Manager, Information Security

Kuala Lumpur, Kuala Lumpur VF Corporation

Posted today

Job Viewed

Tap Again To Close

Job Description

Manager, Information Security page is loadedManager, Information Security Apply locations ASIA > MYS > Kuala Lumpur > KL Office time type Full time posted on Posted 30+ Days Ago job requisition id R-

The Cyber Security Manager will support VF’s Global Cyber Security Team by ensuring that information security risks associated with complex business operations are within acceptable tolerances.

You will perform information security risk assessments, provide direction and guidance to stakeholders concerning the handling of security risks associated with assessment findings, assist with the design of appropriate risk mitigation strategies, and serve as an audit quality assurance gate for internal and external auditors while driving compliance and audit work related to data privacy.

How You Will Make a Difference

You will achieve this by:

  • Collaborating with information technology and other business units to identify cybersecurity risks associated with current and planned projects.
  • Performing assessments of external party information security controls to ensure they meet or exceed VF’s information security risk management requirements for the services to be provided.
  • Determining information security risk profiles for various vendor and business partner services using questionnaires, relevant industry best practices and standards, and knowledge of VF policies.
  • Recommending solutions to eliminate, reduce, or mitigate cybersecurity risk, and communicate said solutions to external parties and/or internal business stakeholders as appropriate.
  • Providing direction and guidance as needed to internal project stakeholders concerning statutory, regulatory, and VF policy requirements.
  • Reporting status of engagements to Global Cyber Security management, project managers, and other business stakeholders as appropriate.
  • Assisting in enforcing information security policies, standards, and procedures. Review requests for exceptions to security policies and provide recommendations to management.
  • Serving as a focal point for MLPS and provide advisory around MLPS and other APAC data privacy laws related controls and processes.
  • Acting as focal point for Regional PCI-DSS assessments, vulnerability assessments and other security operations.
  • Researching and advocate new technologies, architectures, and products that will support security requirements for the enterprise and its customers, business partners, and vendors.
  • Performing other information security risk management tasks as assigned.

Skills for Success

Aformal education and subsequent University Bachelor or Master’s degree in information systems, computer science, or related field are preferred, but we are mostinterested in your total experience and professional achievements. That’s why:

  • You rely on 5+ years of information security risk management, IT audit, and/or IT controls design and implementation experience.
  • You possess a Certified Information Systems Security Professional (CISSP) certification, Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or similar credentials.
  • You are familiar with industry best practises related to security and data privacy in Cloud environments.
  • You have functional understanding of industry frameworks, regulations, legislation, and audit methodologies, including SOC 1, SOC 2, ISO 27001, SIG, NIST Cybersecurity Framework, Sarbanes-Oxley (SOX), PCI-DSS, MLPS and various other privacy laws.
  • You are apt to broker complex discussions to achieve the proper balance between business needs and cybersecurity best practices.
  • You possess the ability to influence others through persuasion to arrive at desired outcomes.
  • You communicate effectively with a broad range of people and roles, including vendors, information technology professionals, and other business personnel.
  • You desire to seize the initiative, operate proactively, and work in a highly independent manner.
  • You are fluent in English and Mandarin, any other Asian languages are a plus.
R-

About Us

VF Corporation outfits consumers around the world with its diverse portfolio of iconic lifestyle brands, including Vans, The North Face, Timberland, and Dickies. Founded in 1899, VF is one of the world's largest apparel, footwear and accessories companies with socially and environmentally responsible operations spanning numerous geographies, product categories and distribution channels. VF is committed to delivering innovative products to consumers and creating long-term value for its customers and shareholders.

VF Vision Statement
VF is committed to creating an inclusive environment that welcomes and values the differences among all of our associates, customers, suppliers and the communities in which we live and conduct business. The continued success and growth of VF is enhanced through initiatives that promote inclusion throughout VF around the world.VF is an equal opportunity employer. VF provides equal employment and advancement opportunities to all qualified individuals. VF bases employment decisions on skills, qualifications, and abilities. To learn more, read our Equal Opportunity Employment Policy here .

VF is committed to meeting the diverse needs of people with disabilities in a timely manner that is consistent with the principles of independence, dignity, integration and equality of opportunity, and will do so by striving to identify, prevent and remove barriers to accessibility wherever possible as well as by meeting the accessibility requirements under the ADA, AODA, and other applicable state, local or provincial regulations.

VF is committed to digital accessibility, and to conforming to the Web Content Accessibility Guidelines (WCAG) 2.1, Level AA and complying with the ADA and AODA Standards for Accessible Design, and other applicable regulations.

If you need an accommodation or have any questions regarding this statement, please send your request to .

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Information Security Officer

Kuala Lumpur, Kuala Lumpur DUG Technology

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

List of Responsibilities:

  • Ongoing leadership and review of IT security

  • Implementing and designing cyber security policies, procedures and system solutions in line with industry standards and certifications

  • Operate, conduct, and maintain DUG’s SIEM platform and conduct regular security audits of systems, policies, procedures, network configuration, operating systems, authentication systems, permission structures

  • Serve as the DUG point person for third-party security audit(s)

  • Provide pre-sales security briefings / Q&A to DUG HPC Cloud customer security teams

  • Work with DUG HPC Cloud customers and DUG teams on security integration

  • Provide strategic-level guidance for DUG’s cyber security program and ensure compliance with cyber security policy, standards, regulations and legislation, working with the senior executives within DUG.

  • Ensure the alignment of cyber security and business objectives within DUG. To achieve this, you will facilitate communication between cyber security and business stakeholders. This includes translating cyber security concepts and language into business concepts and language as well as ensuring that business teams consult with cyber security teams to determine appropriate security measures when planning new business projects. Additionally, you will be responsible for the development of the strategic-level cyber security program, being best placed to advise projects on the strategic direction of cyber security.

  • Contribute to the development and maintenance of DUG’s business continuity and disaster recovery plans, with the aim to improve business resilience and ensure the continued operation of critical business processes

  • Report on the DUG’s security risk profile, the status of key systems and any outstanding security risks, any planned cyber security uplift activities, any recent cyber security incidents, and expected returns on cyber security investments

  • Oversee DUG’s response to cyber security incidents, including how internal teams respond and communicate with each other during an incident

  • Ensure that a consistent vendor management process is applied across their organisation, from discovery through to ongoing management

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Manager, Information Security

Kuala Lumpur, Kuala Lumpur VF Corporation

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

The Cyber Security Manager will support VF's Global Cyber Security Team by ensuring that information security risks associated with complex business operations are within acceptable tolerances.
You will perform information security risk assessments, provide direction and guidance to stakeholders concerning the handling of security risks associated with assessment findings, assist with the design of appropriate risk mitigation strategies, and serve as an audit quality assurance gate for internal and external auditors while driving compliance and audit work related to data privacy.
**How You Will Make a Difference**
You will achieve this by:
+ Collaborating with information technology and other business units to identify cybersecurity risks associated with current and planned projects.
+ Performing assessments of external party information security controls to ensure they meet or exceed VF's information security risk management requirements for the services to be provided.
+ Determining information security risk profiles for various vendor and business partner services using questionnaires, relevant industry best practices and standards, and knowledge of VF policies.
+ Recommending solutions to eliminate, reduce, or mitigate cybersecurity risk, and communicate said solutions to external parties and/or internal business stakeholders as appropriate.
+ Providing direction and guidance as needed to internal project stakeholders concerning statutory, regulatory, and VF policy requirements.
+ Reporting status of engagements to Global Cyber Security management, project managers, and other business stakeholders as appropriate.
+ Assisting in enforcing information security policies, standards, and procedures. Review requests for exceptions to security policies and provide recommendations to management.
+ Serving as a focal point for MLPS and provide advisory around MLPS and other APAC data privacy laws related controls and processes.
+ Acting as focal point for Regional PCI-DSS assessments, vulnerability assessments and other security operations.
+ Researching and advocate new technologies, architectures, and products that will support security requirements for the enterprise and its customers, business partners, and vendors.
+ Performing other information security risk management tasks as assigned.
**Skills for Success**
A formal education and subsequent University Bachelor or Master's degree in information systems, computer science, or related field are preferred, but we are most interested in your total experience and professional achievements. That's why:
+ You rely on 5+ years of information security risk management, IT audit, and/or IT controls design and implementation experience.
+ You possess a Certified Information Systems Security Professional (CISSP) certification, Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or similar credentials.
+ You are familiar with industry best practises related to security and data privacy in Cloud environments.
+ You have functional understanding of industry frameworks, regulations, legislation, and audit methodologies, including SOC 1, SOC 2, ISO 27001, SIG, NIST Cybersecurity Framework, Sarbanes-Oxley (SOX), PCI-DSS, MLPS and various other privacy laws.
+ You are apt to broker complex discussions to achieve the proper balance between business needs and cybersecurity best practices.
+ You possess the ability to influence others through persuasion to arrive at desired outcomes.
+ You communicate effectively with a broad range of people and roles, including vendors, information technology professionals, and other business personnel.
+ You desire to seize the initiative, operate proactively, and work in a highly independent manner.
+ You are fluent in English and Mandarin, any other Asian languages are a plus.
R-
VF Diversity Vision Statement
VF is committed to creating an inclusive environment that welcomes and values the differences among all of our associates, customers, suppliers and the communities in which we live and conduct business. The continued success and growth of VF is enhanced through initiatives that promote diversity throughout VF around the world.VF is an equal employment opportunity/ affirmative action employer of minorities, females, protected veterans and the disabled. VF is committed to providing equal opportunities in employment, and treating our VF associates and VF applicants without discrimination on the basis of their race, color, gender, age, national origin, religion, sexual orientation, gender identity or expression, marital status, citizenship, disability, protected veteran status, HIV/AIDS status, or any other legally protected factor.
This advertiser has chosen not to accept applicants from your region.

Manager, Information Security

Kuala Lumpur, Kuala Lumpur VF Corporation

Posted today

Job Viewed

Tap Again To Close

Job Description

Manager, Information Security page is loaded Manager, Information Security Apply locations ASIA > MYS > Kuala Lumpur > KL Office time type Full time posted on Posted 30+ Days Ago job requisition id R- The Cyber Security Manager will support VF’s Global Cyber Security Team by ensuring that information security risks associated with complex business operations are within acceptable tolerances. You will perform information security risk assessments, provide direction and guidance to stakeholders concerning the handling of security risks associated with assessment findings, assist with the design of appropriate risk mitigation strategies, and serve as an audit quality assurance gate for internal and external auditors while driving compliance and audit work related to data privacy. How You Will Make a Difference You will achieve this by: Collaborating with information technology and other business units to identify cybersecurity risks associated with current and planned projects. Performing assessments of external party information security controls to ensure they meet or exceed VF’s information security risk management requirements for the services to be provided. Determining information security risk profiles for various vendor and business partner services using questionnaires, relevant industry best practices and standards, and knowledge of VF policies. Recommending solutions to eliminate, reduce, or mitigate cybersecurity risk, and communicate said solutions to external parties and/or internal business stakeholders as appropriate. Providing direction and guidance as needed to internal project stakeholders concerning statutory, regulatory, and VF policy requirements. Reporting status of engagements to Global Cyber Security management, project managers, and other business stakeholders as appropriate. Assisting in enforcing information security policies, standards, and procedures. Review requests for exceptions to security policies and provide recommendations to management. Serving as a focal point for MLPS and provide advisory around MLPS and other APAC data privacy laws related controls and processes. Acting as focal point for Regional PCI-DSS assessments, vulnerability assessments and other security operations. Researching and advocate new technologies, architectures, and products that will support security requirements for the enterprise and its customers, business partners, and vendors. Performing other information security risk management tasks as assigned. Skills for Success Aformal education and subsequent University Bachelor or Master’s degree in information systems, computer science, or related field are preferred, but we are mostinterested in your total experience and professional achievements. That’s why: You rely on 5+ years of information security risk management, IT audit, and/or IT controls design and implementation experience. You possess a Certified Information Systems Security Professional (CISSP) certification, Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or similar credentials. You are familiar with industry best practises related to security and data privacy in Cloud environments. You have functional understanding of industry frameworks, regulations, legislation, and audit methodologies, including SOC 1, SOC 2, ISO 27001, SIG, NIST Cybersecurity Framework, Sarbanes-Oxley (SOX), PCI-DSS, MLPS and various other privacy laws. You are apt to broker complex discussions to achieve the proper balance between business needs and cybersecurity best practices. You possess the ability to influence others through persuasion to arrive at desired outcomes. You communicate effectively with a broad range of people and roles, including vendors, information technology professionals, and other business personnel. You desire to seize the initiative, operate proactively, and work in a highly independent manner. You are fluent in English and Mandarin, any other Asian languages are a plus. R- About Us

VF Corporation outfits consumers around the world with its diverse portfolio of iconic lifestyle brands, including Vans, The North Face, Timberland, and Dickies. Founded in 1899, VF is one of the world's largest apparel, footwear and accessories companies with socially and environmentally responsible operations spanning numerous geographies, product categories and distribution channels. VF is committed to delivering innovative products to consumers and creating long-term value for its customers and shareholders. VF Vision Statement VF is committed to creating an inclusive environment that welcomes and values the differences among all of our associates, customers, suppliers and the communities in which we live and conduct business. The continued success and growth of VF is enhanced through initiatives that promote inclusion throughout VF around the world.VF is an equal opportunity employer. VF provides equal employment and advancement opportunities to all qualified individuals. VF bases employment decisions on skills, qualifications, and abilities. To learn more, read our Equal Opportunity Employment Policy

here

. VF is committed to meeting the diverse needs of people with disabilities in a timely manner that is consistent with the principles of independence, dignity, integration and equality of opportunity, and will do so by striving to identify, prevent and remove barriers to accessibility wherever possible as well as by meeting the accessibility requirements under the ADA, AODA, and other applicable state, local or provincial regulations. VF is committed to digital accessibility, and to conforming to the Web Content Accessibility Guidelines (WCAG) 2.1, Level AA and complying with the ADA and AODA Standards for Accessible Design, and other applicable regulations. If you need an accommodation or have any questions regarding this statement, please send your request to .

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Information Security Officer

Kuala Lumpur, Kuala Lumpur DUG Technology

Posted 18 days ago

Job Viewed

Tap Again To Close

Job Description

List of Responsibilities: Ongoing leadership and review of IT security

Implementing and designing cyber security policies, procedures and system solutions in line with industry standards and certifications

Operate, conduct, and maintain DUG’s SIEM platform and conduct regular security audits of systems, policies, procedures, network configuration, operating systems, authentication systems, permission structures

Serve as the DUG point person for third-party security audit(s)

Provide pre-sales security briefings / Q&A to DUG HPC Cloud customer security teams

Work with DUG HPC Cloud customers and DUG teams on security integration

Provide strategic-level guidance for DUG’s cyber security program and ensure compliance with cyber security policy, standards, regulations and legislation, working with the senior executives within DUG.

Ensure the alignment of cyber security and business objectives within DUG. To achieve this, you will facilitate communication between cyber security and business stakeholders. This includes translating cyber security concepts and language into business concepts and language as well as ensuring that business teams consult with cyber security teams to determine appropriate security measures when planning new business projects. Additionally, you will be responsible for the development of the strategic-level cyber security program, being best placed to advise projects on the strategic direction of cyber security.

Contribute to the development and maintenance of DUG’s business continuity and disaster recovery plans, with the aim to improve business resilience and ensure the continued operation of critical business processes

Report on the DUG’s security risk profile, the status of key systems and any outstanding security risks, any planned cyber security uplift activities, any recent cyber security incidents, and expected returns on cyber security investments

Oversee DUG’s response to cyber security incidents, including how internal teams respond and communicate with each other during an incident

Ensure that a consistent vendor management process is applied across their organisation, from discovery through to ongoing management

#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.

Head of Information Security

Kuala Lumpur, Kuala Lumpur U Mobile

Posted 4 days ago

Job Viewed

Tap Again To Close

Job Description

U Mobile Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

Head of Information Security

U Mobile Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

Life at U Mobile

We are Passionate, Innovative, Trustworthy, Team-Oriented & Fun-Loving.

Life at U Mobile

We are Passionate, Innovative, Trustworthy, Team-Oriented & Fun-Loving.

At U Mobile, we are always on the lookout for great talents and passionate individuals to join our growing team.

Let’s start your journey with an award-winning organization!

#UnbeatableCareerAwaits

Top Reasons To Join Us!

  • Awarded For
  • Most Preferred Employers in Telecommunication Industry (2022, 2023 & 2024)
  • Bronze Winner in Cross-Generational Workforce Engagement (2024)
  • Gold Winner for Excellence in Workplace Culture (2021)
  • Comprehensive medical, dental, optical and insurance benefits
  • Flexi working hours arrangements
  • Staff Line & Device Subsidy
  • Smart Casual Attire
  • Child Parental Care Leave
  • Convenient location with access to public transport (Imbi Monorail/Bukit Bintang MRT)
  • Special employee discounts for selected F&B Brands

Job Summary

  • As the Head of Information Security, you will be responsible for protecting the integrity, confidentiality, and availability of our information systems, networks, and customer platforms across the enterprise, wholesale, and retail businesses. This role will lead the company's cybersecurity strategy, governance, risk management, operations, and incident response efforts in close collaboration with the existing cybersecurity team and business units. You will formulate and implement security strategies aligned with the company’s technology vision and enterprise risk management objectives, supporting our ambitions to grow securely and responsibly across all segments.

The Day-To-Day Activities

  • Cybersecurity Strategy & Frameworks
  • Lead the development and execution of the company’s cybersecurity strategy aligned to Enterprise Risk Management (ERM), Technology Risk Management Framework (TRMF), and Cyber Resilience Framework (CRF).
  • Drive cybersecurity maturity programs based on NIST Cybersecurity Framework or similar standards.
  • Security Governance & Policies
  • Oversee the establishment of cybersecurity policies, procedures, and standards to protect products and services across enterprise, wholesale, and retail segments.
  • Ensure compliance with regulatory requirements, industry best practices, and internal governance frameworks.
  • Risk Management & Security Architecture
  • Assess and manage technology and cyber risks enterprise wide.
  • Ensure that information security architecture and roadmaps support both business objectives and security needs.
  • Define cybersecurity risk appetite, tolerance levels, and Key Risk Indicators (KRIs).
  • Security Operations & Monitoring
  • Oversee threat management, detection, and response operations.
  • Ensure effective use of tools and practices to detect and respond to cyber threats (e.g., malware, phishing, hacking).
  • Incident Management & Response
  • Develop, maintain, and execute the Cyber Incident Response Plan (CIRP).
  • Coordinate incident responses, forensic investigations, and recovery efforts following cyberattacks.
  • Product & Technology Enablement
  • Advise technology and product teams on secure-by-design principles for new initiatives including cloud adoption, AI/ML applications, and emerging technologies.
  • Compliance, Audit & Reporting
  • Review and monitor penetration testing, vulnerability assessments, and internal/external audits.
  • Liaise with regulators, auditors, and Board Committees on cybersecurity issues and audit results.
  • Ensure timely reporting of cybersecurity incidents to senior management, Group Information Security, Board Committees, and regulators.
  • Stakeholder Management
    • Working with MCMC and NACSA. Key to ensure we are in the loop and able to access key stakeholders.
    • Key internal stakeholders would be Audit Committee for regular reporting and updates of the plan and progress
    • General industry to ensure organization are respected and building a credible brand in the Information Security angle.
    • Leadership & Talent Development
      • Lead and mentor cybersecurity team members.
      • Foster a strong cybersecurity culture across the organization.
      • Drive professional and personal development of the team through coaching, training, and upskilling initiatives.
    About You

    • Minimum 10+ years of experience in information security management, cybersecurity operations, or related functions.
    • Bachelor’s or Master’s Degree in Information Technology, Computer Science, Cybersecurity, or related fields.
    • Prior leadership experience in a telecommunications or technology-driven environment, covering enterprise, wholesale, and retail businesses.
    • Proven experience with cybersecurity frameworks (NIST, ISO 27001, etc.), risk management, and incident management.
    • Deep knowledge of telecommunications networks, IT infrastructure, and cybersecurity technologies.
    • Strong understanding of cloud security, application security, and data privacy regulations.
    • Demonstrated ability to balance security needs with business enablement.
    • Excellent stakeholder management, communication, and leadership skills.
    • Professional certifications such as CISSP, CISM, CISA, or equivalent are highly desirable.

    What’s Next ? Once you have applied online, our team will review your application and due to a high volume of applications, only shortlisted candidates will be notified.

    Seniority level
    • Seniority level Executive
    Employment type
    • Employment type Full-time
    Job function
    • Job function Information Technology
    • Industries Telecommunications

    Referrals increase your chances of interviewing at U Mobile by 2x

    Sign in to set job alerts for “Head of Information Security” roles. VP, Business Information Security Officer

    Federal Territory of Kuala Lumpur, Malaysia 15 hours ago

    Resident Chief Information Security Officer

    WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 days ago

    Director, CFCC Data Conduct, Privacy & Sovereignty (Malaysia/Philippines/Poland)

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago

    WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

    Federal Territory of Kuala Lumpur, Malaysia 3 days ago

    WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 18 hours ago

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

    Federal Territory of Kuala Lumpur, Malaysia 4 weeks ago

    Manager, Internal Audit - IT/Technical & Network

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago

    Associate Director, OTCR, WRB (Malaysia / India)

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 months ago

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

    Federal Territory of Kuala Lumpur, Malaysia 17 hours ago

    Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 6 days ago

    Third Party Security Specialist (Fixed Term Contract)

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago

    We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

    #J-18808-Ljbffr
    This advertiser has chosen not to accept applicants from your region.

    Head of information Security

    Kuala Lumpur, Kuala Lumpur Horizontal Talent

    Posted 12 days ago

    Job Viewed

    Tap Again To Close

    Job Description

    Join to apply for the Head of Information Security Officer role at Horizontal Talent .

    Overview

    As our Head of Information Security Officer , you'll be the architect of this fortress, safeguarding our customers' data and ensuring the resilience of our innovative platform. You'll be the vanguard against cyber threats, shaping the future of secure digital banking in Malaysia. Reporting directly to senior management and the board, you'll be a key player in driving our vision of a secure, trustworthy, and revolutionary financial ecosystem.

    Your Mission
    • Act as the Head of Information Security Officer of the Bank and responsible for the oversight and governance of technology, information, and cyber risks across the Bank, and to ensure that information and technology assets are adequately protected.
    • Responsible for developing and implementing technology risk management, information security and cyber resilience policies and frameworks across the Bank.
    • Report on and advise Senior Management and the Board regarding prevailing and emerging technology and cyber risks, cyber threat landscape and effectiveness of the Bank’s technology risk management and cyber resilience frameworks.
    • Advise on the development and implementation of the Bank's information and cyber security strategies, which align with the Bank’s goals and objectives and relevant regulatory requirements i.e. RMiT.
    • Ensure the security of customer data, which includes implementing appropriate control measures, and that these are supported with effective risk oversight and governance.
    • Conduct security risk assessments across the Bank, identify gaps and vulnerabilities, and provide recommendations and areas for improvement, where required.
    • Work with the First Line of Defense to advise on the resolution and/or remediation of cyber incidents, including responding to incidents, recovery and remediation actions, and communicating with relevant stakeholders and regulators.
    • Build and lead a team of security and technology risk professionals, and ensure that they are trained, mentored, motivated, and aligned with the Bank's overall strategy and goals.
    • Ensure that the Bank's information and cyber security practices comply with applicable regulatory requirements, including those related to data privacy, technology risk and information security.
    • Collaborate with business and functional units across the Bank, understand their information security needs and provide advice, and facilitate technology risk management and risk assessment processes.
    • Develop risk metrics to measure the effectiveness of the Bank’s information and cyber security programs, and support driving the maturity of the programs over time.
    • Drive the information and cyber security awareness programs for the Bank’s employees.
    • Ensure that data protection impact assessments (DPIAs) are conducted where necessary.
    • Identify and mitigate data protection risks across the organization.
    • Serve as the Data Protection Officer (DPO) as the primary point of contact for the Department of Personal Data Protection(JPDP).
    What You'll Bring
    • A Visionary Security Mindset: A passion for pioneering security solutions in the ever-evolving digital banking landscape.
    • Cybersecurity Mastery: Extensive experience in developing and implementing comprehensive security strategies.
    • Strategic Leadership: Proven ability to lead and inspire high-performing security teams.
    • Regulatory Acumen: A deep understanding of banking regulations and data privacy requirements.
    • Exceptional Communication: The ability to articulate complex security concepts to diverse audiences.
    • A Relentless Drive for Innovation: A commitment to staying ahead of the curve in the fight against cyber threats.
    • A Bachelor's or Master's Degree in Computer Science, Information Security, or a related field.
    Job details
    • Seniority level: Executive
    • Employment type: Full-time
    • Job function: Information Technology
    • Industries: Staffing and Recruiting
    • Location: Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
    #J-18808-Ljbffr
    This advertiser has chosen not to accept applicants from your region.
    Be The First To Know

    About the latest Security awareness training Jobs in Kuala Lumpur !

    Head of Information Security

    Kuala Lumpur, Kuala Lumpur U Mobile

    Posted 21 days ago

    Job Viewed

    Tap Again To Close

    Job Description

    U Mobile Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia Head of Information Security

    U Mobile Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia Life at U Mobile

    We are Passionate, Innovative, Trustworthy, Team-Oriented & Fun-Loving. Life at U Mobile

    We are Passionate, Innovative, Trustworthy, Team-Oriented & Fun-Loving.

    At U Mobile, we are always on the lookout for great talents and passionate individuals to join our growing team.

    Let’s start your journey with an award-winning organization!

    #UnbeatableCareerAwaits

    Top Reasons To Join Us!

    Awarded For Most Preferred Employers in Telecommunication Industry (2022, 2023 & 2024) Bronze Winner in Cross-Generational Workforce Engagement (2024) Gold Winner for Excellence in Workplace Culture (2021) Comprehensive medical, dental, optical and insurance benefits Flexi working hours arrangements Staff Line & Device Subsidy Smart Casual Attire Child Parental Care Leave Convenient location with access to public transport (Imbi Monorail/Bukit Bintang MRT) Special employee discounts for selected F&B Brands

    Job Summary

    As the Head of Information Security, you will be responsible for protecting the integrity, confidentiality, and availability of our information systems, networks, and customer platforms across the enterprise, wholesale, and retail businesses. This role will lead the company's cybersecurity strategy, governance, risk management, operations, and incident response efforts in close collaboration with the existing cybersecurity team and business units. You will formulate and implement security strategies aligned with the company’s technology vision and enterprise risk management objectives, supporting our ambitions to grow securely and responsibly across all segments.

    The Day-To-Day Activities

    Cybersecurity Strategy & Frameworks Lead the development and execution of the company’s cybersecurity strategy aligned to Enterprise Risk Management (ERM), Technology Risk Management Framework (TRMF), and Cyber Resilience Framework (CRF). Drive cybersecurity maturity programs based on NIST Cybersecurity Framework or similar standards. Security Governance & Policies Oversee the establishment of cybersecurity policies, procedures, and standards to protect products and services across enterprise, wholesale, and retail segments. Ensure compliance with regulatory requirements, industry best practices, and internal governance frameworks. Risk Management & Security Architecture Assess and manage technology and cyber risks enterprise wide. Ensure that information security architecture and roadmaps support both business objectives and security needs. Define cybersecurity risk appetite, tolerance levels, and Key Risk Indicators (KRIs). Security Operations & Monitoring Oversee threat management, detection, and response operations. Ensure effective use of tools and practices to detect and respond to cyber threats (e.g., malware, phishing, hacking). Incident Management & Response Develop, maintain, and execute the Cyber Incident Response Plan (CIRP). Coordinate incident responses, forensic investigations, and recovery efforts following cyberattacks. Product & Technology Enablement Advise technology and product teams on secure-by-design principles for new initiatives including cloud adoption, AI/ML applications, and emerging technologies. Compliance, Audit & Reporting Review and monitor penetration testing, vulnerability assessments, and internal/external audits. Liaise with regulators, auditors, and Board Committees on cybersecurity issues and audit results. Ensure timely reporting of cybersecurity incidents to senior management, Group Information Security, Board Committees, and regulators. Stakeholder Management Working with MCMC and NACSA. Key to ensure we are in the loop and able to access key stakeholders. Key internal stakeholders would be Audit Committee for regular reporting and updates of the plan and progress General industry to ensure organization are respected and building a credible brand in the Information Security angle. Leadership & Talent Development Lead and mentor cybersecurity team members. Foster a strong cybersecurity culture across the organization. Drive professional and personal development of the team through coaching, training, and upskilling initiatives.

    About You

    Minimum 10+ years of experience in information security management, cybersecurity operations, or related functions. Bachelor’s or Master’s Degree in Information Technology, Computer Science, Cybersecurity, or related fields. Prior leadership experience in a telecommunications or technology-driven environment, covering enterprise, wholesale, and retail businesses. Proven experience with cybersecurity frameworks (NIST, ISO 27001, etc.), risk management, and incident management. Deep knowledge of telecommunications networks, IT infrastructure, and cybersecurity technologies. Strong understanding of cloud security, application security, and data privacy regulations. Demonstrated ability to balance security needs with business enablement. Excellent stakeholder management, communication, and leadership skills. Professional certifications such as CISSP, CISM, CISA, or equivalent are highly desirable.

    What’s Next ? Once you have applied online, our team will review your application and due to a high volume of applications, only shortlisted candidates will be notified. Seniority level

    Seniority level Executive Employment type

    Employment type Full-time Job function

    Job function Information Technology Industries Telecommunications Referrals increase your chances of interviewing at U Mobile by 2x Sign in to set job alerts for “Head of Information Security” roles.

    VP, Business Information Security Officer

    Federal Territory of Kuala Lumpur, Malaysia 15 hours ago Resident Chief Information Security Officer

    WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 days ago Director, CFCC Data Conduct, Privacy & Sovereignty (Malaysia/Philippines/Poland)

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 month ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Federal Territory of Kuala Lumpur, Malaysia 3 days ago WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 18 hours ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Federal Territory of Kuala Lumpur, Malaysia 4 weeks ago Manager, Internal Audit - IT/Technical & Network

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 1 week ago Associate Director, OTCR, WRB (Malaysia / India)

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 3 months ago Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago Federal Territory of Kuala Lumpur, Malaysia 17 hours ago Kuala Lumpur City, Federal Territory of Kuala Lumpur, Malaysia 6 days ago Third Party Security Specialist (Fixed Term Contract)

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia 2 weeks ago We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

    #J-18808-Ljbffr
    This advertiser has chosen not to accept applicants from your region.

    Head of Information Security - APAC

    Kuala Lumpur, Kuala Lumpur BSI

    Posted 4 days ago

    Job Viewed

    Tap Again To Close

    Job Description

    Great that you're thinking about a career with BSI!

    Head of Information Security – APAC

    Hong Kong OR Kuala Lumpur – Hybrid

    About the role

    As the Head of Information Security for our APAC region, you be the business facing part of the information security team within the region. You will work to partner and engage with the business to provide consultancy, support, guidance and advice on all Information Security matters. You will also help support projects and programmes relating to the region and any changes required.

    Responsibilities:

    • Support the implementation of global policies, strategies, processes, standards, procedures, roles and controls within the region.
    • Act as regional contact for all IT Security related incidents, providing support the IT Security Operations team, IT Infrastructure teams and local business to resolve the incident quickly.
    • Investigate and report on hazards, potential risk events within a specific function or business area and carry out risk assessments as directed.
    • Take responsibility for understanding client requirements, collecting data, delivering analysis and problem resolution in relation to information security.
    • Review compliance to information security policies and standards, taking legal and regulatory requirements into consideration.
    • Ensuring security controls are reviewed, implemented and maintained where appropriate.
    • Provide authoritative advice and guidance on security strategies to manage identified risk and ensure adoption.
    • Continue to develop and maintain knowledge within technical specialism, and keep up to date with technical specialism across BSI, industries and appropriate professional and trade bodies.

    To be successful in the role, you will have:

    • Previous experience working in a multi-national, matrix style organisation.
    • Demonstrable experience working with teams across multiple time-zones.
    • High levels of risk management experience (quantify, assess, document and manage).
    • Experience of working with/for businesses in China.
    • Great understanding of PIPL.
    • Fluent language skills in Cantonese and/or Mandarin.
    • English language skills both written and verbal to business conversation level.

    It is not essential, but if you have the following it would be beneficial:

    • Previous hands on technical background.
    • An understanding of both highly regulated and lesser regulated industries.
    • Previous experience of training within the Information Security sector.
    • Experience and or interest in AI.
    • Network security skills.
    • Security architecture experience.

    Grow your career and expand your skills and knowledge. At BSI, we offer opportunities to work across industries and across the globe. You’ll benefit from the different perspectives and experiences of your international colleagues, as well as ongoing training and development. We offer flexible working, as well as competitive local benefits.

    We’re building an organisation that meets the challenges of tomorrow. Want to grow with us?

    We exist to have a positive impact. Our people influence international thinking and action on important issues. Our 86,000 customers are based in 193 countries across the globe.

    Now we’re taking on society’s biggest challenges. We’re developing standards and guidelines that will help our customers get to net zero, and we’re defining the way new technologies such as AI impact all our lives.

    We’re focused on our future – and we’re looking for people who want to grow with us as we take on the challenges of tomorrow. At BSI, you’ll find a workplace where everyone can flourish and thrive, where innovation is encouraged and where learning is part of your everyday. You’ll contribute to work that shapes industries and enhances lives – and you’ll take pride in what you do.

    We’re looking for passionate people who want to make a difference in a purpose-led organisation. If that sounds like you, apply now. Together, we can help create a better society and a more sustainable world.

    D&I Policy

    The world needs fresh thinking and new perspectives to tackle its biggest challenges. It’s why, at BSI, we’re committed to creating a collaborative environment where everyone can contribute. Whatever your background, experience or outlook, here you can be your best self and do your best work.

    If you have a disability or a health condition, please let us know if you need any reasonable adjustments to the recruitment process.

    #LI-NC1

    #LI-HYBRID

    Our Excellence Behaviours: Client-centric, Agile, Collaborative. These three behaviours represent how we do things at BSI. They help us ensure that BSI is a great place to work and a highly successful business.

    BSI is conducting face-to-face interviews where appropriate and possible. If you are invited to a face-to-face interview but feel more comfortable with conducting the interview virtually, please speak to a member of our recruitment team.

    #J-18808-Ljbffr
    This advertiser has chosen not to accept applicants from your region.

    Information Security Digital Data Reviewer

    Kuala Lumpur, Kuala Lumpur Accenture Southeast Asia

    Posted 1 day ago

    Job Viewed

    Tap Again To Close

    Job Description

    Overview

    Information Security Digital Data Reviewer role at Accenture Southeast Asia. This position focuses on reviewing content related to apps that pose security risks to users.

    Responsibilities
    • Identify security violations and user data violations based on policy guidelines to keep the store malware-free.
    • Cross-team collaboration and communication to meet aggressive review deadlines across the security queue, various dashboards, and any security incidents/projects.
    • Leverage expertise to thoroughly review at app and developer level, by relaying pertinent findings to the key stakeholders and other peer teams.
    • Handle time-sensitive escalations from multiple key stakeholders.
    • Identify gaps within workflows and processes and provide input to relevant stakeholders.
    Basic Qualifications/Skills
    • >1 year of content moderation/app review/web or social media review, and experience with coding preferably with Mobile Apps.
    • Basic knowledge in any coding experience.
    • Preferred Bachelor’s Degree in any field.
    • Excellent verbal and written communication skills.
    • Ability to operate in areas that are not clearly defined within the policy.
    • Ability to prioritize and multitask to meet various workflow requirements.
    • Solid understanding of customer support best practices.
    • Sense of responsibility, initiative and high quality work standards.
    • Proactive, flexible individual that is capable of working in a rapidly changing environment.
    • Open to work during weekends and evening shifts.
    • Project and SLA delivery experience.
    Seniority level
    • Entry level
    Employment type
    • Full-time
    Job function
    • Project Management and Management
    Industries
    • Business Consulting and Services

    Referrals increase your chances of interviewing at Accenture Southeast Asia by 2x.

    #J-18808-Ljbffr
    This advertiser has chosen not to accept applicants from your region.
     

    Nearby Locations

    Other Jobs Near Me

    Industry

    1. request_quote Accounting
    2. work Administrative
    3. eco Agriculture Forestry
    4. smart_toy AI & Emerging Technologies
    5. school Apprenticeships & Trainee
    6. apartment Architecture
    7. palette Arts & Entertainment
    8. directions_car Automotive
    9. flight_takeoff Aviation
    10. account_balance Banking & Finance
    11. local_florist Beauty & Wellness
    12. restaurant Catering
    13. volunteer_activism Charity & Voluntary
    14. science Chemical Engineering
    15. child_friendly Childcare
    16. foundation Civil Engineering
    17. clean_hands Cleaning & Sanitation
    18. diversity_3 Community & Social Care
    19. construction Construction
    20. brush Creative & Digital
    21. currency_bitcoin Crypto & Blockchain
    22. support_agent Customer Service & Helpdesk
    23. medical_services Dental
    24. medical_services Driving & Transport
    25. medical_services E Commerce & Social Media
    26. school Education & Teaching
    27. electrical_services Electrical Engineering
    28. bolt Energy
    29. local_mall Fmcg
    30. gavel Government & Non Profit
    31. emoji_events Graduate
    32. health_and_safety Healthcare
    33. beach_access Hospitality & Tourism
    34. groups Human Resources
    35. precision_manufacturing Industrial Engineering
    36. security Information Security
    37. handyman Installation & Maintenance
    38. policy Insurance
    39. code IT & Software
    40. gavel Legal
    41. sports_soccer Leisure & Sports
    42. inventory_2 Logistics & Warehousing
    43. supervisor_account Management
    44. supervisor_account Management Consultancy
    45. supervisor_account Manufacturing & Production
    46. campaign Marketing
    47. build Mechanical Engineering
    48. perm_media Media & PR
    49. local_hospital Medical
    50. local_hospital Military & Public Safety
    51. local_hospital Mining
    52. medical_services Nursing
    53. local_gas_station Oil & Gas
    54. biotech Pharmaceutical
    55. checklist_rtl Project Management
    56. shopping_bag Purchasing
    57. home_work Real Estate
    58. person_search Recruitment Consultancy
    59. store Retail
    60. point_of_sale Sales
    61. science Scientific Research & Development
    62. wifi Telecoms
    63. psychology Therapy
    64. pets Veterinary
    View All Security Awareness Training Jobs View All Jobs in Kuala Lumpur