about the company A global company with a diverse portfolio, renowned for its strong international presence.
about the requirements
Contribute to the development, implementation, and maintenance of robust IT governance, risk, and compliance (GRC) policies, frameworks, and standard operating procedures in alignment with industry best practices and regulatory requirements.
Collaborate with internal stakeholders to support the GRC practice manager in promoting a unified approach to information security across the organisation.
Implement security controls, risk assessment frameworks, and programs that comply with regulatory requirements, ensuring documented and sustainable compliance that aligns with company’s objectives.
Conduct risk assessments and audits to identify vulnerabilities and IT security risks within company’s systems, networks, and data.
Provide support for internal and external IT security audits.
Develop and monitor the implementation of risk treatment plans to mitigate identified risks and guide mitigation strategies.
Experience with ISO 27001 framework & certifications are an advantage.
about the salary & benefits
salary up to RM13,000
medical insurance and fixed allowances
hybrid working model.
key responsibilities
Responsible for managing the cyber risk, ensuring resilience according to the Cyber Risk Management Policy.