89 Information Security jobs in Malaysia
Manager, Information Security Governance @ AIA Digital+
Posted 1 day ago
Job Viewed
Job Description
Are you ready to shape a better tomorrow?
AIA Digital+ is a Technology, Digital and Analytics innovation hub dedicated to powering AIA to be more efficient, connected and innovative as it fulfils its Purpose to help millions of people across Asia-Pacific live Healthier, Longer, Better Lives.
If you are hungry and driven to play an active role in shaping a better tomorrow, we want to hear from you. Because the work we do at AIA Digital+ makes a difference in the lives of millions of people, every day. We will equip you with the critical skills, tools and technology, and endless opportunities to learn, contribute and thrive in a dynamic and exciting environment.
If you want to shape a brighter future at AIA Digital+, please read on.
About the RoleThis role manages the Third Party Security Assessment process and provides Security Metric Reporting.
Roles and Responsibilities:- Coordinate with external service providers to ensure timely and effective third-party security assessments (TPSA) prior to vendor onboarding.
- Monitor and follow up with internal stakeholders on remediation plans for unresolved third-party security issues.
- Track and escalate third-party BitSight security ratings that fall below the defined security threshold.
- Maintain accurate and up-to-date records of vendor inventory and TPSA status.
- Support the execution and continuous improvement of TPSA processes, tools, and workflows.
- Assist in the implementation of security policies, procedures, and controls to ensure third-party compliance.
- Collaborate with the incident response team to monitor third-party threats and support incident handling.
- Provide guidance to Local Business Units (LBUs) on managing third-party security risks and controls.
- Prepare and deliver regular reports on TPSA activities and risk findings to senior team members.
- Promote awareness of third-party security requirements and best practices across internal teams and vendors.
- Bachelor's degree in IT, Computer Science, or a related discipline.
- Minimum of 10 years of experience in Information Security, Technology Risk, or IT Auditing, preferably with regional experience.
- Excellent written and verbal communication skills, with the ability to escalate issues clearly and promptly to management.
- Strong critical thinking and analytical skills for handling complex situations.
- Proven ability to articulate IT controls and risks effectively.
- Ability to work independently with minimal supervision.
- Comprehensive knowledge of industry technology control frameworks and standards, such as ISO 27001, and NIST Cyber Security Framework v2.0.
- Experience in third-party security assessment is advantageous.
- Relevant certifications such as CISSP, CISM, CISA, CRISC, and/or ISO 27001 are a plus.
- Strong people management and communication skills.
- Ability to work proactively with diverse stakeholders across different countries, translating business language into information security and technical language, and vice versa.
- Experience in cross-border management.
Build a career with us as we help our customers and the community live healthier, longer, better lives.
You must provide all requested information, including Personal Data, to be considered for this career opportunity. Failure to provide such information may influence the processing and outcome of your application. You are responsible for ensuring that the information you submit is accurate and up-to-date.
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
#J-18808-LjbffrSenior Information Security Engineer (ISE)
Posted 1 day ago
Job Viewed
Job Description
Now Hiring: Senior Information Security Engineer
Employment Type: Full-timeExperience Required: Minimum 3 Years | Certification: CISSP Mandatory
We are seeking a proactive and technically strong Senior Information Security Engineer to design and implement enterprise-wide security infrastructure. The ideal candidate will have solid hands-on experience, strong technical implementation skills, and a passion for safeguarding critical business systems.
Key Responsibilities Security Architecture & EngineeringDesign and implement robust, scalable, and secure IT infrastructure.
Embed security into system and software designs across platforms.
Evaluate and recommend appropriate security tools and solutions.
Automate security tasks for efficiency and consistency.
Implement and manage threat intelligence tools and monitoring systems.
Lead incident response and conduct root cause analysis.
Continuously monitor for vulnerabilities and intrusions.
️ Vulnerability ManagementPerform vulnerability assessments and penetration testing.
Partner with development and operations teams to remediate findings.
Enhance patch management practices to reduce risk exposure.
Security Awareness & TrainingMentor junior security engineers and analysts.
Support and lead internal security training and awareness campaigns.
Advise business units on security best practices and compliance measures.
RequirementsMinimum 3 years experience as an IT Security Engineer.
Hands-on experience with security technical solution implementation (mandatory).
CISSP Certification is mandatory.
Experience working with security vendors and industry-standard tools.
Proficient knowledge in:
Network, application, and database security
Security baselines and policy implementation
#J-18808-LjbffrMalaysia Chief Information Security Officer and Country Cybersecurity Lead
Posted 4 days ago
Job Viewed
Job Description
USD 60,000 - 90,000
Be among the first applicants.
5 days ago
Join our team to play a pivotal role in mitigating tech risks and upholding operational excellence, driving innovation in risk management.
As a Tech Risk & Controls Lead in Malaysia, you will be responsible for identifying, and mitigating compliance and operational risks in line with the firm's standards. You will also provide subject matter expertise and technical guidance to technology-aligned process owners, ensuring that implemented controls are operating effectively and in compliance with regulatory, legal, and industry standards. By partnering with various stakeholders, including Product Owners, Business Control Managers, and Regulators, you will contribute to the reporting of a comprehensive view of technology risk posture and its impact on the business. Your advanced knowledge of risk management principles, practices, and theories will enable you to drive innovative solutions and effectively manage a diverse team in a dynamic and evolving risk landscape.
Job responsibilities
- Ensure effective identification, quantification, communication, and management of technology risk, focusing on root cause analysis and resolution recommendations
- Develop and maintain robust relationships, becoming a trusted partner with LOB technologists, assessments teams, and data officers to facilitate cross-functional collaboration and progress toward shared goals
- Execute reporting and governance of controls, policies, issue management, and measurements, offering senior management insights into control effectiveness and inform governance work
- Proactively monitor and evaluate KRIs, KPI, and control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and regulatory compliance
- Be the main point of contact with Regulator on Technology/Cyber Risk matter, including managing entity-specific risks including supporting prompt incident response impacting the entity.
- Keep apprised of current and emerging technology risks which could potentially affect the financial institution’s risk profile.
- Be responsible for bringing to the notice of the Location Board/ Location Operating Committee /IT sub-committee of the board about the cyber security risk the bank is exposed to.
- Coordinate the activities pertaining to Malaysia Regulator Reporting procedure for Cyber Incident and coordination with Cyber Security Operation Center.
- Be responsible for the timely completion and submission of regulatory required assessment.
Required qualifications, capabilities, and skills
- 5+ years of experience or equivalent expertise in technology risk management, information security, or related field, emphasizing risk identification, assessment, and mitigation
- Familiarity with risk management frameworks, industry standards, and financial industry regulatory requirements
- Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
- Demonstrated ability to influence executive-level strategic decision-making and translating technology insights into business strategies for senior executives
Preferred qualifications, capabilities, and skills
- CISM, CRISC, CISSP, or similar industry-recognized risk and risk certifications are preferred
Malaysia Chief Information Security Officer and Country Cybersecurity Lead
Posted 5 days ago
Job Viewed
Job Description
Add expected salary to your profile for insights
Join our team to play a pivotal role in mitigating tech risks and upholding operational excellence, driving innovation in risk management.
As a Tech Risk & Controls Lead in Malaysia, you will be responsible for identifying, and mitigating compliance and operational risks in line with the firm's standards. You will also provide subject matter expertise and technical guidance to technology-aligned process owners, ensuring that implemented controls are operating effectively and in compliance with regulatory, legal, and industry standards. By partnering with various stakeholders, including Product Owners, Business Control Managers, and Regulators, you will contribute to the reporting of a comprehensive view of technology risk posture and its impact on the business. Your advanced knowledge of risk management principles, practices, and theories will enable you to drive innovative solutions and effectively manage a diverse team in a dynamic and evolving risk landscape.
Job responsibilities
- Ensure effective identification, quantification, communication, and management of technology risk, focusing on root cause analysis and resolution recommendations
- Develop and maintain robust relationships, becoming a trusted partner with LOB technologists, assessments teams, and data officers to facilitate cross-functional collaboration and progress toward shared goals
- Execute reporting and governance of controls, policies, issue management, and measurements, offering senior management insights into control effectiveness and inform governance work
- Proactively monitor and evaluate KRIs, KPI, and control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and regulatory compliance
- Be the main point of contact with Regulator on Technology/Cyber Risk matter, including managing entity-specific risks including supporting prompt incident response impacting the entity.
- Keep apprised of current and emerging technology risks which could potentially affect the financial institution’s risk profile.
- Be responsible for bringing to the notice of the Location Board/ Location Operating Committee /IT sub-committee of the board about the cyber security risk the bank is exposed to.
- Coordinate the activities pertaining to Malaysia Regulator Reporting procedure for Cyber Incident and coordination with Cyber Security Operation Center.
- Be responsible for the timely completion and submission of regulatory required assessment.
Required qualifications, capabilities, and skills
- 5+ years of experience or equivalent expertise in technology risk management, information security, or related field, emphasizing risk identification, assessment, and mitigation
- Familiarity with risk management frameworks, industry standards, and financial industry regulatory requirements
- Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
- Demonstrated ability to influence executive-level strategic decision-making and translating technology insights into business strategies for senior executives
Preferred qualifications, capabilities, and skills
- CISM, CRISC, CISSP, or similar industry-recognized risk and risk certifications are preferred
Salary match Number of applicants Skills match
J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world’s most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company.
J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world’s most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company.
Be careful This job ad has not been subjected to our hirer verification process. Proceed cautiously and do your own checks before providing any personal information. Learn how to protect yourself Report this job ad Your email address Reason for reporting job Additional comments To help fast track investigation, please include here any other relevant details that prompted you to report this job ad as fraudulent / misleading / discriminatory.
Researching careers? Find all the information and tips you need on career advice.
#J-18808-LjbffrHead of Information Security
Posted 5 days ago
Job Viewed
Job Description
U Mobile Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
Head of Information SecurityU Mobile Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
Life at U Mobile
We are Passionate, Innovative, Trustworthy, Team-Oriented & Fun-Loving.
Life at U Mobile
We are Passionate, Innovative, Trustworthy, Team-Oriented & Fun-Loving.
At U Mobile, we are always on the lookout for great talents and passionate individuals to join our growing team.
Let’s start your journey with an award-winning organization!
#UnbeatableCareerAwaits
Top Reasons To Join Us!
- Awarded For
- Most Preferred Employers in Telecommunication Industry (2022, 2023 & 2024)
- Bronze Winner in Cross-Generational Workforce Engagement (2024)
- Gold Winner for Excellence in Workplace Culture (2021)
- Comprehensive medical, dental, optical and insurance benefits
- Flexi working hours arrangements
- Staff Line & Device Subsidy
- Smart Casual Attire
- Child Parental Care Leave
- Convenient location with access to public transport (Imbi Monorail/Bukit Bintang MRT)
- Special employee discounts for selected F&B Brands
- As the Head of Information Security, you will be responsible for protecting the integrity, confidentiality, and availability of our information systems, networks, and customer platforms across the enterprise, wholesale, and retail businesses. This role will lead the company's cybersecurity strategy, governance, risk management, operations, and incident response efforts in close collaboration with the existing cybersecurity team and business units. You will formulate and implement security strategies aligned with the company’s technology vision and enterprise risk management objectives, supporting our ambitions to grow securely and responsibly across all segments.
- Working with MCMC and NACSA. Key to ensure we are in the loop and able to access key stakeholders.
- Key internal stakeholders would be Audit Committee for regular reporting and updates of the plan and progress
- General industry to ensure organization are respected and building a credible brand in the Information Security angle.
- Leadership & Talent Development
- Lead and mentor cybersecurity team members.
- Foster a strong cybersecurity culture across the organization.
- Drive professional and personal development of the team through coaching, training, and upskilling initiatives.
- Minimum 10+ years of experience in information security management, cybersecurity operations, or related functions.
- Bachelor’s or Master’s Degree in Information Technology, Computer Science, Cybersecurity, or related fields.
- Prior leadership experience in a telecommunications or technology-driven environment, covering enterprise, wholesale, and retail businesses.
- Proven experience with cybersecurity frameworks (NIST, ISO 27001, etc.), risk management, and incident management.
- Deep knowledge of telecommunications networks, IT infrastructure, and cybersecurity technologies.
- Strong understanding of cloud security, application security, and data privacy regulations.
- Demonstrated ability to balance security needs with business enablement.
- Excellent stakeholder management, communication, and leadership skills.
- Professional certifications such as CISSP, CISM, CISA, or equivalent are highly desirable.
- Seniority level Executive
- Employment type Full-time
- Job function Information Technology
- Industries Telecommunications
Referrals increase your chances of interviewing at U Mobile by 2x
Sign in to set job alerts for “Head of Information Security” roles. VP, Business Information Security OfficerFederal Territory of Kuala Lumpur, Malaysia 15 hours ago
Resident Chief Information Security OfficerWP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 days ago
Director, CFCC Data Conduct, Privacy & Sovereignty (Malaysia/Philippines/Poland)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Federal Territory of Kuala Lumpur, Malaysia 3 days ago
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 18 hours ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
Federal Territory of Kuala Lumpur, Malaysia 4 weeks ago
Manager, Internal Audit - IT/Technical & NetworkKuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Associate Director, OTCR, WRB (Malaysia / India)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 months ago
Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
Federal Territory of Kuala Lumpur, Malaysia 17 hours ago
Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 6 days ago
Third Party Security Specialist (Fixed Term Contract)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrMalaysia Chief Information Security Officer and Country Cybersecurity Lead
Posted 5 days ago
Job Viewed
Job Description
JPMorganChase Taman Wilayah, Federal Territory of Kuala Lumpur, Malaysia
Join or sign in to find your next jobJoin to apply for the Malaysia Chief Information Security Officer and Country Cybersecurity Lead role at JPMorganChase
Malaysia Chief Information Security Officer and Country Cybersecurity LeadJPMorganChase Taman Wilayah, Federal Territory of Kuala Lumpur, Malaysia
Join to apply for the Malaysia Chief Information Security Officer and Country Cybersecurity Lead role at JPMorganChase
Get AI-powered advice on this job and more exclusive features.
Job Description
Join our team to play a pivotal role in mitigating tech risks and upholding operational excellence, driving innovation in risk management.
Job Description
Join our team to play a pivotal role in mitigating tech risks and upholding operational excellence, driving innovation in risk management.
As a Tech Risk & Controls Lead in Malaysia, you will be responsible for identifying, and mitigating compliance and operational risks in line with the firm's standards. You will also provide subject matter expertise and technical guidance to technology-aligned process owners, ensuring that implemented controls are operating effectively and in compliance with regulatory, legal, and industry standards. By partnering with various stakeholders, including Product Owners, Business Control Managers, and Regulators, you will contribute to the reporting of a comprehensive view of technology risk posture and its impact on the business. Your advanced knowledge of risk management principles, practices, and theories will enable you to drive innovative solutions and effectively manage a diverse team in a dynamic and evolving risk landscape.
Job Responsibilities
- Ensure effective identification, quantification, communication, and management of technology risk, focusing on root cause analysis and resolution recommendations
- Develop and maintain robust relationships, becoming a trusted partner with LOB technologists, assessments teams, and data officers to facilitate cross-functional collaboration and progress toward shared goals
- Execute reporting and governance of controls, policies, issue management, and measurements, offering senior management insights into control effectiveness and inform governance work
- Proactively monitor and evaluate KRIs, KPI, and control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and regulatory compliance
- Be the main point of contact with Regulator on Technology/Cyber Risk matter, including managing entity-specific risks including supporting prompt incident response impacting the entity.
- Keep apprised of current and emerging technology risks which could potentially affect the financial institution’s risk profile.
- Be responsible for bringing to the notice of the Location Board/ Location Operating Committee /IT sub-committee of the board about the cyber security risk the bank is exposed to.
- Coordinate the activities pertaining to Malaysia Regulator Reporting procedure for Cyber Incident and coordination with Cyber Security Operation Center.
- Be responsible for the timely completion and submission of regulatory required assessment.
- 5+ years of experience or equivalent expertise in technology risk management, information security, or related field, emphasizing risk identification, assessment, and mitigation
- Familiarity with risk management frameworks, industry standards, and financial industry regulatory requirements
- Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
- Demonstrated ability to influence executive-level strategic decision-making and translating technology insights into business strategies for senior executives
- CISM, CRISC, CISSP, or similar industry-recognized risk and risk certifications are preferred
J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world’s most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
About The Team
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success. Seniority level
- Seniority level Not Applicable
- Employment type Full-time
- Job function Information Technology
Referrals increase your chances of interviewing at JPMorganChase by 2x
Get notified about new Chief Information Security Officer jobs in Taman Wilayah, Federal Territory of Kuala Lumpur, Malaysia .
Assistant Manager - CIO Advisory - ITET (Petaling Jaya) VP, Business Information Security OfficerFederal Territory of Kuala Lumpur, Malaysia 11 hours ago
Resident Chief Information Security Officer Director, CFCC Data Conduct, Privacy & Sovereignty (Malaysia/Philippines/Poland)Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago
WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago
Bukit Jalil, Federal Territory of Kuala Lumpur, Malaysia 2 days ago
Blockchain Security Technical Support EngineerKuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrInformation Security Engineer
Posted 6 days ago
Job Viewed
Job Description
This job is for an Information Security Engineer . You might like this role because you'll be responsible for protecting an organization's data and systems, collaborating with different teams to address security threats, and ensuring smooth operations while maintaining compliance.
Responsibilities- Oversee the development, implementation, and maintenance of security systems within the organization.
- Collaborate with all organizational levels to ensure security measures align with risk management policies.
- Coordinate with IT and Application teams on technical considerations such as threat monitoring, vulnerability assessment, and mitigation, providing ongoing support for security operations.
- Manage and maintain the organization's security posture.
- Evaluate existing systems and procedures, recommending improvements as needed.
- Monitor systems for threats and manage the Security Operations Center (SOC).
- Maintain corporate compliance and certification status, working with Qualified Security Assessors (QSA) during re-certification processes.
- Diploma or Bachelor's Degree in Computer Science or a related field.
- Knowledge of application development, programming, and scripting.
- Understanding of LAN/WAN/TCP/IP networks, firewalls, and intrusion prevention systems (IPS) is advantageous.
- Knowledge of cybersecurity principles.
- Familiarity with penetration testing tools and network analysis tools (e.g., WireShark, nmap) is a plus.
- Attention to detail and a strong commitment to security.
- Desire to stay updated with the latest security threats and practices.
- Proficiency in English, both spoken and written.
Be The First To Know
About the latest Information security Jobs in Malaysia !
Senior Information Security Engineer
Posted 6 days ago
Job Viewed
Job Description
This job is for a Senior Information Security Engineer who safeguards our organization’s digital assets. You might like this job because it involves working with teams to tackle security risks and improve our systems while keeping everything compliant and secure.
- Overseeing overall development, implementation, and maintenance of security systems within the organization.
- Work closely with all levels of the organization to ensure the level of security aligns with security and organizational risk management policies.
- Coordinate with IT and Application teams regarding technical considerations (threat and vulnerability monitoring, hunting, assessment, eradication, and mitigation) to ensure proper implementation and provide ongoing support of all security operations.
- Manage and maintain the company's security posture.
- Evaluate existing systems and procedures, and recommend improvements as needed.
- Operate the SOC, evaluate, and monitor systems for threats.
- Maintain corporate compliance and certification status, working with Qualified Security Assessors (QSA) during re-certification processes.
- Diploma / Bachelor's Degree in Computer Science or a related technology field.
- Knowledge of application development/programming and scripting.
- Experience with penetration testing tools, network tracing/scanning tools (WireShark, tcpdump, nmap), and application and database security.
- Knowledge of Cyber Security principles.
- Understanding of LAN / WAN / TCP/IP networks, firewalls, IPS, or operating systems is an advantage.
- Attention to detail and a strong commitment to security.
- Drive to stay updated with the latest security threats, best practices, and issues.
- Proficiency in English, both spoken and written.
Malaysia Chief Information Security Officer and Country Cybersecurity Lead
Posted 6 days ago
Job Viewed
Job Description
Join our team to play a pivotal role in mitigating tech risks and upholding operational excellence, driving innovation in risk management.
As a Tech Risk & Controls Lead in Malaysia, you will be responsible for identifying, and mitigating compliance and operational risks in line with the firm's standards. You will also provide subject matter expertise and technical guidance to technology-aligned process owners, ensuring that implemented controls are operating effectively and in compliance with regulatory, legal, and industry standards. By partnering with various stakeholders, including Product Owners, Business Control Managers, and Regulators, you will contribute to the reporting of a comprehensive view of technology risk posture and its impact on the business. Your advanced knowledge of risk management principles, practices, and theories will enable you to drive innovative solutions and effectively manage a diverse team in a dynamic and evolving risk landscape.
Job responsibilities
- Ensure effective identification, quantification, communication, and management of technology risk, focusing on root cause analysis and resolution recommendations
- Develop and maintain robust relationships, becoming a trusted partner with LOB technologists, assessments teams, and data officers to facilitate cross-functional collaboration and progress toward shared goals
- Execute reporting and governance of controls, policies, issue management, and measurements, offering senior management insights into control effectiveness and inform governance work
- Proactively monitor and evaluate KRIs, KPI, and control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and regulatory compliance
- Be the main point of contact with Regulator on Technology/Cyber Risk matter, including managing entity-specific risks including supporting prompt incident response impacting the entity.
- Keep apprised of current and emerging technology risks which could potentially affect the financial institution’s risk profile.
- Be responsible for bringing to the notice of the Location Board/ Location Operating Committee /IT sub-committee of the board about the cyber security risk the bank is exposed to.
- Coordinate the activities pertaining to Malaysia Regulator Reporting procedure for Cyber Incident and coordination with Cyber Security Operation Center.
- Be responsible for the timely completion and submission of regulatory required assessment.
Required qualifications, capabilities, and skills
- 5+ years of experience or equivalent expertise in technology risk management, information security, or related field, emphasizing risk identification, assessment, and mitigation
- Familiarity with risk management frameworks, industry standards, and financial industry regulatory requirements
- Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
- Demonstrated ability to influence executive-level strategic decision-making and translating technology insights into business strategies for senior executives
Preferred qualifications, capabilities, and skills
- CISM, CRISC, CISSP, or similar industry-recognized risk and risk certifications are preferred
Information Security Senior Project Manager
Posted 6 days ago
Job Viewed
Job Description
Functional Area: Project Management / Information Security
Role Category:
Role Category: Senior Management
Role Category:
Role Category: --
Employment Type:
Employment Type: Full Time
Experience:
Experience: 8 to 10 years of project management experience
Location:
Location: Malaysia
Prefferred Language :
Job Summary- The Information Security Senior Project Manager will lead and oversee complex cybersecurity projects, ensuring they are delivered on time, within scope, and within budget. This role requires strategic planning, effective communication, and risk management to align with business objectives and executive leadership's expectations.
- Lead the planning and implementation of project activities to ensure successful delivery within scope, time, and budget constraints.
- Define project scope, goals, and deliverables in collaboration with senior management and stakeholders.
- Develop full-scale project plans and associated communication documents.
- Effectively communicate project expectations to team members and stakeholders in a timely and clear fashion.
- Manage project resources, schedules, and financials, adhering to stage gate quality, SDLC control guidelines, and Agile methodology.
- Delegate tasks and responsibilities to appropriate personnel.
- Identify and manage project dependencies and critical path.
- Collaborate with stakeholders to define program objectives, deliverables, and timelines.
- Deliver multiple projects under tight schedules.
- Manage cybersecurity projects to ensure timely, within scope, and budget delivery.
- Understand cybersecurity domains and processes.
- Communicate program status, risks, and issues to executive leadership and propose mitigation strategies.
- Plan and schedule project timelines and milestones using appropriate tools.
- Track project milestones and deliverables.
- Prepare project status reports.
- Manage day-to-day project activities and chair project management team meetings.
- Develop and deliver progress reports, proposals, requirements documentation, and presentations.
- Proactively manage changes in project scope, identify potential crises, and devise contingency plans.
- Lead cross-functional teams to ensure successful program execution, including risk management, resource allocation, and project scheduling.
- Foster a culture of continuous improvement by incorporating feedback and lessons learned into program processes.
- Experience in strategic planning, risk management, and change management.
- Strong familiarity with project management software tools, methodologies, and best practices.
- Strong competency in Microsoft collaborative platforms including Teams, Word, Excel, PowerPoint, and Outlook.
- Excellent decision-making and leadership capabilities.
- Exceptional communication skills, both written and verbal.
- Professional project management certification (e.g., PMP, PRINCE2) is preferred.
- Experience in managing large-scale projects with significant budget and resource requirements.
- Understanding of cybersecurity domains and processes.
Name *
Email *
Phone * +91
- United States +1
- United Kingdom +44
- Afghanistan (افغانستان) +93
- Albania (Shqipëri) +355
- Algeria (الجزائر) +213
- American Samoa +1
- Andorra +376
- Angola +244
- Anguilla +1
- Antigua and Barbuda +1
- Argentina +54
- Armenia (Հայաստան) +374
- Aruba +297
- Ascension Island +247
- Australia +61
- Austria (Österreich) +43
- Azerbaijan (Azərbaycan) +994
- Bahamas +1
- Bahrain (البحرين) +973
- Bangladesh (বাংলাদেশ) +880
- Barbados +1
- Belarus (Беларусь) +375
- Belgium (België) +32
- Belize +501
- Benin (Bénin) +229
- Bermuda +1
- Bhutan (འབྲུག) +975
- Bolivia +591
- Bosnia and Herzegovina (Босна и Херцеговина) +387
- Botswana +267
- Brazil (Brasil) +55
- British Indian Ocean Territory +246
- British Virgin Islands +1
- Brunei +673
- Bulgaria (България) +359
- Burkina Faso +226
- Burundi (Uburundi) +257
- Cambodia (កម្ពុជា) +855
- Cameroon (Cameroun) +237
- Canada +1
- Cape Verde (Kabu Verdi) +238
- Caribbean Netherlands +599
- Cayman Islands +1
- Central African Republic (République centrafricaine) +236
- Chad (Tchad) +235
- Chile +56
- China (中国) +86
- Christmas Island +61
- Cocos (Keeling) Islands +61
- Colombia +57
- Comoros (جزر القمر) +269
- Congo (DRC) (Jamhuri ya Kidemokrasia ya Kongo) +243
- Congo (Republic) (Congo-Brazzaville) +242
- Cook Islands +682
- Costa Rica +506
- Côte d’Ivoire +225
- Croatia (Hrvatska) +385
- Cuba +53
- Curaçao +599
- Cyprus (Κύπρος) +357
- Czech Republic (Česká republika) +420
- Denmark (Danmark) +45
- Djibouti +253
- Dominica +1
- Dominican Republic (República Dominicana) +1
- Ecuador +593
- Egypt (مصر) +20
- El Salvador +503
- Equatorial Guinea (Guinea Ecuatorial) +240
- Eritrea +291
- Estonia (Eesti) +372
- Eswatini +268
- Ethiopia +251
- Falkland Islands (Islas Malvinas) +500
- Faroe Islands (Føroyar) +298
- Fiji +679
- Finland (Suomi) +358
- France +33
- French Guiana (Guyane française) +594
- French Polynesia (Polynésie française) +689
- Gabon +241
- Gambia +220
- Georgia (საქართველო) +995
- Germany (Deutschland) +49
- Ghana (Gaana) +233
- Gibraltar +350
- Greece (Ελλάδα) +30
- Greenland (Kalaallit Nunaat) +299
- Grenada +1
- Guadeloupe +590
- Guam +1
- Guatemala +502
- Guernsey +44
- Guinea (Guinée) +224
- Guinea-Bissau (Guiné Bissau) +245
- Guyana +592
- Haiti +509
- Honduras +504
- Hong Kong (香港) +852
- Hungary (Magyarország) +36
- Iceland (Ísland) +354
- India (भारत) +91
- Indonesia +62
- Iran (ایران) +98
- Iraq (العراق) +964
- Ireland +353
- Isle of Man +44
- Israel (ישראל) +972
- Italy (Italia) +39
- Jamaica +1
- Japan (日本) +81
- Jersey +44
- Jordan (الأردن) +962
- Kazakhstan (Казахстан) +7
- Kenya +254
- Kiribati +686
- Kosovo +383
- Kuwait (الكويت) +965
- Kyrgyzstan (Кыргызстан) +996
- Laos (ລາວ) +856
- Latvia (Latvija) +371
- Lebanon (لبنان) +961
- Lesotho +266
- Liberia +231
- Libya (ليبيا) +218
- Liechtenstein +423
- Lithuania (Lietuva) +370
- Luxembourg +352
- Macau (澳門) +853
- Macedonia (FYROM) (Македонија) +389
- Madagascar (Madagasikara) +261
- Malawi +265
- Malaysia +60
- Maldives +960
- Mali +223
- Malta +356
- Marshall Islands +692
- Martinique +596
- Mauritania (موريتانيا) +222
- Mauritius (Moris) +230
- Mayotte +262
- Mexico (México) +52
- Micronesia +691
- Moldova (Republica Moldova) +373
- Monaco +377
- Mongolia (Монгол) +976
- Montenegro (Crna Gora) +382
- Montserrat +1
- Morocco (المغرب) +212
- Mozambique (Moçambique) +258
- Myanmar (Burma) (မြန်မာ) +95
- Namibia (Namibië) +264
- Nauru +674
- Nepal (नेपाल) +977
- Netherlands (Nederland) +31
- New Caledonia (Nouvelle-Calédonie) +687
- New Zealand +64
- Nicaragua +505
- Niger (Nijar) +227
- Nigeria +234
- Niue +683
- Norfolk Island +672
- North Korea (조선 민주주의 인민 공화국) +850
- Northern Mariana Islands +1
- Norway (Norge) +47
- Oman (عُمان) +968
- Pakistan (پاکستان) +92
- Palau +680
- Palestine (فلسطين) +970
- Panama (Panamá) +507
- Papua New Guinea +675
- Paraguay +595
- Peru (Perú) +51
- Philippines +63
- Poland (Polska) +48
- Portugal +351
- Puerto Rico +1
- Qatar (قطر) +974
- Réunion (La Réunion) +262
- Romania (România) +40
- Russia (Россия) +7
- Rwanda +250
- Saint Barthélemy +590
- Saint Helena +290
- Saint Kitts and Nevis +1
- Saint Lucia +1
- Saint Martin (Saint-Martin (partie française)) +590
- Saint Pierre and Miquelon (Saint-Pierre-et-Miquelon) +508
- Saint Vincent and the Grenadines +1
- Samoa +685
- San Marino +378
- São Tomé and Príncipe (São Tomé e Príncipe) +239
- Saudi Arabia (المملكة العربية السعودية) +966
- Senegal (Sénégal) +221
- Serbia (Србија) +381
- Seychelles +248
- Sierra Leone +232
- Singapore +65
- Sint Maarten +1
- Slovakia (Slovensko) +421
- Slovenia (Slovenija) +386
- Solomon Islands +677
- Somalia (Soomaaliya) +252
- South Africa +27
- South Korea (대한민국) +82
- South Sudan (جنوب السودان) +211
- Spain (España) +34
- Sri Lanka (ශ්රී ලංකාව) +94
- Sudan (السودان) +249
- Suriname +597
- Svalbard and Jan Mayen +47
- Sweden (Sverige) +46
- Switzerland (Schweiz) +41
- Syria (سوريا) +963
- Taiwan (台灣) +886
- Tajikistan +992
- Tanzania +255
- Thailand (ไทย) +66
- Timor-Leste +670
- Togo +228
- Tokelau +690
- Tonga +676
- Trinidad and Tobago +1
- Tunisia (تونس) +216
- Turkey (Türkiye) +90
- Turkmenistan +993
- Turks and Caicos Islands +1
- Tuvalu +688
- U.S. Virgin Islands +1
- Uganda +256
- Ukraine (Україна) +380
- United Arab Emirates (الإمارات العربية المتحدة) +971
- United Kingdom +44
- United States +1
- Uruguay +598
- Uzbekistan (Oʻzbekiston) +998
- Vanuatu +678
- Vatican City (Città del Vaticano) +39
- Venezuela +58
- Vietnam (Việt Nam) +84
- Wallis and Futuna (Wallis-et-Futuna) +681
- Western Sahara (الصحراء الغربية) +212
- Yemen (اليمن) +967
- Zambia +260
- Zimbabwe +263
- Åland Islands +358