Epicareer Might not Working Properly
Learn More

Security Officer (IT)

  • Full Time, onsite
  • DTC Academy Sdn. Bhd.
  • Kuala Lumpur Security (Information & Communication Technology) Full time RM 8, Malaysia
Salary undisclosed

Apply on


Original
Simplified

dtcpay recently honoured as Disruptor of the Year and Paytech of the Year at the Asia Fintech Awards, with strong foundations in Singapore and Hong Kong, we're launching our global journey starting from Malaysia. We invite talented and driven individuals to join us in this exciting phase of growth. If you're eager to make a difference and grow with a dynamic company, we'd love to have you on our team!

Responsibilities:

  • Lead the adoption of best security practices in the organization.
  • Lead and work with other teams on security related audits and certifications
  • Manage, assess, and address security vulnerabilities and perform patch management.
  • Identify, assess, and remediate cyber risks in cloud, applications, endpoints, system, and network.
  • Work with other teams on strengthening further their security related processes.
  • Work with other teams on automating security related processes if applicable.

Requirements:

  • Degree in Computer Science or a technology-related field with 5+ years of security experience.
  • Proficient in both English and Mandarin.
  • Solid knowledge of various information security and auditing frameworks.
  • Professional Information Security certification such as CISSP/CISM/CISA/CRISC/ISO 27001/SOC1/SOC2.
  • Solid knowledge of various Cyber Security frameworks (e.g. PCI-DSS, ISO27001, SOC1, SOC2 etc).
  • Fundamental understanding of security practices in cloud environments.
  • Basic knowledge or understanding to code/script in at least one programming language like Python or Java.
  • Good understanding of penetration testing tools and procedures for Web or Mobile and knowledge on application security vulnerabilities (e.g. OWASP top 10, Sonarqube, etc).
  • Knowledge in cloud technologies (e.g. AWS, etc).
  • Knowledge in third party security risk management.