Security Risk Manager

3 days ago


Kuala Lumpur, Kuala Lumpur, Malaysia VF Corporation Full time
Job Description

The Cybersecurity Strategist will be responsible for ensuring that information security risks associated with complex business operations are within acceptable tolerances.

This includes performing information security risk assessments, providing direction and guidance to stakeholders concerning the handling of security risks associated with assessment findings, assisting with the design of appropriate risk mitigation strategies, and serving as an audit quality assurance gate for internal and external auditors while driving compliance and audit work related to data privacy.

Main Responsibilities:

  • Collaborate with information technology and other business units to identify cybersecurity risks associated with current and planned projects.
  • Perform assessments of external party information security controls to ensure they meet or exceed VF's information security risk management requirements for the services to be provided.
  • Determine information security risk profiles for various vendor and business partner services using questionnaires, relevant industry best practices and standards, and knowledge of VF policies.
  • Recommend solutions to eliminate, reduce, or mitigate cybersecurity risk, and communicate said solutions to external parties and/or internal business stakeholders as appropriate.
  • Provide direction and guidance as needed to internal project stakeholders concerning statutory, regulatory, and VF policy requirements.
  • Report status of engagements to Global Cyber Security management, project managers, and other business stakeholders as appropriate.
  • Assist in enforcing information security policies, standards, and procedures. Review requests for exceptions to security policies and provide recommendations to management.
  • Serve as a focal point for MLPS and provide advisory around MLPS and other APAC data privacy laws related controls and processes.
  • Act as focal point for Regional PCI-DSS assessments, vulnerability assessments and other security operations.
  • Research and advocate new technologies, architectures, and products that will support security requirements for the enterprise and its customers, business partners, and vendors.
  • Perform other information security risk management tasks as assigned.


  • Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Full time

    Job OverviewWe are seeking an experienced Security Risk Management Expert to join our team. As a critical function, this role will be instrumental in protecting and ensuring the resilience of Standard Chartered Bank's data and IT systems.ResponsibilitiesLead and manage the team responsible for third-party risk management, ensuring that all vendors meet the...


  • Kuala Lumpur, Kuala Lumpur, Malaysia SWIFT Full time

    Senior SAP Security Position SummaryWe are seeking a Senior SAP Security Specialist to join our team at SWIFT. In this critical role, you will provide expert input to security strategy and control of systems, networks, physical infrastructure, people, and information.Key AccountabilitiesDevelop, implement, and manage SAP Security Roles to establish secure...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Finexus Group Full time

    We are seeking a highly skilled and experienced Cybersecurity Threat Hunter to join our team at Finexus Group. As a key member of our IT department, you will play a critical role in ensuring the security and integrity of our systems and data.About Us:We provide SaaS services for the banking and financial industry, offering infrastructure, platform, and...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Boost Full time

    Information Security DirectorWe are seeking an experienced information security director to lead our enterprise risk management efforts. As a key member of our IT organization, you will be responsible for developing and driving the platform security strategy, creating and enforcing security standards and policies, and providing expertise in security audits...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Tokio Marine Insurance Group (Asia) Full time

    We are seeking an experienced Network Security and Risk Management Expert to join our team at Tokio Marine Insurance Group (Asia). This role will be responsible for monitoring and responding to security incidents and managing and governing security infrastructure and solutions.Key ResponsibilitiesMonitor and respond to security incidents.Manage and govern...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Prudential Hong Kong Limited Full time

    Job DescriptionThe role of Deputy IT Security Director is to support the overall security strategy and goals of Prudential Hong Kong Limited. The incumbent will be responsible for ensuring compliance with policies and guidelines by PCA and regulatory bodies, supporting IT audits and reviews, and reviewing, recommending, and implementing IT security...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Standard Chartered Full time

    Cyber Security Leadership OpportunityWe are seeking a talented and experienced Cyber Security Leader to join our team at Standard Chartered. As a key member of our Cyber Security Operations (CyOPS) department, you will play a critical role in leading risk and control activities for selected service lines within Information Cyber Security (ICS).Your primary...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Petron Malaysia Refining & Marketing Bhd Full time

    Job Overview:Develop, implement, and manage Information Security Governance, Risk Management, and Compliance (GRC) programs.Evaluate information security controls, processes, and solutions to align with business needs and regulatory standards.Responsibilities:Lead the development of information security control policies, procedures, and guidelines in line...


  • Kuala Lumpur, Kuala Lumpur, Malaysia HSBC Full time

    At HSBC, our purpose is to open up a world of opportunity. We are committed to removing barriers and ensuring careers at HSBC are inclusive and accessible.Risk management is a critical function that plays a vital role in helping the Group deliver on its strategy by enabling safe and sustainable growth. This involves overseeing a robust risk management...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Petron Malaysia Refining & Marketing Bhd Full time

    Job Summary:As an IT Governance, Risk & Compliance Analyst at Petron Malaysia, you will develop, implement, and manage Information Security Governance, Risk Management, and Compliance (GRC) programs to ensure alignment with business needs and regulatory standards. You will lead the development of information security control policies, procedures, and...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Wipro Full time

    This role is responsible for identifying, assessing, managing, and governing risk through the application of the Bank's Enterprise Risk Management Framework and specifically the underpinning Operational Risk Type Framework and with consideration given to industry standards and best practices.The successful candidate will be key in continuing improvements in...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Boost Full time

    We are seeking a Senior IT Risk Management Specialist to join our team at Boost. The successful candidate will be responsible for developing, implementing, and overseeing the Information Security Governance, Risk Management, and Compliance Programs within our organization.You will ensure that information security controls, including processes and solutions,...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Career Horizons Full time

    About the RoleThe successful candidate will be responsible for performing security assessments, audits, and ensuring compliance with industry standards. They will also deploy, configure, and maintain security solutions, including firewalls, SIEM, IDS/IPS, and endpoint protection tools.


  • Kuala Lumpur, Kuala Lumpur, Malaysia Arvato Systems Malaysia Full time

    Job DescriptionThis is an exciting opportunity to join Arvato Systems Malaysia as a Cloud Risk Management Professional. In this role, you will be responsible for managing cloud risks and ensuring compliance with regulatory requirements.Key ResponsibilitiesCloud Risk Management: Identify and manage cloud-related risks to minimize exposure.Compliance and Risk...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Touch 'n Go Group Full time

    Information Security Leadership OpportunityTouch 'n Go Group is seeking a seasoned Cybersecurity Executive to serve as our Vice President of Information Security. This leadership role will be responsible for developing and executing the organization's information security strategy, ensuring the confidentiality, integrity, and availability of our information...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Munich Reinsurance Company Full time

    Family Retakafl Market Expansion: Seeking a Risk and Compliance AnalystMunich Reinsurance Company is looking for a talented Risk and Compliance Analyst to contribute to its success in the global Family Retakafl market. As a key member of the team, you will be responsible for providing an effective second-line defence function for Munich Re Retakafl...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Ørsted Full time

    Ørsted is seeking a Security Infrastructure Manager to lead our efforts in designing and implementing robust security solutions to protect our IT infrastructure. As a Security Infrastructure Manager, you will ensure compliance with industry standards and integrate security across various departments.You will work closely with IT and business teams to...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Arvato System Malaysia Full time

    About the RoleWe are seeking a Cybersecurity Specialist to join our team in Kuala Lumpur. The successful candidate will be responsible for ensuring the security and compliance of our cloud infrastructure.Key ResponsibilitiesManage Cloud Security: Develop policies to reduce threat and risk exposure.Compliance and Risk Management: Implement policies to meet...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Michael Page Full time

    About Our ClientOur client is a market leader in the industry. Boasting on their revenue, global presence and huge clientele, our client is looking to remain competitive and they believe in hiring the best talent to produce the best results. Due to the aggressive development of the business, they are looking for a Senior Manager, Risk Management to further...


  • Kuala Lumpur, Kuala Lumpur, Malaysia StashAway Full time

    StashAway Kuala Lumpur, Federal Territory of Kuala Lumpur, MalaysiaTechnology Risk ManagerThe Technology Risk Manager is a self-motivated, IT-savvy and collaborative individual playing a vital compliance and oversight role on our Technology team.As the 1.5 Line of Defence for the Technology team, you are responsible for the maintenance and enforcement of...