Head of Security Engineering, Group Tech

1 day ago


Kuala Lumpur, Kuala Lumpur, Malaysia Hong Leong Bank Berhad Full time

Overview:
The Head of Security Engineering will architect, implement, and govern a robust, future-proof security architecture and solutions across the bank. Your mandate is the absolute protection of our digital assets, infrastructure, and sensitive financial data. This includes owning the enterprise security blueprint and embedding global best practices derived from standards like ISO/IEC 27001 and NIST into enforceable security policies. This role reports to the Head of Security Management.

Responsibilities:

Operational:

  • Review vulnerability results, advise on remediation options (including temporary vs. permanent fixes), and actively monitor remediation outcomes to ensure timely closure.
  • Provide primary technical advisory for IAM and PAM applications and their underlying infrastructure with expert-level knowledge of enterprise security controls, including LDAP/Single Sign-On (SSO) and Access Control Lists (ACLs).
  • Provide support during implementation of security related enhancements and systems, liaising with internal and external teams (IT Risk, Audit) for smooth deployment.
  • Analyze changes and their security impact on existing systems whenever a new security measurement or patch is implemented.
  • Manage the RCSA, Audit and Compliance for Cyber Security / BNM and Internal Audit.

Technical:

  • Drive IT Security Engineering Initiatives and Projects definition and implementation, selection of solutions and architecture, as well as define operations framework and its continuous improvement.
  • Design secure systems and network architectures that align with business objectives, regulatory requirements and industry best practice including translating business and technical requirements into robust and secure architecture solutions.
  • Formulate network security architecture and identify suitable solutions to improve security posture group wide including recommending and implementing security architecture.
  • Responsible for advisory on security infrastructure such as Firewall, Network Intrusion Prevention Systems, Mail Gateway, Internet Proxy, VPN, WIFI security, Web Application Firewall, FireEye, NAC etc.
  • Ensure amended and enhanced systems meet strict BNM and Bank security compliance requirements. Utilize the Information Security risk assessment methodology to ensure proper controls are built into business requirements.

Leadership:

  • Partner with solution architects, development teams, and business stakeholders to ensure secure design and implementation. Includes building relationships with vendors, regulators and industry bodies to seek and adopt industry best practices in enterprise architecture and technology strategy
  • Provide technical guidance and mentorship to internal customers and internal teams and deliver targeted security workshops as and when needed.
  • Manages performance, development and wellbeing of a team of architects across various technology domains to providing end to end architecture services
  • Owns the relationships with key stakeholders including Cyber Security peers, group CITO, Heads of Architecture, First and Second Line Engineering Risk, Business Information Security Officers.
  • Take accountability for the final decision on the technical approach for security improvements and manage the prioritization and assignment of all implementation tasks.

Skills & Experience We Are Looking For:

  • Bachelor's degree in Computer Science, Information Security, or a related field; equivalent practical experience will be considered.
  • Minimum of 8 years of experience in IT security architecture design, risk management and cybersecurity operations preferably within the financial services or insurance industries.
  • Familiarity with IAM, network security, data protection and encryption standards.
  • Practical experience with security technologies including firewalls, SIEM, IAM, DLP, XDR, PQC etc.
  • Understanding of DevSecOps and secure SDLC practices.
  • Cloud-specific security certifications (AWS Security Specialty, Azure Security Engineer)
  • Hands-on experience in threat modeling and implementation of security controls.
  • Strong knowledge of security architecture frameworks (e.g., SABSA, TOGAF with security extensions, ISO/IEC 27001, NIST, and COBIT).
  • Regulatory compliance experience (RMIT, ISO 27001, SOC2, GDPR, PDPA).
  • Experience with Agile and Waterfall methodologies, and secure software development lifecycle (SDLC).
  • CISSP, CCSP, or equivalent would be an added advantage.
  • Expertise in cloud security (AWS, Azure, GCP) and on-prem security controls.

For more job opportunities, please go to HLB Careers:

We appreciate your application and will be in touch with shortlisted candidates regarding next steps.



  • Kuala Lumpur, Kuala Lumpur, Malaysia Hong Leong Bank Berhad Full time

    Overview:The Security Engineer is a critical role responsible for driving and executing the security engineering strategy across the organization. This individual will play a key role in designing, implementing, and maintaining secure systems, applications and infrastructure. The ideal candidate is a highly motivated and experienced security professional...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Hong Leong Bank Berhad Full time

    Overview:The Head of Cyber Defense will establish, lead, and maintain the bank's unified operational security readiness across all business units and regional offices. Your mandate is to ensure world-class capability for threat detection, incident response, and continuous vulnerability assessment. This includes owning the regional Cyber Defense strategy,...


  • Kuala Lumpur, Kuala Lumpur, Malaysia FWD Insurance Full time

    About FWD GroupFWD Group (1828.HK) is a pan-Asian life and health insurance business that serves approximately 34 million customers across 10 markets, including BRI Life in Indonesia. FWD's customer-led and tech-enabled approach aims to deliver innovative propositions, easy-to-understand products and a simpler insurance experience. Established in 2013, the...

  • Network Engineer

    1 day ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Tech Aalto Full time

    Job Title: Network Engineer – Level 2 (L2)Location: MalaysiaDepartment: IT / Network Operations / Data CenterExperience Required: 3–6 yearsEmployment Type: Full-timeJob Summary:We are seeking an experienced Network Engineer (L2) with a strong data center networking background and exposure to Operational Technology (OT) environments. The candidate will be...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Boost Bank Full time

    The Head of Information Security in the Boost DigiBank is responsible for ensuring the security of the bank's information systems and data, and for managing the bank's overall information security st rategy. The Head of Information Security is typically a high -level executive who reports directly to the Bank's CEO or Board of...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Aisling Group Full time $80,000 - $120,000 per year

    Our client- is a well-established large organization operating in the health space for manufacturing industry. It is committed to delivering high-quality products and services while fostering an environment that values innovation and operational excellence.Is seeking a passionate and technically sound Head of Sustainability individual to drive ESG and...


  • Kuala Lumpur, Kuala Lumpur, Malaysia IITMatrix Full time $120,000 - $200,000 per year

    Job Description:Oversee the GIS team of security experts (~30) and provide leadership and mentorship as an internal subject matter expertLead the GIS security engineers (~18) for delivery of daily responsibilities required to effectively operate and maintain the lifecycle of security technologiesDrive operational excellence by implementing best practices,...

  • Head of Security APAC

    2 weeks ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Technip Energies Full time

    Job DescriptionBe part of the solution at Technip Energies and embark on a one-of-a-kind journey. You will be helping to develop cutting-edge solutions to solve real-world energy problems.We are currently seeking a Head of Security to join our team based in Kuala Lumpur.About us:Technip Energies is a global technology and engineering powerhouse. With...

  • Head Chef

    1 week ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Chef Wan Group of Restaurants Full time

    About the RoleDewan by Chef Wan is seeking a highly creative and experienced Head Chef to lead our back-of-house operations. The ideal candidate will champion Chef Wan's culinary philosophy, authentic Malaysian flavours with modern techniques while ensuring exceptional food quality and guest satisfaction.You will oversee kitchen operations, lead culinary...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Touch 'n Go Group Full time

    We fuel the ideas and ambitions of our people with an environment built on Our DNA of Love, Entrepreneurship, Agility, and Passion – LEAPWe are a culture that empowers everyone to innovate and create solutions that will leave a positive impact on our communities and our nation, Touch 'n Go will always be here to inspire our talents to grow as leaders and...