Security Assurance Lead

7 days ago


Kuala Lumpur, Kuala Lumpur, Malaysia Boost Bank Full time

The Security Assurance Lead is responsible for developing and executing robust security strategies, policies, and procedures to ensure the protection of the digital bank's assets, data, and operations in compliance with Malaysia's regulatory framework. This role involves identifying and mitigating security risks, managing regulatory compliance, and driving a strong security culture within the organization.

The Security Assurance Lead's role in Boost Digital bank is vital for navigating the unique regulatory landscape, safeguarding sensitive data, and ensuring the secure and compliant operation of the digital banking platform.

Key Responsibilities:

Security Strategy and Planning:

  1. Develop, implement, and maintain a comprehensive security strategy tailored to Malaysia's banking industry and regulatory requirements.
  2. Collaborate with senior management to establish security objectives aligned with the digital bank's business goals.

Regulatory Compliance:

  1. Stay current with local regulations and guidelines issued by Bank Negara Malaysia (BNM) and other relevant authorities pertaining to cybersecurity, data privacy, and financial industry security.
  2. Ensure the digital bank's security practices and policies are aligned with BNM's requirements and industry best practices.

Risk Assessment and Management:

  1. Conduct thorough risk assessments and vulnerability assessments specific to the Malaysian digital banking landscape.
  2. Develop and execute risk management strategies to prioritize and mitigate security risks.

Security Policies and Procedures:

  1. Create, implement, and enforce security policies, standards, and procedures that align with local regulations and international standards.
  2. Ensure security policies address the unique challenges and risks faced by digital banks in Malaysia
    .

Security Audits and Assessments:

  1. Coordinate and conduct regular security audits, assessments, and penetration testing to evaluate the effectiveness of security controls.
  2. Collaborate with internal and external auditors to demonstrate compliance with regulatory requirements.

Incident Response and Management:

  1. Develop and maintain a robust incident response plan specific to Malaysian regulatory requirements.
  2. Lead incident response efforts in the event of security breaches or incidents, ensuring timely resolution and reporting as mandated by BNM.

Security Awareness and Training:

  1. Design and deliver security awareness programs and training tailored to local cultural and regulatory considerations.
  2. Promote a strong security culture among employees and stakeholders within the Malaysian digital bank
    .

Vendor and Third-Party Security:

  1. Evaluate and manage the security practices of third-party vendors and partners, ensuring they meet local regulatory expectations.
  2. Monitor and assess vendor security risks, considering Malaysia-specific factors
    .

Security Architecture and Design:

  1. Collaborate closely with IT and development teams to embed security principles into the architecture and design of digital banking systems, ensuring compliance with local regulations.

Security Incident Reporting:

Prepare and present regular reports on security incidents, risks, and compliance efforts to senior management, BNM, and relevant committees
.

Job Requirements & Criteria:

  • Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field.
  • Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or industry-specific certifications related to Malaysia's banking sector.
  • Extensive experience in information security, with a focus on the financial industry in Malaysia.
  • In-depth understanding of local cybersecurity regulations, guidelines, and standards, including those issued by Bank Negara Malaysia (BNM).
  • Proficiency in security tools, technologies, and risk assessment methodologies relevant to the Malaysian digital banking landscape.
  • Excellent communication skills, including the ability to communicate effectively with regulators and senior management.
  • Strong leadership and collaboration abilities in cross-functional and multicultural environments.
  • Analytical mindset with the ability to tailor security strategies to address Malaysia-specific risks and challenges.

  • Security Architect

    2 weeks ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Skill Quotient Technologies Inc Full time

    Requirements· Proven experience in security architecture design, preferably by financial services or insurance industries.· Bachelor's degree in computer science, Cybersecurity, Engineering, or related discipline.· At least 8 years of experience in IT security architecture, risk management, or cybersecurity operations.· Strong knowledge of security...


  • Kuala Lumpur, Kuala Lumpur, Malaysia iForte Group Full time

    Contract duration: 12 months (Convertible to permanent)Job OverviewThe Supervisor, IT Security & GRC, will lead the organization's cybersecurity and governance team, ensuring that both technical defences and compliance frameworks are effectively implemented, monitored, and continuously improved. This role provides leadership across IT Security Operations and...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Borong Full time 90,000 - 120,000 per year

    Job Summary:The QA Lead will be responsible for leading the Quality Assurance (QA) function across Borong's digital platforms and internal systems. This role involves developing test strategies, managing QA processes, and guiding a team of testers and engineers to ensure that our products meet the highest standards of quality and performance.Key...

  • Security Lead

    6 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia PureSoftware Ltd Full time

    Job Description:We are seeking a highly skilled and proactive Security professional to join our team. The successful candidate will play a crucial role in Eastspring Regional team ensuring the security and compliance of project / application implementation, with a particular focus on application security assessment throughout SDLC, Cloud services, DevSecOps...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Agensi Perkerjaan Career360 Sdn Bhd Full time 180,000 - 300,000 per year

    Position SummaryThe Information Security Operations Manager is responsible for leading the security & identity access management (IAM) operations team to protect the organization's systems, application and network in security operation perspective (across multiple locations within the region) and in responsible for the development, implementation, and...

  • Flow Assurance

    2 weeks ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Elsa Talent Solutions Sdn. Bhd. Full time 1,000,000 - 1,500,000 per year

    DescriptionTo be a part of project & operation team responsible for all flow assurance aspects for the safe and efficient operation of oil and gas production systems. This shall cover wells, flowlines and risers, fixed or floating production facilities, injection facilities and pipelines. To provide daily process engineering and flow assurance support...

  • Flow Assurance

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Elsa Talent Solutions Full time

    DescriptionTo be a part of project & operation team responsible for all flow assurance aspects for the safe and efficient operation of oil and gas production systems. This shall cover wells, flowlines and risers, fixed or floating production facilities, injection facilities and pipelines. To provide daily process engineering and flow assurance support...


  • Kuala Lumpur, Kuala Lumpur, Malaysia amIT Global Solution Full time

    Key ResponsibilitiesActs as a team leader providing guidance to Security Engineering team and sets goals and assists the team in accomplishing those goals.Manage security architecture and provide consultancy to strengthen security designCoordinate with the team to manage security tools (IPS, SIEM, VA scan, DLP, AV, ATP)Coordinate with project manager to...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Hiree Full time

    Job Purpose:The Manager, Security Operations manages and executes the bank's daily IT security operational posture. This role ensures the continuous operation, compliance, and effective management of security controls and systems that safeguard Hong Leong Bank Berhad's critical IT infrastructure and data assets. The incumbent will lead a dedicated team to...

  • Cyber Security

    6 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Hiree Full time

    JOB PURPOSE:The position is responsible for defining, implementing, and continuously improving enterprise-wide cybersecurity requirements and governance. This role is responsible for leading and enabling risk-informed decision making for the overall cybersecurity landscape by utilising a risk-led and threat-informed approach. It is expected that all...