: Swift, Xcode
  • Strong understanding of software testing methodologies and tools.
  • Excellent problem-solving, analytical, and communication skills.
  • Ability to work independently in a fast-paced Agile environment

Preferred Skills (Added Advantage):

  • Mobile/website security testing
  • Network and infrastructure security
  • Experience with:
  • Debugging and performance profiling tools
  • Reverse engineering tools (e.g., Frida, Apktool, Objection)
  • Networking tools such as HTTPS, MITMProxy, Burp Suite

Company Benefits

  • Season Parking
  • Medical claim RM40, working more than 2 yrs RM45
  • Dental RM150, working more than 2 yrs RM200
  • Optical RM150, working more than 2 yrs RM200
  • Bonus is based on performance
Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Industries IT Services and IT Consulting

Referrals increase your chances of interviewing at Agensi Pekerjaan Eternity Sdn Bhd by 2x

Sign in to set job alerts for “Application Security Engineer” roles. Application Security Engineer (Pentester)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

IT Administrator (Cyber Security) (m/f/d)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago

Federal Territory of Kuala Lumpur, Malaysia 6 days ago

IT Administrator (Cyber Security) (m/f/d)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

Senior Manager, Enterprise Technology Engineer- Certificate Management

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Application Security Engineer | HYBRID | Mandarin Speaker

Kuala Lumpur, Kuala Lumpur Agensi Pekerjaan Eternity Sdn Bhd

Posted today

Job Viewed

Tap Again To Close

Job Description

Application Security Engineer | HYBRID | Mandarin Speaker

Application Security Engineer | HYBRID | Mandarin Speaker

1 week ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Direct message the job poster from Agensi Pekerjaan Eternity Sdn Bhd Salary Range:

RM9,000 - RM12,000 Position Overview: We are seeking a skilled

Application Security Engineer

to assess and enhance the security of Android and iOS apps. You'll conduct dynamic and static testing, simulate attacks (e.g., MITM, tampering), and work closely with developers to ensure app resilience and test coverage. Integration of security testing into CI/CD pipelines and staying current on mobile security trends is expected. Key Responsibilities: Perform dynamic and static analysis on

Android/iOS

applications to identify potential security vulnerabilities. Simulate attack vectors such as

MITM, code injection, and tampering to evaluate application resilience . Identify and document issues such as

SSL pinning bypass, insecure data storage, and obfuscation weaknesses . Analyze API structures, application logic, and encryption methods for vulnerabilities . Collaborate with development teams to ensure secure architecture and comprehensive test coverage. Integrate automated security tests into

CI/CD pipelines

to streamline and safeguard deployment workflows. Continuously stay informed about the latest mobile security trends, tools, and best practices. Requirements: Minimum Diploma or higher in Computer Science, Engineering, or a related field. Proficiency in

Mandarin and English

is required. We are seeking candidates proficient in both English and Mandarin to effectively communicate with our diverse client base and stakeholders. Minimum

2 years

of relevant experience in application security or related fields. iOS: Swift, Xcode Strong understanding of

software testing

methodologies and tools. Excellent problem-solving, analytical, and communication skills. Ability to work independently in a fast-paced Agile environment Preferred Skills (Added Advantage): Mobile/website security testing Network and infrastructure security Experience with: Debugging and performance profiling tools Reverse engineering tools (e.g., Frida, Apktool, Objection) Networking tools such as HTTPS, MITMProxy, Burp Suite Company Benefits Season Parking Medical claim RM40, working more than 2 yrs RM45 Dental RM150, working more than 2 yrs RM200 Optical RM150, working more than 2 yrs RM200 Bonus is based on performance Seniority level

Seniority level Mid-Senior level Employment type

Employment type Full-time Job function

Industries IT Services and IT Consulting Referrals increase your chances of interviewing at Agensi Pekerjaan Eternity Sdn Bhd by 2x Sign in to set job alerts for “Application Security Engineer” roles.

Application Security Engineer (Pentester)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago IT Administrator (Cyber Security) (m/f/d)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago Federal Territory of Kuala Lumpur, Malaysia 6 days ago IT Administrator (Cyber Security) (m/f/d)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 months ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago Senior Manager, Enterprise Technology Engineer- Certificate Management

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Application security Jobs in Malaysia !

Lead, Application Security Risk - Group Risk

Kuala Lumpur, Kuala Lumpur AmBank Group

Posted 18 days ago

Job Viewed

Tap Again To Close

Job Description

Lead, Application Security Risk - Group Risk Lead, Application Security Risk - Group Risk

Direct message the job poster from AmBank Group

Senior TL, AmBank Group (Hiring for AmInvest/AmFunds/GSS)

The role is expected to perform oversight ensure effectiveness in IT security control and IT risk management through validation and risk assessments mainly on application security scope.

KEY RESPONSIBILITIES

  • Evaluate the effectiveness of technology and security controls within the application, software delivery life cycle and IT project management to be line with RMIT and other regulatory requirements.
  • Review and assess the effectiveness of technology and security controls within the application, software delivery life cycle and IT project management to be line with RMIT and other regulatory requirements, eg. PayNet, SC and BURSA.
  • Act as technology risk liaison on application security fundamentals for key business and IT projects.
  • Perform application risk assessment identifying information security and technology risks associated with new initiative/ project/ system enhancement with AmBank Group based on industrial standard and advice necessary control consideration to respective stakeholder.
  • Provide oversight on incident management, to challenge the effectiveness of security incident root cause analysis and resolution identification.
  • Support and assist on consolidating application classification inventory to develop a means on prioritizing risk mitigation processes.
  • Review risk closure by first line and validate the documented evidences to ensure proper closure risk treatment plan.
  • Perform control evaluation and validation on IT KRI and report status based KRI threshold matrix to management; review and evaluate entry of new risk and control assessment by first line and assist in identifying relevant KRI and KCTs to associated risks.
  • Continually identify, track and assess potential risk/threats (from application security angle) and recommend improvement efforts to alleviate or mitigate risks.
  • Work with first line to ensure best practices and conformance to vulnerability guideline which includes timely remediation and closure of observations.
  • Ability to execute independent risk assessment on Cloud and Emerging Technology (AI, ML, RPA etc).

KEY REQUIREMENTS/SKILLS/EXPERIENCE

  • Candidate must possess at least a Bachelor's Degree, Professional Degree, Computer Science/Information Technology or equivalent.
  • Good to have professional certification preferred (CISSP, CISM, CRISC).
  • At least 8 years of working experience in Information Security or IT Risk, Application Security, preferably in financial services in Malaysia with work experience in penetration testing, vulnerability testing and static code analysis.
  • Experience and knowledge of web application vulnerabilities and web application business logic flaws and threats.
  • Knowledge of application architectures and technology; including web applications, mobile technology, data encryption, and identity and access management.
  • Understanding of security controls such as Authentication, Authorization, Access Control, Cloud Security, Cryptography, and Network Protocols along with security standards: OWASP Top 10, NIST, and CVE.
  • Working knowledge of operating systems , servers, as well as IOS and Android mobile devices.
  • Knowledge on local regulator/ international standard/ best practices of security policy, guidelines, etc.
  • Ability to handle multi-tasks and manage multiple projects simultaneously.
Seniority level
  • Seniority level Mid-Senior level
Employment type
  • Employment type Full-time
Job function
  • Job function Information Technology, Accounting/Auditing, and Strategy/Planning

Referrals increase your chances of interviewing at AmBank Group by 2x

Get notified about new Application Specialist jobs in Federal Territory of Kuala Lumpur, Malaysia .

Technical Application Specialist (ERP Infor)

Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Country Heights Damansara, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago

Ultrasound Applications Specialist POC, Malaysia

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

Ultrasound Applications Specialist POC, Malaysia

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

Product Operation Specialist - Data Acquisition

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 6 days ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 17 hours ago

Business Analyst, Digital & Innovation (MY & Regional), Technology, Cards, Group CFS

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 6 days ago

Business Analyst (Intraday Liquidity Management System)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 5 days ago

Regional Application Manager - Life & Health Insurance

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 months ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Federal Territory of Kuala Lumpur, Malaysia 22 hours ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 6 days ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Agency Innovation & Technology (Business Analyst)

Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

Chatbot Business Analyst - Operations, MY Marketplace

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 4 days ago

Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

Business Analyst (With OutSystems Experience)

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 10 months ago

Federal Territory of Kuala Lumpur, Malaysia 1 day ago

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

Federal Territory of Kuala Lumpur, Malaysia 3 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Application Security Jobs