IT Risk and Compliance Specialist

1 day ago


Kuala Lumpur, Malaysia Nestle Operational Services Worldwide SA Full time

**Position Snapshot**

Location: Petaling Jaya, Selangor, MY
Company: Nestlé Malaysia
Full-time
Bachelor’s Degree
4+ years of experience

**Position Summary**

Joining Nestlé means you are joining the largest Food and Beverage Company in the world. At our very core, we are a human environment - passionate people driven by the purpose of enhancing the quality of life and contributing to a healthier future. A Nestle career empowers you to make an impact locally and globally, as you are provided with the opportunity to make a mark and stand out, if you seek it. With Nestle, you are enabled and encouraged to grow not only as professionals, but also as people.

We are looking for an IT Risk and Compliance Specialist to be responsible for implementing, coaching and improving an integrated risk, compliance and security management system in accordance with the business risk appetite.

**A day in the life of...**
- Support risk identification and control mapping for all solutions and processes in product/product groups and other IS/IT teams using the Nestlé Security, Risk & Compliance framework and management system. Coach and support teams in managing Risk, Compliance & Security gaps through documented corrective & preventative actions, tracked through the management system.
- Responsible for conducting management system reviews and reporting to assess the IT compliance and management system. Including collaborating with internal and external Auditors, tracking and following up all IS/IT audits, internal review or regulatory findings as corrective & preventative actions through the management systems.
- Provide guidance and support to IS/IT teams in implementing by design the required IT compliance in their solutions to meet the desired level of compliance maturity and risk appetite in the Nestlé Framework.
- Maintain the management system through continuous review and evaluation of external frameworks and standards (e.g., ISO27001, COBIT, NIST, ITIL etc.), including Implementing tools and process to support an integrated Risk, Compliance & Security Framework (including regulatory requirements PCI, GDPR Quality etc.)
- Contribute to the maintenance and development the Controls library to address the evolving risk environment, automation, and translation of Regulatory & Industry standards into Nestlé as control procedures, metrics and scripts.
- Support the roll-out & evolution of the Risk, Compliance & Security competency framework, including the roll-out and tracking of the awareness and behavior training. Coach & train IS/IT teams on the implementation and management of controls, Train IS/IT teams on standards, policies, frameworks, and regulatory requirements.
- Ensure all IS/IT teams are trained in identifying and reporting Security, Risk & Compliance incidents and events to meet internal & external requirements.

**What will make you successful**
- 4+ years of experience in a combination of risk management, compliance, information security and IS/IT jobs.
- Undergraduate degree in the field of computer science, IT Security, Quality Management, or business administration; graduate degree in one these fields preferred.
- Script & report development experience in Power BI, SQL, PowerShell, Python, Power Automate preferred.
- Good in IT Risk Management with ISO27001 or NIST or relevant external standard knowledge.
- Good strong exposure, preferrable hands-on working experience on cloud platform specifically Azure Infrastructure/Platform, preferable someone who have AZ-500 Microsoft Azure Security Certificate or SC-200: Microsoft Security Operations Analyst.
- IT risk management or security management certification is preferred.
- Strong written and verbal communication skills in English and Mandarin.
- Strong facilitation skills in risk assessments required.
- Experience having worked in a global environment and with virtual teams.



  • Kuala Lumpur, Malaysia Skill Quotient Full time

    Role: IT Governance, Risk and Compliance Specialist Client: Insurance Working Mode: On Site **Job Type**: 12 Months contract based. Renewable & Extendable. Job Location: Damansara/KL Experience: 3 - 5 years’ experience in IT Governance Open for Local Malaysians Only **JOB DESCRIPTION** - Enforces IT standards and IT Governance in Allianz Malaysia. -...

  • Risk & Compliance

    3 days ago


    Kuala Lumpur, Malaysia Gratitude Inc. Full time

    **Role**:Risk & Compliance **Timings**:Rotational Shifts (Permanent) **Industry**:Accounting / Finance **Work Mode**:Work from office **Functional Area**:Accounting / Tax / Company Secretary / Audit Key Skills: Analysis Risk Management Assessment of Risk Vendor Risk Analyst risk management, risk analyst skills Risk And Compliance.Risk Assessment - Job...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Tap Growth ai Full time

    We're Hiring: Financial Compliance Specialist We are seeking a detail-oriented and experienced Financial Compliance Specialist to ensure our financial operations align with regulatory standards and internal policies. The ideal candidate will possess in-depth knowledge of compliance frameworks, risk management, and auditing practices to safeguard our...


  • Kuala Lumpur, Malaysia SWIFT Financial Messaging Services Full time

    ABOUT US We’re the world’s leading provider of secure financial messaging services, headquartered in Belgium. We are the way the world moves value - across borders, through cities and overseas. No other organisation can address the scale, precision, pace and trust that this demands, and we’re proud to support the global economy. We’re unique too....


  • Kuala Lumpur, Malaysia OCBC Bank Full time

    **Risk & Prevention Specialist - Operational Risk** **-** **(**250000AA**)** - Perform regular risk reporting and ensure timely submission (for e.g. KRI reporting, BNM ORR reporting, RCSA, CSA etc). - Assist in building a preventive culture in O&T Malaysia. - Implement operations & technology risk prevention initiatives/ programs within Malaysia. - Tracks,...


  • Kuala Lumpur, Malaysia Kamlax Global Technologies Sdnbhd Full time

    **Responsibilities**: - Roles & Responsibilities: - Implement and monitor the information security and IT risk management program within the department - Work directly with the head of departments and risk coordinators to facilitate IT risk assessment and risk management processes, and work with stakeholders on identifying acceptable levels of residual...

  • IT Risk Specialist

    3 days ago


    Kuala Lumpur, Malaysia iFAST Corporation Full time

    **Job Descriptions**: - Work extensively with Subject Matter Expert (SME) and Process Owners to create and improve policies and procedures to promote continuous improvement and the best practices. - Coordinate and facilitate self-assessment activities. - Work closely with the IT Domain Heads in control testing, identify gaps and provide recommendations for...


  • Kuala Lumpur, Malaysia Standard Chartered Full time

    Job ID: 35956 Location: Bukit Jalil KL, MY Area of interest: Business Support, Management & Efficiency Job type: Regular Employee Work style: Office Working Opening date: 7 Aug 2025 **Job Summary** - The role sits within the Compliance, Financial Crime (CFCR), and Conduct Risk team. Specifically supporting the Corporate & Investment Banking businesses. The...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Tranglo Full time 2,000,000 - 2,500,000 per year

    The VP, Compliance and Risk plays a pivotal leadership role in overseeing regulatory compliance, AML/CFT/CPF compliance, and enterprise risk management functions for Tranglo Sdn Bhd (Malaysia) and Tranglo Pte Ltd (Singapore). This role ensures the effective implementation of compliance and risk frameworks in alignment with Bank Negara Malaysia (BNM) and the...


  • Kuala Lumpur, Malaysia Standard Chartered Full time

    Job ID: 35951 Location: Bukit Jalil KL, MY Area of interest: Governance, Risk Management & Compliance Job type: Regular Employee Work style: Office Working Opening date: 7 Aug 2025 **Job Summary** - The role sits within the Compliance, Financial Crime (CFCR), and Conduct Risk team. Specifically supporting the Corporate & Investment Banking businesses. The...