Enable job alerts via email!

Head Of Security

DayOne

Johor Bahru

On-site

MYR 120,000 - 160,000

Full time

Yesterday
Be an early applicant

Job summary

A global data infrastructure leader in Johor Bahru is seeking a Security Manager to develop a holistic security strategy and lead a team of professionals. The ideal candidate will have over 10 years of security management experience and a strong understanding of physical security systems and cybersecurity frameworks. Join us to shape the future of global data infrastructure with a key role in security strategy and compliance.

Qualifications

  • Minimum of 10 years in security management, with at least 5 in leadership.
  • Deep knowledge of physical security systems and cybersecurity frameworks.
  • Strong ability to assess macro-level risks and implement countermeasures.

Responsibilities

  • Develop and execute a holistic security strategy.
  • Lead and mentor a team of security professionals.
  • Oversee the design and implementation of physical security systems.

Skills

Leadership Skills
Analytical Skills
Communication
Technical Expertise in Physical Security
Proficiency in Cybersecurity

Education

Certifications such as CISSP, CISM, CPP

Tools

CCTV
Biometrics
Alarm systems
Job description

Join DayOne – Shaping the Future of Data Infrastructure

DayOne is a global leader in the development and operation of high-performance data centers. As one of the fastest-growing companies in the industry, we’ve built a robust presence across Asia and Europe — and we’re just getting started.

As we expand into new international markets, we’re looking for talented, driven individuals to join us on this exciting journey. This is more than a job — it’s an opportunity to be a key contributor to our dynamic team and help shape the future of global data infrastructure.

If you're passionate about innovation, technology, and growth, we invite you to be part of DayOne’s next chapter.

Responsibilities
Security Strategy and Leadership
  • Develop and execute a holistic security strategy aligned with the company’s objectives, covering physical security, cybersecurity, and operational resilience.
  • Lead and mentor a team of security professionals, fostering a culture of vigilance, accountability, and continuous improvement.
  • Serve as the primary point of contact for all security-related matters, liaising with senior management, clients, and external stakeholders.
Physical Security
  • Oversee the design, implementation, and maintenance of physical security systems, including access control, surveillance (CCTV), intrusion detection, and perimeter protection.
  • Ensure robust security protocols for personnel, vendors, and visitors, including background checks, badge systems, and on-site monitoring.
  • Coordinate with local law enforcement and emergency responders to address potential threats or incidents.
Cybersecurity
  • Collaborate with IT and network teams to safeguard critical systems, ensuring protection against cyber threats, data breaches, and unauthorized access.
  • Implement and enforce policies for network security, encryption, endpoint protection, and incident response.
  • Conduct regular vulnerability assessments and penetration testing to identify and mitigate risks.
Compliance And Risk Management
  • Ensure compliance with industry standards (e.g., ISO 27001, SOC 2, PCI DSS) and regional regulations relevant to data centre operations.
  • Develop and maintain disaster recovery and business continuity plans to minimize downtime during security incidents or natural disasters.
  • Conduct regular audits and risk assessments to proactively address vulnerabilities.
  • Integrate TVRA findings into ongoing risk posture assessments and strategic reviews of site vulnerabilities.
Incident Response And Crisis Management
  • Establish and lead an incident response team to handle security breaches, emergencies, or other critical events.
  • Investigate security incidents, document root causes, and implement corrective actions to prevent recurrence.
  • Provide post-incident reports and recommendations to senior management.
Vendor And Stakeholder Collaboration
  • Assist in managing relationships with third-party security vendors, ensuring service level agreements (SLAs) are met.
  • Work closely with cross-functional teams (Operations, IT, Legal, HR) to align security initiatives with business goals.
  • Educate employees and contractors on security best practices through training and awareness programs.
Strategic Risk Intelligence And Site Selection
  • Contribute to the early-phase evaluation of new data centre locations by conducting Threat, Vulnerability, and Risk Assessments (TVRA) in line with global standards.
  • Assess and report on geopolitical risks, crime levels, terrorism threats, civil unrest, and proximity to critical infrastructure or hazards (e.g., airports, fault lines, flood zones).
  • Partner with Real Estate, Legal, and Government Affairs teams to advise on local law enforcement capability, regulatory landscapes, and jurisdictional risk implications.
  • Maintain a network of security and intelligence partners to provide ongoing regional threat updates and horizon scanning to support global expansion strategies.
Candidate Requirements
  • Experience: Minimum of 10 years in security management, with at least 5 years in a leadership role within a hyperscale data centre or critical infrastructure environment.
  • Experience with multinational security operations or transitioning a regional programme into a global model is highly desirable.
  • Experience in supporting site due diligence, land acquisition, or development phases from a security perspective is highly advantageous.
  • Technical Expertise:
    • Deep knowledge of physical security systems (e.g., biometrics, CCTV, alarm systems).
    • Proficiency in cybersecurity frameworks, threat intelligence, and IT infrastructure protection.
    • Familiarity with compliance standards (e.g., ISO 27001, PCI DSS, GDPR).
  • Leadership Skills: Proven ability to lead teams, manage budgets, and drive security initiatives across large organizations.
  • Analytical Skills: Strong problem-solving abilities to assess risks and implement effective countermeasures. A demonstrated ability to assess macro-level risks, such as geopolitical shifts and regional instability, and translate these into tactical security measures.
  • Communication: Excellent verbal and written communication skills for reporting to executives and collaborating with stakeholders.
  • Certifications: Preferred certifications include CISSP, CISM, CPP, or equivalent.
Desired Attributes
  • Experience working across multiple jurisdictions, with deep knowledge of Asia-Pacific security regulations and an appreciation for regional nuances in Europe, the Middle East, and North America.
  • Familiarity with global TVRA methodologies (e.g., ISO 31000, ASIS TVRA frameworks).
  • Understanding of international relations, regional politics, or conflict zones impacting the Asia-Pacific data centre landscape.
  • Background in military, law enforcement, or intelligence agencies is a plus.
  • Track record of innovating security processes and leveraging emerging technologies (e.g., AI for threat detection).

DayOne is proud to be an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

If you're ready to grow with one of the fastest-moving companies in the data center industry, apply now and be part of our global journey.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.