Head of Information Security (Technical)

Secretlab

Petaling Jaya

On-site

MYR 480,000 - 720,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Secretlab seeks a Head of Information Security to establish and mature the company-wide information security, data protection, and cyber risk program. You will provide strategic direction, translate cyber risks into business impact, and embed security-by-design across technology, product, and operations.

Reporting to the General Counsel, you will lead governance, risk, and security initiatives, mentoring security managers and ensuring regulatory compliance while enabling business growth.

Qualifications

  • Experience leading enterprise information security programs.
  • Ability to translate cyber risks into business and legal impact.

Responsibilities

  • Implement secure architecture and secure development practices across the organization.
  • Lead incident response and crisis management with technical root-cause analysis.
  • Oversee data protection, privacy-by-design, and regulatory alignment.
  • Mentor Information Security Managers across security domains.
  • Conduct vulnerability assessments and remediation roadmaps.
  • Manage third-party and supply-chain security risk.

Skills

Security leadership
Executive communication
Security governance

Tools

Kubernetes
Docker
CI/CD pipelines

Job description

Secretlab is an international gaming chair brand seating over three million users worldwide, with our key markets in the United States, Europe and Singapore, where we are headquartered.

The Head of Information Security (HoIS) is responsible for establishing, leading, and continuously maturing the enterprise-wide information security, data protection, and cyber risk management program. This role provides strategic direction and executive oversight to ensure the confidentiality, integrity, and availability of information assets while enabling business growth, regulatory compliance, and market trust.

Reporting to the General Counsel, the HoIS serves as a strategic advisor to senior leadership, translating cyber and data risks into business and legal impact, and ensuring security-by-design is embedded across technology, product development, and operations. The role balances governance and risk leadership with pragmatic execution through strong delegation to specialist security managers.

Responsibilities
  • Implement secure architecture, cloud security, and ensure secure development practices are embedded across the organization
  • Lead complex incident response, threat containment, and crisis management strategies—including technical root-cause analysis, advanced tabletop simulations, data breach mitigation, and regulatory forensics—requiring extensive hands‑on technical IR expertise and deep tactical experience
  • Oversee data protection and privacy‑by‑design practices in collaboration with Legal, Compliance, Data and business stakeholders
  • Direct and mentor Information Security Managers across application security, security operations, GRC, and privacy domains, leveraging advanced technical depth to drive engineering skill set enhancements and operational maturity
  • Conduct periodic vulnerability assessments and penetration testing across infrastructure, developing actionable remediation roadmaps and infrastructure hardening plans
  • Own third‑party and supply‑chain security risk management, ensuring vendors meet contractual, regulatory, and security requirements
  • Build and promote a strong security culture through awareness, training, and executive and technical engagement
  • Define and execute the enterprise information security and cyber risk strategy aligned with business objectives, legal obligations, and regulatory expectations
  • Establish and oversee security governance, policies, standards, and metrics aligned with recognized frameworks (ISO 27001, NIST, SOC 2, PCI‑DSS)
  • Provide executive‑level risk reporting and advisory to senior management on cyber threats, data protection risks, and control effectiveness
Requirements
  • Demonstrated experience architecting and maintaining robust Identity and Access Management (IAM) systems and privileged access management (PAM) workflows.
  • Demonstrate operational expertise in securing containerized environments (Kubernetes/Docker) and CI/CD pipelines to ensure DevSecOps maturity.
  • Lead advanced threat hunting activities, including log analysis, anomaly detection, and forensic investigation of complex security incidents.
  • Define and implement network security configurations, including Zero Trust architecture principles, micro‑segmentation, and secure VPN/SD‑WAN implementations.
  • Demonstrate a proven ability to thrive in a fast‑paced environment, comfortable tackling complex security challenges and driving strategic initiatives with a lean and agile team.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager (Technical Individual Contributor)
Information Security Manager (Technical Individual Contributor)

Secretlab • Petaling Jaya

On-site
MYR 180,000 - 240,000
Chief Information Security & Risk Leader
Chief Information Security & Risk Leader

Secretlab • Petaling Jaya

On-site
MYR 480,000 - 720,000
InfoSec Manager: Threat Defense & Risk Lead
InfoSec Manager: Threat Defense & Risk Lead

Secretlab • Petaling Jaya

On-site
MYR 180,000 - 240,000
Cyber Defense Lead
Cyber Defense Lead

Hong Leong Bank Berhad • Selangor

On-site
MYR 120,000 - 160,000
Information Security C Governance Manager
Information Security C Governance Manager

Senheng Electric (KL) Sdn Bhd • Kuala Lumpur

On-site
MYR 180,000 - 300,000
Senior Security Business Partner – Product Security
Senior Security Business Partner – Product Security

Hytech • Kuala Lumpur

On-site
MYR 180,000 - 260,000
Head of Information Security & Risk
Head of Information Security & Risk

ExecThread • Kuala Lumpur

On-site
MYR 300,000 - 600,000
Head of IT Security
Head of IT Security

Oxydata Software • Penang

On-site
MYR 360,000 - 480,000
IT Security Operation Lead_3266
IT Security Operation Lead_3266

Allianz Technology • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Cloud Security Manager
Cloud Security Manager

Starhub Ltd • Petaling Jaya

On-site
MYR 180,000 - 240,000