Enable job alerts via email!

Information Security Advisor

AUMOVIO

Seberang Perai

On-site

MYR 60,000 - 80,000

Full time

Today
Be an early applicant

Job summary

A leading mobility company in Penang is seeking a Local Information Security Advisor. You'll establish and implement InfoSec policies, drive compliance with ISO 27001 standards, and support training initiatives. Ideal candidates have a degree in computer science or information systems, along with at least 2 years' experience in the field. Join us to elevate your career in a crucial role for ensuring information security.

Qualifications

  • Minimum 2 years' experience in InfoSec-related field.
  • Ability to balance risks and costs of protective measures.
  • Experience in IT and Cyber/Info Security in manufacturing is an advantage.

Responsibilities

  • Drive and monitor implementation of ISMS according to policies.
  • Conduct regular trainings and provide advice to employees.
  • Advise on identity and authorization management.

Skills

Degree in computer science, information system, or Cyber Security
General knowledge about InfoSec standards
Ability to motivate others
Basic knowledge of InfoSec regulations
Interest in new technologies

Education

Relevant degree
Job description
Overview

Job Description

The Local Information Security Advisor (ISA) has the task to establish and drive Information Security (InfoSec) according to all relevant policies and guidelines on behalf of the InfoSec Officer (ISO) and the Regional InfoSec Manager (ISM).

By that the ISA has an essential role in the Information Security Management System (ISMS).

The Location Management commits itself to the InfoSec guidelines and targets and actively supports the InfoSec organization by appointing a ISA.

The ISA
  • Works in close cooperation with all relevant local departments as well as with the Regional Security Manager (ISM).
  • Participates regularly in local management meetings.
  • Participates annually in a regional InfoSec Workshop organized by the ISM.
  • Supports all related local projects in order to ensure InfoSec conformity.
  • In the event of substantial deficiencies or severe incidents endangering the security of company information, the ISA must inform and escalate accordingly to relevant policies.
Responsibilities On Local Level

Support responsible management in the appointed location(s):

  • Drive and monitor the implementation and usage of the existing ISMS (Information Security Management System) according to policies and guidelines as well as to business and customer requirements (e.g. ISO 27001, 8th European Directive, BSI).
  • Conduct and ensure regular trainings, provision of information and advice of all employees, managers and third parties.
  • Drive the appropriate classification of company proprietary information and adequate handling.
  • Conduct or support risk management activities (i.e. risk assessments, business impact analysis).
  • Monitor the development and maintenance of local emergency- and contingency plans.
  • Advise in all local aspects of identity- and authorization management.
  • Drive secure collaboration and integration of business partners.
  • Drive, track, and report detection and remediation of vulnerabilities.
  • Monitor the effectiveness of InfoSec projects and implemented measures.
  • Drive usage of InfoSec processes and tools including documentation.
  • Monitor execution of InfoSec reviews and conduct local inspections regularly.
  • Execute actions and projects agreed on with the location management and ISM.
  • Keep location informed about InfoSec regulations, warnings and news on current/new incidents.
Qualifications
  • Degree in computer science or information system or Cyber Security or other relevant degree with minimum 2 years' experience in related field.
  • General knowledge about InfoSec related standards, processes and tools.
  • Good knowledge of internal organization and local business and processes.
  • Good knowledge of the local infrastructure- and application landscape.
  • Basic knowledge of InfoSec rules and related laws.
  • Ability to motivate others and raise awareness for InfoSec related risks and threats.
  • Ability to balance potential risks and costs of protective measures.
  • Training user on new or improved business processes.
  • Experience in IT and Cyber/Info Security in manufacturing environment will be added advantage.
  • Interest in new technologies and willingness to learn.
Additional Information

Ready to take your career to the next level? The future of mobility isn’t just anyone’s job. Make it yours! Join AUMOVIO. Own What’s Next.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.