Cybersecurity GRC Analyst

Niaga Prestasi

Kuala Lumpur

On-site

MYR 100,000 - 160,000

Part time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Niaga Prestasi Malaysia is seeking an experienced Cybersecurity Governance, Risk & Compliance (GRC) Analyst to strengthen the organization's cybersecurity governance framework, manage cyber risks, and ensure compliance with ISO 27001, NIST CSF, SOC 2 and other security standards.

The successful candidate will play a key role in cybersecurity governance, risk management, audit readiness, third-party risk assessments, and continuous improvement of the organization's security posture across cloud,

Qualifications

  • Bachelor's degree in Cybersecurity, IT, CS or related field.
  • 6–10 years of experience in GRC.
  • Experience supporting audits and regulatory compliance.
  • Strong analytical, documentation, and communication skills.
  • Ability to manage multiple initiatives independently.

Responsibilities

  • Develop, review, and maintain cybersecurity policies, standards, procedures, and security baselines.
  • Conduct enterprise and project-level cybersecurity risk assessments.
  • Manage and maintain the organization's cyber risk register, including risk identification, assessment, treatment, and tracking.
  • Support compliance initiatives aligned with ISO 27001, NIST CSF, SOC 2, and other applicable security frameworks.
  • Coordinate internal and external security audits, including evidence collection, remediation tracking, and gap assessments.
  • Perform third-party and vendor cybersecurity risk assessments.
  • Define, monitor, and report cybersecurity KPIs and KRIs.
  • Support governance reporting and communicate cybersecurity risks to stakeholders and management.
  • Collaborate with Infrastructure, Cloud, Security Operations, and business teams to promote security-by-design.
  • Monitor changes in regulatory requirements and cybersecurity threats and assess their impact on governance and compliance.
  • Maintain comprehensive documentation, policies, and compliance evidence repositories.

Skills

Cybersecurity Governance
Risk Management
Compliance
Audit Support
Documentation
Stakeholder Management

Education

Bachelor's Degree in Cybersecurity or related

Job description

Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.

Employment Type: Contract (12 Months, Renewable)

Eligibility: This opportunity is currently open to Malaysian Citizens.

About the Role

We are seeking an experienced Cybersecurity Governance, Risk & Compliance (GRC) Analyst to strengthen the organization's cybersecurity governance framework, manage cyber risks, and ensure compliance with regulatory, contractual, and industry security standards.

The successful candidate will play a key role in cybersecurity governance, risk management, audit readiness, third-party risk assessments, and continuous improvement of the organization's security posture across cloud, on-premises, and enterprise environments.

Key Responsibilities
  • Develop, review, and maintain cybersecurity policies, standards, procedures, and security baselines.
  • Conduct enterprise and project-level cybersecurity risk assessments.
  • Manage and maintain the organization's cyber risk register, including risk identification, assessment, treatment, and tracking.
  • Support compliance initiatives aligned with ISO 27001, NIST CSF, SOC 2, and other applicable security frameworks.
  • Coordinate internal and external security audits, including evidence collection, remediation tracking, and gap assessments.
  • Perform third-party and vendor cybersecurity risk assessments.
  • Define, monitor, and report cybersecurity KPIs and KRIs.
  • Support governance reporting and communicate cybersecurity risks to stakeholders and management.
  • Collaborate with Infrastructure, Cloud, Security Operations, and business teams to promote security-by-design.
  • Monitor changes in regulatory requirements and cybersecurity threats and assess their impact on governance and compliance.
  • Maintain comprehensive documentation, policies, and compliance evidence repositories.
Requirements
  • Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, Information Security, or a related discipline.
  • 6–10 years of experience in Cybersecurity Governance, Risk & Compliance (GRC).
  • Strong knowledge of cybersecurity governance, risk management, and compliance practices.
  • Hands-on experience supporting enterprise cybersecurity audits and regulatory compliance.
  • Excellent analytical, documentation, communication, and stakeholder management skills.
  • Ability to work independently while managing multiple compliance and governance initiatives.
Technical Skills
  • Cybersecurity Governance
  • ISO 27001 / ISO 27002
  • NIST Cybersecurity Framework (CSF)
  • CIS Controls
  • SOC 2
  • Internal & External Audit Support
  • Control Assessment & Gap Analysis
  • Third-Party & Vendor Risk Management
  • Cloud Security Governance (Azure & AWS)
  • Security Policies & Standards
  • KPI / KRI Reporting
  • GRC Platforms & Documentation Management
Preferred Certifications
  • CISSP
  • CISM
  • CRISC
  • CGEIT
Why Join Us?
  • Opportunity to contribute to enterprise cybersecurity governance initiatives.
  • Work with industry-recognized cybersecurity frameworks and standards.
  • Collaborative environment focused on security, compliance, and continuous improvement.
  • Competitive remuneration with potential for contract renewal.

We thank all applicants for their interest. Only shortlisted candidates will be contacted.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

Srpailabs.com • Kuala Lumpur

On-site
MYR 120,000 - 180,000
GRC Consultant - Information Security - MY Based
GRC Consultant - Information Security - MY Based

Condition Zebra • Shah Alam

On-site
MYR 120,000 - 160,000
Competitive salary
Comprehensive benefits
Growth opportunities
+2
Senior Manager, Governance, Risk and Compliance
Senior Manager, Governance, Risk and Compliance

Daythree Business Services • Shah Alam

On-site
MYR 180,000 - 260,000
Senior Cybersecurity GRC Analyst
Senior Cybersecurity GRC Analyst

Srpailabs.com • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Cybersecurity Engineer
Cybersecurity Engineer

Mission Consultancy Services Malaysia • Kuala Lumpur

On-site
MYR 89,000 - 167,000
Salary 8k-15k MYR
Certifications support
Career development
Information Security Analyst
Information Security Analyst

Ricoh • Shah Alam

Hybrid
MYR 60,000 - 120,000
Work from home
Vision insurance
Cybersecurity Analyst
Cybersecurity Analyst

techstreet • Selangor

On-site
MYR 60,000 - 110,000
Cyber Security Analyst (Contract)
Cyber Security Analyst (Contract)

Experian • Kuala Selangor

On-site
MYR 100,000 - 160,000
Information Security Governance Officer Lead
Information Security Governance Officer Lead

Ricoh • Shah Alam

Hybrid
MYR 120,000 - 180,000
Cell phone reimbursement
Company car
Health insurance
+3
Senior IT Risk & Compliance Specialist
Senior IT Risk & Compliance Specialist

MOL AccessPortal • Kuala Lumpur

On-site
MYR 120,000 - 180,000