Executive, IT Risk - Security (GRC)

Zetrix AI

Selangor

Hybrid

MYR 51,000 - 61,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
Opportunities for promotion

Job summary

Jora Malaysia in Petaling Jaya is seeking a capable IT risk and security professional to manage and implement risk controls, policies, and standards. You will drive governance initiatives and ensure regulatory compliance across IT functions.

The role includes conducting IT risk assessments and audits, coordinating DR planning, researching security measures, and communicating findings to stakeholders to strengthen the organization’s security posture.

Qualifications

  • Candidate must possess at least a Bachelor's Degree, Post Graduate Diploma, Professional Degree or Degree in Information Security, Information Technology or Information Security/Technology risk management or higher.
  • Professional qualification in Information risk management is desirable.
  • Ability to translate data into meaningful information for decision making.
  • Good coordination and communication skills.
  • Good report writing skills.
  • IT literate and well versed in Microsoft Office(Word, Excel, Powerpoint).
  • Proficiency in English is a pre-requisite and proficiency in Bahasa Malaysia would an added advantage

Responsibilities

  • Manage and provide guidance / best practices on IT risk and security management.
  • Develop and maintain IT security policies, procedures and standards. Ensure that all policies, procedures and standards are compliant with regulatory requirements.
  • Assist with the IT Risk Assessment and Audit Plan development activities.
  • Manage and perform IT Audits including planning, scheduling, work paper review, management discussion, and report preparation.
  • Research & implement IT security measures. Conduct security research in keeping abreast of latest security issues.
  • Manage, coordinate and execute Disaster Recovery (DR) Planning and Testing. Oversee the regular testing of the plan and update for major changes in hardware, applications, business and regulatory requirements accordingly.
  • Manage the collection of information and execute the review of IT documentation to ensure that IT risk and security scenarios are identified and evaluated.
  • Review information systems policies, standards and procedures to verify that they address the organization's internal and external requirements.
  • Assess and recommend tools and techniques to automate information systems control verification processes.
  • Determine the approach to correct information systems control deficiencies and maturity gaps to ensure that deficiencies are appropriately considered and remediated. Maintain sufficient, adequate evidence to support conclusions on the existence and operating effectiveness of information systems controls.

Skills

IT risk management
Communication
Report writing
Analytical thinking
English proficiency

Education

Bachelor's Degree in Information Security/IT or related
Professional qualification in Information risk management desirable

Tools

Microsoft Office

Job description

Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.

  • Manage and provide guidance / best practices on IT risk and security management.
  • Develop and maintain IT security policies, procedures and standards. Ensure that all policies, procedures and standards are compliant with regulatory requirements.
  • Assist with the IT Risk Assessment and Audit Plan development activities.
  • Manage and perform IT Audits including planning, scheduling, work paper review, management discussion, and report preparation.
  • Research & implement IT security measures. Conduct security research in keeping abreast of latest security issues.
  • Manage, coordinate and execute Disaster Recovery (DR) Planning and Testing. Oversee the regular testing of the plan and update for major changes in hardware, applications, business and regulatory requirements accordingly.
  • Manage the collection of information and execute the review of IT documentation to ensure that IT risk and security scenarios are identified and evaluated.
  • Review information systems policies, standards and procedures to verify that they address the organization's internal and external requirements.
  • Assess and recommend tools and techniques to automate information systems control verification processes.
  • Determine the approach to correct information systems control deficiencies and maturity gaps to ensure that deficiencies are appropriately considered and remediated. Maintain sufficient, adequate evidence to support conclusions on the existence and operating effectiveness of information systems controls.
Job Requirements
  • Candidate must possess at least a Bachelor's Degree, Post Graduate Diploma, Professional Degree or Degree in Information Security, Information Technology or Information Security/Technology risk management or higher
  • Professional qualification in Information risk management is desirable
  • Ability to translate data into meaningful information for decision making
  • Good coordination and communication skills
  • Good report writing skills
  • Good analytical and problem solving skills
  • IT literate and well versed in Microsoft Office(Word, Excel, Powerpoint)
  • Proficiency in English is a pre-requisite and proficiency in Bahasa Malaysia would an added advantage

Job Types: Full-time, Permanent

Pay: Up to RM5,000.00 per month

  • Health insurance
  • Opportunities for promotion

Application Question(s):

  • What is your expected salary?
  • How long is your notice period?

Experience:

  • IT risk management: 1 year (Preferred)

Work Location: Hybrid remote in Petaling Jaya

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

Srpailabs.com • Kuala Lumpur

On-site
MYR 120,000 - 180,000
GRC Consultant - Information Security - MY Based
GRC Consultant - Information Security - MY Based

Condition Zebra • Shah Alam

On-site
MYR 120,000 - 160,000
Competitive salary
Comprehensive benefits
Growth opportunities
+2
Manager, IT & Cybersecurity Risk
Manager, IT & Cybersecurity Risk

Hong Leong Investment Bank • Petaling Jaya

On-site
MYR 120,000 - 180,000
Senior IT Risk & Compliance Specialist
Senior IT Risk & Compliance Specialist

MOL AccessPortal • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Senior Manager, Governance, Risk and Compliance
Senior Manager, Governance, Risk and Compliance

Daythree Business Services • Shah Alam

On-site
MYR 180,000 - 260,000
IT Risk & Compliance Manager (Technology Risk)
IT Risk & Compliance Manager (Technology Risk)

Powtech Solution • Kuala Lumpur

On-site
MYR 90,000 - 150,000
EPF
SOCSO
EIS
+1
IT GRC Manager
IT GRC Manager

Michael Page • Kuala Lumpur

On-site
MYR 135,000 - 165,000
Competitive salary
Good work culture
IT Governance, Risk & Compliance Manager
IT Governance, Risk & Compliance Manager

CapBay • Kuala Lumpur

Hybrid
MYR 90,000 - 150,000
IT Project Manager (GRC / Technology Risk)
IT Project Manager (GRC / Technology Risk)

Tentacle Technologies • Kuala Lumpur

On-site
MYR 180,000 - 280,000
High visibility project
Mentorship and guidance
Training & development
+1
Manager – ICT Governance - Compliance
Manager – ICT Governance - Compliance

Scicom (MSC) Berhad • Kuala Lumpur

On-site
MYR 67,000 - 78,000
Salary up to RM7000
Performance related allowance forStaff