Hd, Endpoint

4 weeks ago


Kuala Lumpur, Malaysia Standard Chartered Bank Full time

Role Responsibilities

Responsibilities

**Strategy:

Develop and implement comprehensive strategies for endpoint protection and threat configuration aligned with the overarching cyber defence goals. Drive innovative approaches in threat intelligence, incident response, and preventive measures, ensuring they align with business objectives. Collaborate with executive leadership to integrate cutting-edge technologies and proactive methodologies within the endpoint security framework.

**Business

-Define and communicate the business impact of endpoint security posture, both in risk mitigation and business continuity. -Implement frameworks for secure business operations, ensuring that security measures complement and enable seamless business activities. -Regularly assess and communicate the business value and ROI of endpoint security investments.

**Processes:**

-Oversee the development and enhancement of robust processes for endpoint protection, incident response, and threat configuration. -Establish and optimize procedures for continuous monitoring, analysis, and adaptation to evolving cyber threats. -Streamline and automate processes to enhance efficiency while maintaining the highest level of security standards.

**People and Talents:**

-Foster a culture of excellence, mentorship, and continuous learning within the team. -Attract, retain, and develop top-tier talent in the field of endpoint security, ensuring a diverse and skilled workforce. -Cultivate a collaborative and inclusive environment to maximize team productivity and effectiveness. -Lead through example and build the appropriate culture and values. Set appropriate tone and expectations from their team and work in collaboration with risk and control partners. -Ensure the provision of ongoing training and development of people and ensure that holders of all critical functions are suitably skilled and qualified for their roles ensuring that they have effective supervision in place to mitigate any risks. -Employ, engage and retain high quality people, with succession planning for critical roles. -Responsibility to review team structure/capacity plans. -Set and monitor job descriptions and objectives for direct reports and provide feedback and rewards in line with their performance against those responsibilities and objectives.

**Risk Management:**

-Identify and evaluate emerging cyber threats, and strategize for proactive risk mitigation. -Implement and oversee risk management protocols to minimize potential vulnerabilities. -Regularly assess the risk landscape and adapt strategies to address new and existing threats.

**Governance:**

-Enforce and maintain governance protocols to ensure adherence to the highest security standards. -Oversee the compliance and alignment of endpoint security with industry standards and best practices. -Establish governance frameworks to manage security policies, procedures, and controls effectively. -responsible for assessing the effectiveness of the Group's arrangements to deliver effective governance, oversight and controls in the business and, if necessary, oversee changes in these areas -Awareness and understanding of the regulatory framework, in which the Group operates, and the regulatory requirements and expectations relevant to the role.

**Regulatory & Business Conduct:**

Ensure compliance with regulatory requirements and industry standards, managing audits and certifications related to endpoint security. Advise on regulatory changes impacting endpoint security and lead adaptations accordingly. Uphold ethical conduct and adherence to all applicable laws and regulations in the implementation and management of endpoint security strategies. This role demands a strategic visionary with a strong understanding of both technology and business, capable of leading and driving change in the ever-evolving landscape of cybersecurity, particularly in the realm of endpoint protection and threat configuration within a tier-one banking institution. Display exemplary conduct and live by the . Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank. This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct. Effectively and collaboratively identify, escalate, mitigate and resolve risk, conduct and compliance matters. Lead the [country / business unit / function/[team] to achieve the outcomes set out in the Bank’s Conduct Principles: [Fair Outcomes for Clients; Effective Financial Markets; Financial Crime Compliance; The Right Environment.] 

Key stakeholders

This role necessitates close collaboration with essential stakeholders, including Microsoft for cutting-edge endpoint security technologies, enterprise technology teams to align strategies, network security units for a unified approach, cyber defence teams for a holistic defence strategy, security monitoring and analytics teams for real-time threat analysis, cloud platform teams for secure cloud operations, and risk management 2nd and 3rd line of defence. Effective coordination with these stakeholders is critical in ensuring a cohesive, robust, and holistic approach to endpoint protection and threat configuration within the bank's cyber defence operations.

Other Responsibilities

Embed Here for good and Group’s brand and values in [MY/IN/PL / Cyber security / Cyber defence and ops technology]; Perform other responsibilities assigned under Group, Country, Business or Functional policies and procedures; Multiple functions (double hats); [Additional duties entail: outlining the strategy for malware protection across various channels—such as endpoint, email, and online platforms—and driving the execution of transformative initiatives. Developing and establishing a governance structure equipped with metrics and assurance processes. Defining the governance framework for network security and actively monitoring for any potential gaps. Planning and implementing firewall governance processes across the bank's entire estate.]

Our Ideal Candidate 

Qualifications

Training, licenses, memberships and certifications

Academic or Professional Qualifications:** A relevant bachelor’s or master’s degree in Cyber Security, Information Technology, Computer Science, or a related field. Licenses and Certifications:** Preferred certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Certified Information Security Manager (CISM), or other industry-recognized certifications in cyber security. Professional Memberships:** Membership in professional bodies or associations related to cyber security and information technology, such as (ISC)², ISACA, or other relevant organizations. specific training or certifications related to banking compliance, regulations, or security protocols specific to the banking sector. Language Skills:** Proficiency in English, with additional language skills considered a plus, particularly if operating within a multi-national or multi-cultural environment. The ideal candidate should possess a strong academic or professional background, along with relevant certifications and memberships within the cyber security domain. Specific training related to banking compliance and regulations, as well as linguistic abilities, are also beneficial for this role, particularly within a diverse and global banking environment

Role Specific Technical Competencies

Product management Malware analysis Cloud security Risk management Security architecture SRE