APAC Information Security Consultant

5 days ago


Kuala Lumpur, Kuala Lumpur, Malaysia Zurich 56 Company Ltd Full time
APAC Information Security Consultant

Job Title: APAC Information Security Consultant

The Opportunity:

We are looking for an APAC Information Security Consultant, who is primarily responsible for supporting information security governance initiatives and activities across APAC business units.

Key Responsibility:

Information Security governance

  • Maintain APAC's regional Information Security, Risk and Compliance framework, and support Group in revising old or establishing new policies and standards.
  • Provide governance over and support APAC BISOs in the coordination of regional and local information security gap remediation.
  • Perform analysis to identify common themes and drive regional remediation activities.
  • Advise APAC BISOs and stakeholders in information security policy compliance requirements.
  • Provide advice, governance and support in information security policy exception and risk acceptance processes.
  • Work closely with the Group's Information Security Governance (ISG) team and APAC BISOs to ensure global requirements are communicated to APAC stakeholders and APAC requirements are considered in global information security compliance projects.
  • Support Group's ISG initiatives in the APAC region.
  • Provide support in APAC's Information Security control assurance processes.
  • Work closely with the APAC Information Security Analytics & Reporting team in ensuring visibility via accurate security compliance metrics.
  • Identify and support opportunities for process simplification and automation initiatives.

Information Security, Risk and Compliance Assessments

  • Support APAC BISOs in performing the following assessments using the Global standard approach:
  • Cloud security assessments.
  • Third party vendor assessments.
  • Business / IT Application assessments (incl. pre & post implementation reviews, major changes).
  • Regulatory assessments (e.g. local regulations, ISO27001, PCI DSS, SOC2, etc.).
  • Remediation action review, analysis and management and themed security reviews.
  • Exception management and support continuous improvement of Global and Regional ISG processes.

Qualification, Skills & Experience:

  • University graduate of computer science, information technology/security or any other related disciplines.
  • Minimum 6 years professional experience in information security or IT risk management, preferably in MNC environment or insurance industry.
  • Certification of CISA, CRISC, CISSP or CISM is a must.
  • Experience or certification of PCI IA, ISO27001 is a plus.
  • Big4 information security consulting and/or IT audit experience is an advantage.
  • Excellent communication skills in English and ability to communicate security-related concepts to all levels of stakeholders.
  • Strong integrity and highly ethical.
  • Effective in influencing and persuasion.
  • Background in security/risk related topics and technologies.
  • Working knowledge of regulatory compliance drivers.
  • Good understanding of security concepts and architectures.
  • Good understanding of IT security and compliance controls.
  • Understanding of IT technologies and processes (e.g. cloud, operating systems, databases, networking, web/application, change management, SDLC & DevSecOps, disaster recovery, monitoring, AI, etc.).
  • General knowledge of regulatory requirements is a plus.
  • General knowledge of common security tools.

You are the heart & soul of Zurich
At Zurich, we like to think outside the box and challenge the status quo. We take an optimistic approach by focusing on the positives and constantly asking What can go right?

We highly value the experience and know-how of our employees and offer a wide range of opportunities across business areas to encourage you to apply for new opportunities within Zurich when you are ready for your next career step.

People are Zurich's most important asset. Their varied skills, perspectives and experiences drive innovation. And they reflect the breadth and diversity of our customers, suppliers, communities and investors around the world. We are committed to attracting and retaining talented individuals from a variety of backgrounds and experiences.

Let's continue to grow together

Location(s): Singapore or Malaysia

#J-18808-Ljbffr

  • Kuala Lumpur, Kuala Lumpur, Malaysia Noventiq APAC Full time

    About the RoleNoventiq APAC is looking for an experienced IT Security Consultant to join our team in Malaysia. The ideal candidate will have a strong background in cybersecurity and be able to provide expert advice to clients on Microsoft security solutions.Main Responsibilities:Provide technical guidance to clients on Microsoft security solutions.Develop...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Zurich 56 Company Ltd Full time

    About Our Team">We are a dynamic team at Zurich 56 Company Ltd, dedicated to delivering exceptional results in information security governance. We are seeking a highly skilled Regional Information Security Compliance Expert to join our team in Singapore or Malaysia.The successful candidate will be responsible for supporting information security governance...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Zurich 56 Company Ltd Full time

    Job Description">We are seeking a highly skilled Global Information Security Governance Specialist to join our team in Singapore or Malaysia.The successful candidate will be responsible for supporting information security governance initiatives and activities across APAC business units, maintaining the regional Information Security, Risk and Compliance...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Crypto Full time

    Job SummaryWe are seeking an experienced Information Security Consultant to join our team. The successful candidate will be responsible for developing, deploying, and maintaining advanced cloud security controls to enable the prevention, detection, and response to security threats in cloud environments.About UsCrypto.com is a leading company in the field of...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Noventiq APAC Full time

    About Noventiq APACWe are a leading global solutions and services provider in digital transformation and cybersecurity.Our mission is to effect change and make a difference in everything we do, not just for our customers but for everyone who works with us.Job RequirementsTo succeed in this role, you will need:Bachelor's or Master's degree in Computer...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Deloitte PLT Full time

    Deloitte is committed to making an impact that matters. We're seeking a highly skilled Information Security Consultant to join our team and help us achieve our goals.Job Description:As a key member of our team, you'll conduct comprehensive penetration testing and vulnerability assessments across various web applications, mobile apps, and network...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Talent Recruit Full time

    Talent Recruit is a consulting distributor specializing in SecOps and ITOps technologies. We are seeking a skilled Information Security Account Executive to join our team.In this role, you will be responsible for developing new business opportunities and building relationships with key stakeholders. Your expertise in information security sales and marketing...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Mott MacDonald Full time

    At Mott MacDonald, we're seeking an experienced Information Security Officer to join our team. This is a unique opportunity to work in a fast-growing consultancy that's shaping the communities in which we live.About the Role:The APNA Information Security Team is responsible for developing and delivering information security strategies, risk management,...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Ørsted AS Full time

    Join us in this role where you'll spearhead executive engagement, oversee CIS initiatives, and guide the business on the CIS strategy for our operations across APAC. You'll deliver CIS/cybersecurity briefings to legal entity boards, risk committees, and operations committees, while also representing CIS in regional projects, audits, and regulatory...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Noventiq APAC Full time

    About UsNoventiq APAC is a leading global solutions and services provider in digital transformation and cybersecurity.We have grown, expanded, and adapted, learning more at each step. Our mission is to effect change and make a difference in everything we do, not just for our customers but for everyone who works with us.Your RoleAs a Security Solution...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Ørsted Full time

    Join us in this role where you'll spearhead executive engagement, oversee CIS initiatives, and guide the business on the CIS strategy for our operations across APAC. You'll deliver CIS/cybersecurity briefings to legal entity boards, risk committees, and operations committees, while also representing CIS in regional projects, audits, and regulatory...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Ørsted Full time

    Join us in this role where you'll spearhead executive engagement, oversee CIS initiatives, and guide the business on the CIS strategy for our operations across APAC. You'll deliver CIS/cybersecurity briefings to legal entity boards, risk committees, and operations committees, while also representing CIS in regional projects, audits, and regulatory...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Noventiq APAC Full time

    Job SummaryNoventiq APAC is seeking a highly motivated Security Services Manager to lead our security services team in Malaysia. The ideal candidate will have a strong background in cybersecurity and be able to manage a team of security professionals.Main Responsibilities:Manage a team of security professionals to ensure delivery of high-quality security...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Noventiq APAC Full time

    Noventiq APAC offers exciting career opportunities for skilled professionals. As a Cloud Security Engineer, you will be responsible for designing, deploying and implementing security strategies, policies, and procedures for Customer environments.Main ResponsibilitiesYou will design, deploy and implement security strategies, policies, and procedures for...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Noventiq APAC Full time

    About Noventiq APAC: We empower businesses to thrive in the digital age, connecting them with top-tier IT vendors and delivering our own innovative services and proprietary solutions. Our success is driven by a robust three-dimensional strategy focused on expanding our market presence, diversifying our product portfolio, and enhancing our sales channels.Job...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Noventiq APAC Full time

    Join to apply for the Delivery Cyber Security Engineer role at Noventiq Malaysia.About Us: Noventiq (Noventiq Holdings PLC) is a premier global provider of cutting-edge digital transformation and cybersecurity solutions, headquartered in London. We empower businesses to thrive in the digital age, connecting them with top-tier IT vendors and delivering our...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Noventiq APAC Full time

    Noventiq APAC provides cutting-edge digital transformation and cybersecurity solutions globally. As a Cloud Security Engineer, you will play a key role in designing, deploying and implementing security strategies, policies, and procedures for Customer environments.ResponsibilitiesYou will collaborate with Solution Sales and Customer to understand business...


  • Kuala Lumpur, Kuala Lumpur, Malaysia VF Corporation Full time

    Will support VF's Global Cyber Security Team by ensuring that information security risks associated with complex business operations are within acceptable tolerances.You will perform information security risk assessments, provide direction and guidance to stakeholders concerning the handling of security risks associated with assessment findings, assist with...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Noventiq APAC Full time

    Join to apply for the Security Solution Architect role at Noventiq Malaysia.Noventiq is hiringNoventiq's story is one of change. We grew, expanded, and adapted, learning more at each step. Now effecting change is at the heart of everything we do. And that doesn't just apply to our customers, it's how we feel about everyone who works with us.Noventiq (the...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Mott MacDonald Full time

    The APNA Information Security Team is responsible for information security strategy, risk management, assurance and capability development to support our regional business.The role will report directly to the Regional Information Technology & Security (RITS) Manager for Asia Pacific, New Zealand and Australia (APNA) and provides an opportunity to obtain...