Epicareer Might not Working Properly
Learn More
V

Cyber Security Manager

  • Full Time, onsite
  • VMM HOLDINGS SDN BHD
  • Kuala Lumpur Security (Information & Communication Technology) Full time Add expected salary to your profile for insights, Malaysia
Salary undisclosed

Apply on


Original
Simplified

Role Overview

This is a managerial role responsible for IT Risk & Control Self-Assessment, identify key technology risks and execute the mitigation plan. Delivering the implementation of innovative data strategies and contributing to the team’s commitment to excellence.

An experienced professional with proven experience in delivery of best-in-class results in the realm of risk analytics especially around Technology Risk Management required.

This position will be based in Kuala Lumpur

To support the implementation of the TRMP and CRP

  • Perform Technology and Cyber Risk Reviews Assessment (including risk impact, system criticality, cloud, etc.) on Technology projects and provide support to stakeholders on related risks and mitigation. This can include new digital initiatives, adoption of new and emerging technologies
  • Perform Independent review of IT Risk & Control Self-Assessment (RCSA), identify key technology risks and track the mitigation progress of business units. This will include testing of controls identified in RCSAs by Business Units
  • Oversight over the investigation to identify the root cause of technology/cyber incidents/issues and report to Head, Information Security.
  • Ensure complete, accurate and timely dashboard reporting of internal and BNM ORR Technology Key Risk Indicators and loss event via BNM ORR and CISS. This includes oversight of ITOC reports
  • Accurate and timely risk reporting to management and board level committee on IT and Cyber risk related matters
  • Annual review of risk management policies and procedures to ensure compliance to laws, regulations and group policies
  • Experience in Cloud security architecture/ implementation, VAPT, SAST, and DAST is preferred

Business Continuity Management (BCM)

  • Assist in the implementation BCM initiatives which include coordination of risk assessments, business impact analysis (BIA), BCP/DRP tests, training, reporting, and maintenance of BCM policies and manual

Outsourcing

  • Review and challenge responses on technology related matters for outsourcing activities application, including due diligence, new outsourcing arrangements and renewal

Requirements

  • Degree in IT or Computer Science or related discipline
  • At least 5 years' relevant working experience in IT audit, risk management, compliance and/or governance role in technology risk issues and cybersecurity
  • Preferably from financial industry, or established auditing firms
  • Good understanding of regulatory requirements related to IT, Cybersecurity, Infrastructure security, Application Security, Identify and Access Management, technology risk management
  • Possess analytical and strategic with a track record of success in delivery results.