Information Security Compliance Analyst

InfoSec

Kuala Lumpur

On-site

MYR 100,000 - 167,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Monks is seeking an Information Security Compliance Analyst to guard data and ensure adherence to regulations. You will steer risks and drive security controls across the APAC region, aligning with ISO27001:2022 and global roadmaps.

Working within the Global Infosec Team, you will collaborate with stakeholders worldwide, manage third party risk assessments, and support audits and awareness initiatives while continuously evolving the security posture for Monks.

Qualifications

  • Bachelor’s degree in Computer Science, Computer or Systems Engineering or equivalent.
  • Minimum of 5 years of experience in InfoSec related positions.
  • Solid knowledge of security on networking, cloud, infrastructure configuration, end-point protection and SDLC.
  • Knowledge of ISO 27001/2, SOC2, NIST-800 standards.
  • Professional working proficiency in written and spoken English.
  • Ability to present findings to those with either a technical or non-technical background.
  • Self-directed, resourceful, and a critical thinker with attention-to-detail and proactive problem-solving skills.
  • Ability to self-organize and plan activities with commitment towards results.

Responsibilities

  • Lead the alignment to the global ISMS (based on ISO27001:2022) over the APAC region.
  • Integrate the compliance efforts in the region with the global roadmap.
  • Perform routine activities to evaluate compliance with security frameworks and legislation.
  • Report the compliance status of processes and technology in the region.
  • Identify risk related to information security in the technical environment, the relationships with third parties or any component of the company’s operations.
  • Define security measures to lower the risks identified.
  • Understand about technical and administrative controls in the different areas: networking, operations, access management, SSDLC, cloud security, end-point protection, physical security, third party risk assessment, organization security and legal compliance.
  • Coordinate the information security assessments with 3rd parties (clients, suppliers).
  • Contribute in the development of awareness material and the process of delivery and measurement.
  • Coordinate and reply to internal and external audits related to information security.
  • Investigate on technologies that could improve the security baseline and the compliance (e.g. DLP, end-point protection, network security, security and vulnerabilities assessment).
  • Empower, assist, and mentor fellow members of the team to foster their professional growth and ensure collective success.

Skills

Networking security
Cloud security
End-point protection
SDLC
Risk assessment
Audits & compliance
Stakeholder communication
Problem-solving
Time management
English proficiency

Education

Bachelor’s degree in Computer Science or related field

Job description

As an Information Security Compliance Analyst, your core responsibility will be to ensure the organization’s strict adherence to all pertinent regulations and standards. Your critical role will involve safeguarding customer and company data, protecting the company’s reputation,and making vital decisions that are integral to shaping the state-of-the-art security posture for the business’s future success.

This person should understand the risk assessment process to detect new threats, contribute in the action plan development and promote the progress of control implementation and evolution. The position will cover compliance activities, third parties risk assessments, management of clients requirements, internal awareness and technical controls evaluation.

As a valuable member of our Global Infosec Team, you will have the opportunity to collaborate with colleagues across the globe, fostering a dynamic and diverse work environment. Your role will involve working closely with stakeholders from various departments, forging strong partnerships to ensure the collective success of our information security initiatives.

Responsibilities:
  • Lead the alignment to the global ISMS (based on ISO27001:2022) over the APAC region.
  • Integrate the compliance efforts in the region with the global roadmap.
  • Perform routine activities to evaluate compliance with security frameworks and legislation.
  • Report the compliance status of processes and technology in the region.
  • Identify risk related to information security in the technical environment, the relationships with third parties or any component of the company’s operations.
  • Define security measures to lower the risks identified.
  • Understand about technical and administrative controls in the different areas: networking, operations, access management, SSDLC, cloud security, end-point protection, physical security, third party risk assessment, organization security and legal compliance.
  • Coordinate the information security assessments with 3rd parties (clients, suppliers).
  • Contribute in the development of awareness material and the process of delivery and measurement.
  • Coordinate and reply to internal and external audits related to information security.
  • Investigate on technologies that could improve the security baseline and the compliance (e.g. DLP, end-point protection, network security, security and vulnerabilities assessment).
  • Empower, assist, and mentor fellow members of the team to foster their professional growth and ensure collective success.
About You
The essentials:
  • Bachelor’s degree in Computer Science, Computer or Systems Engineering or equivalent.
  • Minimum of 5 years of experience in InfoSec related positions.
  • Solid knowledge of security on networking, cloud, infrastructure configuration, end-point protection and SDLC.
  • Knowledge of the standards ISO 27001/2, SOC2, NIST-800.
  • Professional working proficiency in written and spoken English
  • Ability to confidently present findings to those with either a technical or non-technical background.
  • Self-directed, resourceful, and a critical thinker with attention-to-detail and proactive problem-solving skills.
  • Ability to self-organize and plan activities with commitment towards results.
  • Ready to learn new contents both from others or self-learned.
  • Looking forward to self-improvement and suggesting improvements to processes or activities.
Not a must, but a plus:
  • +4 year of dedicated experience in any of the following areas:
  • Security Risk Management
  • Security Consultant
  • Security/IT ISO implementer
  • Information Security Certification (e.g. CISSP, CCSP, CISM, AWS Security Specialist, etc)
About Monks

Monks is the global, digital-first, data-driven, unitary operating brand of S4 Capital plc. With a legacy of innovation and specialized expertise, Monks combines an extraordinary range of global Marketing and Technology Services to redefine how brands interact with the world. Through Monks.Flow, its flagship AI ecosystem for marketing orchestration, Monks transforms marketing into a growth engine, collapsing timelines and connecting brands to culture in real time. By deploying bespoke intelligent agents across disciplines and delivering culturally relevant, high-impact creative and digital solutions, Monks solves key critical business challenges across the entire brand enterprise to help brands sustain long-term impact.

Monks was named a Contender in The Forrester Wave™: Global Marketing Services, ranks among Cannes Lions' Top 10 Creative Companies (2022-25) and remains the only partner featured in AdExchanger’s Programmatic Power Players list every year (2020-24). Named Adweek’s first AI Agency of the Year (2023) and The One Show’s inaugural AI Pioneer Organization, Monks was also awarded Business Intelligence Group’s 2025 Excellence in Artificial Intelligence Award in both the Organizational and AI Product categories. As a trusted partner to cutting-edge innovators in tech, Monks earned titles such as Optimizely Experimentation Partner of the Year (2025), runner-up for the Adobe Firefly Partner Award (2024), and Workato’s AI Visionary Customer Impact Award (2024). Additionally, Monks achieved a record-breaking number of FWAs and continues to hold the most of any partner.

We are an equal-opportunity employer committed to building a respectful and empowering work environment for all people to freely express themselves amongst colleagues who embrace diversity in all respects. Including fresh voices and unique points of view in all aspects of our business not only creates an environment where we can all grow and thrive but also increases our potential to produce work that better represents—and resonates with—the world around us.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Global ISMS Compliance Lead – APAC
Global ISMS Compliance Lead – APAC

InfoSec • Kuala Lumpur

On-site
MYR 100,000 - 167,000
IT systems administrator (SysOps)
IT systems administrator (SysOps)

Monks • Kuala Lumpur

Hybrid
MYR 80,000 - 140,000
Accountant
Accountant

SELECT FROM DROPDOWN (MS) • Kuala Lumpur

On-site
MYR 70,000 - 110,000
Information Security Analyst
Information Security Analyst

Media.Monks • Kuala Lumpur

On-site
MYR 90,000 - 150,000
Finance Systems Analyst
Finance Systems Analyst

Monks • Kuala Lumpur

On-site
MYR 100,000 - 150,000
Finance Systems Analyst
Finance Systems Analyst

CORPORATE - Finance (ISO Global) • Kuala Lumpur

On-site
MYR 60,000 - 90,000
InfoSec Analyst: Safeguard Data & Elevate Security
InfoSec Analyst: Safeguard Data & Elevate Security

Media.Monks • Kuala Lumpur

On-site
MYR 90,000 - 150,000
Senior Designer
Senior Designer

Monks • Kuala Lumpur

On-site
MYR 90,000 - 130,000
Senior Designer
Senior Designer

Content (MS Only) • Kuala Lumpur

On-site
MYR 90,000 - 150,000
Compliance & MIS Manager
Compliance & MIS Manager

CLOUD MILE SDN. BHD. • Kuala Lumpur

On-site
MYR 60,000 - 100,000