Information and Network Security GRC Senior Specialist
7 days ago
Are you ready to get ahead in your career?
- We want to empower you to turn your ambitions into achievements.
- We thrive in inclusiveness, diversity and embrace close collaborations for you to create impact for yourself and others.
- Together, we aim to bring the best of technology to help people, businesses and the nation to be ahead in a changing world.
- To realise our vision to become Malaysia's leading converged solutions company, we are looking for a new talent to innovate and grow with us in a culture that values commitment, performance and possibilities.
Why does this job exist and why is it critical?
Job Summary
The role oversees compliance and risk management across critical technology systems, ensuring alignment with internal standards (INS/CoP), ISO/IEC 27001, and regulatory requirements. Responsibilities include managing control baselines, third-party risk, and audit readiness; coordinating regulatory and board reporting; conducting control testing and assurance; and maintaining dashboards and key risk indicators for senior governance forums.
What are you accountable for?
1.INS / CoP Compliance (NCII): Own the INS/CoP control baseline for critical systems across ISD and Telco Network; maintain the critical systems inventory, scope and control mapping; embed Technology & Cyber Risk Management and Cyber Resilience requirements into technical and procedural controls and SLAs.
2.Management, Regulatory & Board Reporting: Coordinate regulatory submissions (e.g., monthly/half‑yearly dashboards, incident notifications) and provide updates to senior governance bodies (e.g., TGC, ARC); track feedback and actions to closure.
3.ISO/IEC ISMS) Governance: Act as control owner/co‑owner for applicable Annex A controls; maintain accurate SoA, risk treatment plans, audit evidence; support internal/external ISMS audits, surveillance, and certification activities.
4.Third‑Party Risk Management (TPRM): Run end‑to‑end TPRM: vendor tiering, security questionnaires, evidence review, risk scoring, contractual security clauses (Cybersecurity General Policy & Consequence Management), tracking, and escalations for non‑responsive or high‑risk vendors. Ensure subcontractors inherit Maxis security obligations.
5.Control Testing & Assurance: Plan and perform control testing, walk‑throughs and sampling for INS/CoP, PDP, ISO 27001, and TPRM controls; produce clear findings and risk‑based remediation plans with accountable owners and target dates.
6.Metrics, KRIs & Dashboards: Develop and maintain compliance dashboards/metrics (INS/CoP, PDP, ISO 27001, TPRM). Present KRIs/KPIs to management forum, Technology Governance Committee (TGC) and ARC; ensure single source of truth for audit/regulatory evidence.
7.Incident & Resilience Enablement: Advise on incident classification, regulatory notification criteria and evidence capture for ISD & Network; ensure playbooks and runbooks reflect INS/CoP expectations and resilience targets (RTO/MTD).
What do you need to have to fit this role?
Minimum 10 year of working experience in Telecommunication Network and/or Cybersecurity
Bachelor's degree in Information Security, Computer Science, IT, Risk Management, or related field.
Knowledge of INS/CoP, ISO/IEC 27001, and regulatory compliance frameworks.
Experience in third-party risk management and vendor security assessments.
Ability to manage audits, control testing, and remediation planning.
Skilled in compliance reporting, dashboarding, and presenting KRIs/KPIs.
Strong stakeholder engagement and communication skills.
Relevant certifications (e.g., ISO 27001, CISA, CRISC, CISSP) are an advantage.
What's next?
- Once you've applied online, our team will carefully review your application. Due to a high volume of applications, we appreciate your patience to allow for a fair and timely review process.
- Should you be shortlisted for the role, we will send you an invitation via email for a digital interview. You can also check on your application status by logging into your candidate account.
Maxis values diverse voices & people. We hire and reward our employees based on capability & performance — regardless of ethnicity, gender, age, education, religion, nationality or physical ability.
-
Sungai Besi, Malaysia MAXIS Full timeAre you ready to get ahead in your career?We want to empower you to turn your ambitions into achievements.We thrive in inclusiveness, diversity and embrace close collaborations for you to create impact for yourself and others.Together, we aim to bring the best of technology to help people, businesses and the nation to be ahead in a changing world.To realise...
-
Information Security Grc Associate
2 weeks ago
Sungai Besi, Malaysia Maxis Full timeAre you ready to get ahead in your career? - We want to empower you to turn your ambitions into achievements. - We thrive in inclusiveness, diversity and embrace close collaborations for you to create impact for yourself and others. - Together, we aim to bring the best of technology to help people, businesses and the nation to be ahead in a changing world. -...
-
Security Monitoring Agent
2 days ago
Sungai Besi, Malaysia Maxis Full timeAre you ready to get ahead in your career? - We want to empower you to turn your ambitions into achievements. - We thrive in inclusiveness, diversity and embrace close collaborations for you to create impact for yourself and others. - Together, we aim to bring the best of technology to help people, businesses and the nation to be ahead in a changing world. -...
-
Senior IT Support
7 days ago
Sungai Besi, Malaysia DZ Card (Malaysia) Sdn Bhd Full timeJob Summary:The IT Support cum Network Administrator will oversee the organization's IT infrastructure, ensuring the smooth operation of hardware, software, and networks.Key Responsibilities:Manage, monitor and maintain LAN, WAN, Wi-Fi, VPN ad firewalls to ensure high security and performance.Provide day-to-day technical support to internal staff and...
-
Security and Threat Intelligence Analyst
1 week ago
Sungai Besi, Malaysia Maxis Full timeAre you ready to get ahead in your career? - We want to empower you turn your ambitions into achievements. - We thrive in inclusiveness, diversity and embrace close collaborations for you to create impact for yourself and others. - Together, we aim to bring the best of technology to help people, businesses and the nation to be ahead in a changing world. - To...
-
Convergent Billing Specialist
2 days ago
Sungai Besi, Malaysia Maxis Full timeAre you ready to get ahead in your career? - We want to empower you turn your ambitions into achievements. - We thrive in inclusiveness, diversity and embrace close collaborations for you to create impact for yourself and others. - Together, we aim to bring the best of technology to help people, businesses and the nation to be ahead in a changing world. - To...
-
Senior DevOps Engineer
2 weeks ago
Singapore, SG / Penang, MY Bitdeer Technologies Group Full time 1,440,000 - 1,728,000 per yearAbout Bitdeer:Bitdeer Technologies Group (Nasdaq: BTDR) is a leader in the blockchain and high-performance computing industry. It is one of the world's largest holders of proprietary hash rate and suppliers of hash rate. Bitdeer is committed to providing comprehensive computing solutions for its customers. The company was founded by Jihan Wu, an early...
-
Marketing and Public Relations Specialist
2 days ago
Sungai Besi, Malaysia ONCAR SDN BHD Full time**Responsibilities**: - Create brand awareness to our client's targeted channels B2B and B2C - Maintain good relationships with existing clients and future clients - Manage Marketing Team’s KPI to achieve the company’s goal - Engage with clients face-to-face via events, and campaigns - Work as a team to manage PR campaigns to help clients achieve their...
-
Sales Roadshow Representative
2 weeks ago
Sungai Besi, Malaysia Aces Meritorious Group Sdn Bhd Full timeIt is almost the end 2025, but have you secured the job that can prepare you for 2026? You see your friends receiving their bonus but you are still figuring out how to make ends meet? Here’s the good news: You don’t need to have all the answers. You just need a place where you can grow, be yourself, and make a real impact for yourself. At Aces...
-
Accounts Assistant
1 week ago
Sungai Besi, Malaysia Chrisjac Recruitment Services Full time**Position title: Accounts Assistant.**: - **Salary: RM 2500-3000.**: - **Work location: Lake Fields(5-day week), Sungei Besi, KL.** **About the company** This company is Malaysia's leading retail group on international luxury fashion and lifestyle brands. With over 100 labels under its portfolio, they are one of the most recognizable brands in...