Overview
Nexperia Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia
The Global Security Lead is a senior cybersecurity role responsible for overseeing global threat detection, incident response, and escalation management. This position serves as the primary point of contact for managing external Security Operations Center (SOC) and Identity Governance and Administration (IGA) vendors. This role reports to the Head of IT Cybersecurity & Operations, and focuses on Data Loss Prevention (DLP) and Cloud Security to strengthen Nexperia's cyber defense capabilities and ensure effective resolution of security incidents.
What You Will Do
- Oversee Global Security Operations: Direct the 24/7 monitoring, threat detection, and incident response activities across Nexperia's global IT infrastructure.
- Manage Vendor Relationships & Performance: Serve as the primary contact for security vendors; manage contracts, SLAs, and performance reviews.
- Lead Incident Escalation & Response: Manage end-to-end incident response, timely escalation, resolution, and post-incident analysis.
- Administer Identity & Access Governance: Oversee IAM, PAM operations and ensure governance policy compliance.
- Operate Data Loss Prevention (DLP) Program: Manage the DLP platform, policy configuration, alerts, and investigation of potential data exfiltration events.
- Manage Cloud Security Posture: Oversee security operations for cloud environments (SaaS, IaaS, PaaS) and implement controls to protect cloud assets and data.
- Drive Continuous Improvement: Analyze security incidents and metrics to identify trends and enhance security posture.
- Report on Security Posture: Develop and deliver regular KPIs, incident metrics, and effectiveness of security controls to leadership.
- Develop & Refine Processes: Create and update procedures, playbooks, and runbooks for consistent security threat response.
What You Will Need
- Bachelor’s degree in computer science, Information Security, or related field. Relevant certifications (e.g., CISSP, CISM, GCIH) are highly preferred.
- 8-10 years of progressive cybersecurity experience, with 3-5 years in a leadership role overseeing security operations (SOC), IGA, incident response, or similar.
- Hands-on experience with core security technologies (SIEM, EDR, DLP) and cloud security platforms.
- Proven track record managing external vendors/MSSPs against SLAs.
- Strong communication skills to explain complex security concepts to technical teams and senior management.
- Experience implementing security controls in major cloud platforms (AWS, Azure, GCP) and operating enterprise DLP tools.
- Knowledge of IAM, PAM, and identity governance technologies (e.g., SailPoint, CyberArk, Okta).
- Ability to translate operational data into strategic insights and contribute to cybersecurity roadmap.
- Excellent analytical skills for investigating security events and identifying root causes.
Additional Information
DI Statement: Nexperia is an equal-opportunity employer and values diversity. We are committed to inclusive recruitment processes and a safe work environment with reasonable adjustments where requested. We support employee resource groups and aim to increase women in management positions to 30% by 2030.