Information Security Lead

Found in: beBee S MY - 3 weeks ago


Malaysia BP p.l.c. Full time
  • Travel required Negligible travel should be expected with this role
  • Job category IT&S Group
  • Relocation available This role is not eligible for relocation
Job summary

Entity:

Innovation & Engineering


Job Family Group:

IT&S Group


Job Summary:

Why Join Us?

We have embarked on a new and ambitious strategy, to deliver on its net-zero ambition and to drive efficiency and new business models, by using digital technologies

It’s an exciting time to embark on your journey with bp as we undergo technology transformation and growth which you can support in defining

Role Overview: You will collaborate with product teams to deliver secure products promptly, ensuring swift business value realization. This role focuses on information security and cyber risk activities within Customer & Products business, supporting regional Mobility & Convenience, Castrol and Aviation teams.


Job Description:

Key Responsibilities:

Team Leadership: Lead, mentor, and develop a resilient team, aligning with technology vision and strategy, encouraging a culture of continuous improvement and career progression.

Relationship Management: Act as the main point of contact for information security for Product Security within ASPAC, building strong partnerships and influencing positive change.

Security Expertise: Provide technical expertise in Cyber Security, implementing operating processes and ensuring adherence to security standards across all activities.

Safety: Prioritize operational safety, improving digital security through architecture, designs, and processes.

As the Information Security Lead, you will :

  • Work closely with the Innovation & Engineering (I&E) Product Discovery and Delivery squads delivering solutions to the C&P businesses in ASPAC region. You will assess and identify cyber risks across digital products

  • Lead the regional Product Security Safety squad to proactively mitigate and coordinate the remediation of any findings from vulnerability scans, supplier assurance, compliance reviews, and support the squads in maintaining a ‘green’ Product Cyber score.

  • Review product architecture and any application changes to assess the implications to cyber risks and work with the Product Managers and Architects to perform threat modelling across products as new features are deployed.

  • Work to Agile delivery principles across technology and build security awareness by supporting awareness programs and establishing security standard methodologies within Product Teams.

Requirements :
  • Experience working in internal or external information security roles, including leading teams.

  • Experience in working in a Product led organization

  • Strong influencing skills with the ability to communicate technical information to both technical and non-technical audiences, clearly and concisely.

  • Sophisticated technical knowledge, ideally hands-on, and experience in delivering security solutions and providing technical advice.

  • Knowledge of relevant legal and regulatory frameworks

  • Experience working within developing digital ecosystems, with multiple partners and environments, ensuring suitable security is delivered.

  • Certification in Information security i.e. CISSP or CISM is preferred.

  • Knowledge of security frameworks such as ISO 27001/2, NIST, and CIS framework is highly advantageous.

  • Able to adapt to shifting priorities, demands, and timelines and keep customers abreast of impact (potential or actual) to defined delivery timescales and/or business impact.


Travel Requirement

Negligible travel should be expected with this role


Relocation Assistance:

This role is not eligible for relocation


Remote Type:

This position is a hybrid of office/remote working


Skills:

Automation system digital security, Conformance review, Consulting, Digital Forensics, Incident management, incident investigation and response, Information Assurance, Information Security, Information security behaviour change, Intrusion detection and analysis, Legal and regulatory environment and compliance, Risk Management, Secure development, Security administration, Security architecture, Security evaluation and functionality testing, Solution Architecture, Stakeholder Management, Supplier security management, Technical specialism


Legal Disclaimer:

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, socioeconomic status, neurodiversity/neurocognitive functioning, veteran status or disability status. Individuals with disabilities may request a reasonable accommodation related to bp’s recruiting process (e.g., accessing the job application, completing required assessments, participating in telephone screenings or interviews, etc.). If you would like to request an accommodation related to the recruitment process, please contact us to request accommodations.

If you are selected for a position and depending upon your role, your employment may be contingent upon adherence to local policy. This may include pre-placement drug screening, medical review of physical fitness for the role, and background checks.

#J-18808-Ljbffr
  • Information Security Specialist

    Found in: beBee S MY - 3 weeks ago


    Malaysia Xsolla Full time

    The Xsolla team is looking for an Information Security Specialist. We need a professional who knows how and loves to solve issues on the company's information security. RESPONSIBILITIES Investigate and respond to information security incidents Create and improve security processes Monitor infCompliance specialistormation security events Make...

  • Third Party Information Security Specialist

    Found in: beBee S MY - 3 weeks ago


    Malaysia Experian Full time

    Third Party Information Security Specialist Full-time Employee Status: Regular Role Type: Hybrid Schedule: Full Time Experian is the world’s leading global information services company. During life’s big moments – from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers – we empower...

  • Third Party Information Security Specialist

    Found in: beBee S MY - 2 weeks ago


    Malaysia Experian Full time

    Third Party Information Security Specialist Full-time Employee Status: Regular Role Type: Hybrid Schedule: Full Time Experian is the world’s leading global information services company. During life’s big moments – from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers – we empower...

  • Third Party Information Security Specialist

    Found in: beBee jobs MY - 7 days ago


    Malaysia Experian Full time

    Third Party Information Security Specialist Full-time Employee Status: Regular Role Type: Hybrid Schedule: Full Time Experian is the world's leading global information services company. During life's big moments – from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers – we empower consumers...

  • site security manager

    Found in: beBee jobs MY - 2 weeks ago


    Malaysia Swack Security Services Sdn Bhd Full time

    To lead of Site Security team consisting of Shift Supervisors and Security Officers, ensuring that the daily Security operational deployment remains effective and Security requirements from the client are duly implemented. Driving conformance to Client' Security Policy and associated standards and developing the site security culture trough training and...

  • IT Security Manager

    Found in: beBee S MY - 4 weeks ago


    Malaysia Inmagine Full time

    Inmagine We are on a mission to make design easy for everyone by using artificial intelligence and data analytics to simplify the creative process – on all levels. View company page We are seeking an experienced and dynamic IT Security Manager to lead our organization's efforts in safeguarding our information systems and ensuring the...

  • Sector Lead

    Found in: beBee jobs MY - 7 days ago


    Malaysia BSI Group Full time

    Sector Lead - Digital Trust page is loaded Sector Lead - Digital Trust Apply locations Kuala Lumpur time type Full time posted on Posted 3 Days Ago job requisition id JR Great that you're thinking about a career with BSI Do you believe the world deserves excellence? BSI (British Standards Institution) the leading global standards and certification...

  • Analyst, IT Security Awareness

    Found in: beBee S MY - 4 weeks ago


    Malaysia 1907 Averis Sdn. Bhd. Full time

    Analyst, IT Security Awareness page is loaded Analyst, IT Security Awareness Apply locations Kuala Lumpur time type Full time posted on Posted 12 Days Ago job requisition id R156888 Grow your career with us Here at Averis, our common purpose is to improve lives by developing resources sustainably. Our people are crucial in helping us to realise our...

  • Technical Lead

    Found in: beBee jobs MY - 7 days ago


    Malaysia Hydra X Full time

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia We are looking for Technical Leads who: A re able to lead and guide our software development team. Working closely with the Software Architect, Data Engineering and DevOps teams, and collaborating with the Product team to determine their requirements, creating comprehensive software development...

  • Technical Lead

    Found in: beBee S MY - 2 weeks ago


    Malaysia Hydra X Full time

    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia We are looking for Technical Leads who: A re able to lead and guide our software development team. Working closely with the Software Architect, Data Engineering and DevOps teams, and collaborating with the Product team to determine their requirements, creating comprehensive software development...

  • Security administration

    Found in: beBee jobs MY - 7 days ago


    Malaysia Nityo Infotech Full time

    Bachelor's degree in Information Technology, Cybersecurity, or a related field, or equivalent work experience.1-3 years of experience in cybersecurity, risk management, or vendor management.Working knowledge of third-party risk assessment methodologies and vendor management practices.Familiarity with security frameworks such as NIST, ISO 27001, or...

  • DevSecOps Security Architect

    Found in: beBee jobs MY - 6 days ago


    Malaysia Michael Page Full time

    About Our Client A leading global manufacturing company that provides precision instruments to clients around the world. With offices in over 140 countries, the company has a reputation for excellence, innovation, and customer service. Job Description · Work closely with our development and operations teams to integrate security into our DevOps...

  • Security Analyst

    1 week ago


    Malaysia Ensign InfoSecurity Full time

    Ensign is hiring ! Evaluates, tests, monitors and maintains information systems (IS) and cyber security policies, procedures and systems I Creates, implements and oversees identity management systems to meet specific security needs and complex compliance standards | Ensures that IS and cyber security plans, controls, processes, standards, policies and...

  • IT Security Analyst

    Found in: beBee S MY - 2 weeks ago


    Malaysia Zchwantech Full time

    The IT Security Analyst will be responsible for identifying security vulnerabilities and propose remedy for our systems and networks. This will involve conducting penetration tests, vulnerability assessments, and other security assessments. The IT Security Analyst will also work with other staff from various departments to develop and implement security...

  • IT Security Analyst

    Found in: beBee jobs MY - 2 weeks ago


    Malaysia Zchwantech Full time

    The IT Security Analyst will be responsible for identifying security vulnerabilities and propose remedy for our systems and networks. This will involve conducting penetration tests, vulnerability assessments, and other security assessments. The IT Security Analyst will also work with other staff from various departments to develop and implement security...

  • DevSecOps Security Architect

    Found in: beBee S MY - 2 weeks ago


    Malaysia Michael Page Full time

    About Our Client A leading global manufacturing company that provides precision instruments to clients around the world. With offices in over 140 countries, the company has a reputation for excellence, innovation, and customer service. Job Description · Work closely with our development and operations teams to integrate security into our DevOps...

  • Director of Security

    Found in: beBee S MY - 4 weeks ago


    Malaysia Destination Hotels Full time

    Summary You will be responsible for the efficient running of the department in line with Hyatt International's Corporate Strategies and brand standards, whilst meeting associate, guest and owner expectations. The Director of Security is responsible to develop, implement, monitor and evaluate the hotel's safety and security procedures, including...

  • Director of Security

    Found in: beBee S MY - 2 weeks ago


    Malaysia Destination Hotels Full time

    Summary You will be responsible for the efficient running of the department in line with Hyatt International's Corporate Strategies and brand standards, whilst meeting associate, guest and owner expectations. The Director of Security is responsible to develop, implement, monitor and evaluate the hotel's safety and security procedures, including...

  • Director of Security

    Found in: beBee jobs MY - 7 days ago


    Malaysia Destination Hotels Full time

    Summary You will be responsible for the efficient running of the department in line with Hyatt International's Corporate Strategies and brand standards, whilst meeting associate, guest and owner expectations. The Director of Security is responsible to develop, implement, monitor and evaluate the hotel's safety and security procedures, including fire safety,...

  • Security Analyst

    12 hours ago


    Malaysia Ensign InfoSecurity Full time

    Ensign is hiring ! Duties and Responsibilities: - Provision of 24x7 Information Security Monitoring and Surveillance services.- - Providing high-level proactive technical support, including security configurations, security policy modification recommendation, and diagnostics of remote network security issues.- The events can include hardware/software...