Information Security Grc Specialist

2 weeks ago


Kuala Selangor, Malaysia Pentagonplus Full time

**Responsibilities**:
INFORMATION SECURITY GRC SPECIALIST

**Responsibilities**:

- Implements security controls, risk assessment frameworks, and programs that align to regulatory requirements, ensuring documented and sustainable compliance that aligns and advances the business objectives.
- Evaluates risks and develops security standards, procedures, and controls to manage risks. Improves PCC's security positioning through process improvement, policy, automation, and the continuous evolution of capabilities.
- Implements processes, such as GRC (governance, risk and compliance), to automate and continuously monitor information security controls, exceptions, risks and testing.
- Develops reporting metrics, dashboards, and evidence artifacts.
- Defines and documents business responsibilities and ownership of the controls in GRC tool. Schedules regular assessments and testing of effectiveness and efficiency of controls and creates GRC reports.
- Updates security controls and provides support to all stakeholders on security controls covering internal assessments, regulations, data and assets.
- Performs and investigates internal and external information security risk and exceptions assessments. Assess incidents, vulnerability management, scans, patching status, secure baselines, penetration test result, phishing, and social engineering tests and attacks.
- Documents and reports control failures and gaps to stakeholders. Provides remediation guidance and prepares management reports to track remediation activities.
- Assists other staff in the management and oversight of security program functions.
- Trains, guides, and acts as a resource on security assessment functions to other departments.
- Remains current on best practices and technological advancements and acts as the technical resource for security assessment and regulatory' compliance.
- Performs other related duties as assigned.

**Job Requirements**
- At least 4 years of working experience in cyber security programs, audits, assessments, risk, remediation, or cyber security compliance management.
- Applicable information security management, governance, and compliance principles, practices, laws, rules and regulations.
- Information technology systems and processes, network infrastructure, data architecture, data processes, and protocols.
- Cyber and cloud security standard frameworks, architecture, design, operations, controls, technology, solutions, and service orchestration.
- Information systems auditing, monitoring, controlling, and assessment process.
- Incident response management.
- Risk assessment and management methodology.

Benefits



  • Kuala Lumpur, Kuala Lumpur, Malaysia SWIFT Full time

    About the PositionWe are seeking an experienced Risk Management Expert in SAP GRC to join our team at Swift. In this critical role, you will be responsible for maintaining and administering the SAP Security environment and ensuring the ongoing security and compliance of Swift's systems and data.Your Key Responsibilities:You will develop and implement...


  • Kuala Lumpur, Kuala Lumpur, Malaysia SWIFT Full time

    Job DescriptionWe are looking for a highly skilled Security Specialist for Governance and Compliance to join our team at Swift. As a key member of our team, you will be responsible for maintaining and administering the SAP Security environment.Your Key Responsibilities:You will develop and implement policies, controls, and procedures to ensure the security...


  • Kuala Lumpur, Kuala Lumpur, Malaysia SWIFT Full time

    About the RoleTo provide expert input to security strategy and control of systems, networks, physical infrastructure, people, and information. To organize the design, communication, and execution of policies/controls/procedures as appropriate for Swift and its customers, and as consistent with the company objectives, company reputation, and regulatory...


  • Kuala Lumpur, Kuala Lumpur, Malaysia SWIFT Full time

    About the JobWe are seeking an experienced Senior SAP GRC and Security Specialist to join our team at Swift. In this critical role, you will be responsible for providing expert input to security strategy and control of systems, networks, physical infrastructure, people, and information.Your Key Responsibilities:You will be part of a team of SAP specialists...


  • Kuala Lumpur, Malaysia eTeam APAC Full time

    **1 Headcount** **Can start within 1-2 months** **_Malaysians will be prioritized; expats who are based in Malaysia can also be processed_** **_Salary range: MYR 11-15k_** Description: Define the security architecture, ensuring that it meets the business requirements and performance goals. Strong understanding of information security management...

  • GRC Process Analyst

    4 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Tungsten Automation Full time

    Tungsten Automation is seeking a skilled professional to fill the Cloud GRC Analyst role. As a key member of the GRC function, you will be responsible for conducting recurring activities with relevant stakeholders to follow up, maintain and improve compliance with the defined control environment.Key ResponsibilitiesBe the custodian, develop and maintain an...

  • SAP Grc Consultant

    3 days ago


    Kuala Lumpur, Malaysia amIT Global Solutions (Pte.) Ltd Full time

    **About the Role** - Design, implement and operate a secure infrastructure under SAP and non-SAP ecosystems. **What to expect** - Senior in SAP authorizations and GRC. - You need to be curious to develop your skill in security. - You will be working on new technologies around security in SAP (S4/Hana, SAP Rise, GRC, Access control, Risk management,...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Randstad Malaysia Full time

    About Job DescriptionContribute to IT GovernanceDevelop, implement, and maintain robust IT governance, risk, and compliance (GRC) policies, frameworks, and standard operating procedures in alignment with industry best practices and regulatory requirements.Collaborate with internal stakeholders to promote a unified approach to information security across the...

  • SAP Security+grc

    2 weeks ago


    Kuala Lumpur, Malaysia Junzo Sdn Bhd Full time

    Manage the creation and maintenance of business roles systems to ensure accurate translation of Business Process to Master Roles in SAP ERP, SAP APO, SAP Cloud based solutions, SAP BW, BPC and FIORI systems as well as timely updates to system access to meet changes to statutory requirements - Manage the Access Risk through Segregation of Duty (SoD) Ruleset...


  • Kuala Lumpur, Kuala Lumpur, Malaysia SWIFT Full time

    About the RoleTo provide expert input to security strategy and control of systems, networks, physical infrastructure, people, and information. To organize the design, communication, and execution of policies/controls/procedures as appropriate for Swift and its customers, and as consistent with the company objectives, company reputation, and regulatory...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Hong Leong Bank Full time

    Job Summary:Hong Leong Bank is looking for an experienced Information Security Specialist to join our security governance function. As a key member of our team, you will be responsible for establishing and maintaining effective security measures to protect our digital assets and information systems.Responsibilities:Identify and assess security risks to...

  • Cloud GRC Analyst

    4 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Tungsten Automation Full time

    The purpose of the GRC Analyst role:Governance, risk management, and compliance are three related facets that aim to assure an organization reliably achieves objectives, addresses uncertainty and acts with integrity.Governance is the combination of processes established and executed by management that are reflected in the organization's structure and how it...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Wizlynx Full time

    SENIOR/JUNIOR INFORMATION SECURITY CONSULTANT (GOVERNANCE, RISK AND COMPLIANCE)This position contributes to the success of wizlynx group by performing the following:Responsible for development and operational activities across the entire scope of our clients Security Governance, Risk and Compliance programs.The job encompasses leading and participating in...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Dentsu Aegis Network Full time

    Company OverviewDentsu Aegis Network is a global network designed for what's next, helping clients predict and plan for disruptive future opportunities and create new paths to growth in the sustainable economy.We take a people-centered approach to business transformation, using insights to connect brand, content, commerce, and experience, underpinned by...


  • Kuala Lumpur, Kuala Lumpur, Malaysia National Oilwell Varco Full time

    About This RoleWe are seeking an experienced Information Security Specialist to join our team at National Oilwell Varco. The ideal candidate will have a strong background in cybersecurity and a proven track record of implementing effective security measures to protect our systems and data.Key ResponsibilitiesSecurity Administration: Administer and support IT...


  • Kuala Lumpur, Kuala Lumpur, Malaysia ConvaTec Group Full time

    Your Key Skills and QualificationsYou have 5-8 years of hands-on experience in SAP, specifically in the SAP Security modules.You possess expertise in SAP Security, GRC Access Controls, GRC Process Controls.You lead system integration with SAP security, GRC access controls, GRC Process Controls and SAP Steady State Operations and Support.We Offer:An...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Businesslist Full time

    Information Security & Cloud Engineer Posting Date: 26 Mar 2025 | Close Date: 24 Jun 2025Company Background: Malaysia's leading Software specialist company that develops and provides customized software solutions with high quality, web application development, online marketing, and maintenance services for multinational corporations, huge businesses, as well...


  • Kuala Lumpur, Malaysia DHL Full time

    The incumbent will be responsible for working closely with regional ISO and coordinate Information Security related topics across project/product teams. This includes (but not limited to) coordinating security assessments for new and existing IT systems for DHL eCommerce in Asia Pacific region, and work with internal and external stakeholders to plan the...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Logicalis GmbH Full time

    Job OverviewWe are looking for a seasoned Security Information Response Specialist to join our DSOC team at Logicalis GmbH. As a key member of our incident response team, you will be responsible for responding to and resolving security-related incidents in a timely and effective manner.The ideal candidate will have a strong background in cybersecurity,...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Allianz Popular SL. Full time

    Allianz Services is part of Allianz Group, one of the world's leading insurers and asset managers and has succeeded in becoming one individual business segment by combining various businesses from different parent companies. Allianz Services is running service delivery operations in Romania, India, Mauritius and Morocco as well as is operating Consulting...