Information Security Manager

FIRMUS

Kuala Lumpur

On-site

MYR 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

FIRMUS is seeking an experienced information security consultant to lead security engagements for clients across industries. You will provide expert guidance on ISMS, regulatory compliance, security design, and risk management, while developing client relationships and delivering high-quality solutions.

The role requires at least 8 years of information security experience, strong leadership, and familiarity with ISO/IEC 27001, ITIL, and regulatory frameworks.

Qualifications

  • Degree in any discipline and/or MBA; IT degree preferred.
  • Minimum 8 years in Information Security or IT security with relevant experience.
  • Experience leading a team and managing projects.
  • Familiarity with security standards and regulatory frameworks (ISO/IEC 27001, ITIL, etc.).
  • Proven track record delivering ISMS/BCP/IT DR/DLP/GRC/IAM projects.
  • Experience in industries such as financial services, telecom or government is a plus.
  • One of the listed security certifications (e.g., CISSP, CISM, CISA, CCSK, etc.) is preferred.

Responsibilities

  • Lead and implement information/security engagements for clients.
  • Provide expert advice on information security across technical and process aspects.
  • Identify, assess, mitigate and manage information security risks for clients.
  • Translate business requirements into deliverables and communicate with stakeholders.
  • Conduct training on information security solutions when required.
  • Develop proposals, present to clients, and support business development.
  • Lead and coach teams to deliver quality, timely results.

Skills

Information Security
Team Leadership
Client Engagement
Regulatory Compliance
ISMS/ISO 27001
GRC
Security Strategy

Education

Bachelor's degree
MBA
IT Degree

Job description

We are looking for bright and talented individuals with strong Information Security and IT backgrounds and a desire to provide security consulting services for clients in various industries. You will provide consulting services focused on information and cyber security. Team members are provided the opportunity to interact with senior management as well as the opportunity to enhance their skills in the areas of security knowledge, technical competency, business development, client service and people development.

Key Accountabilities:
  • Lead and implement information / IT security engagements for clients.
  • Provide expert advice, guidance and support on information security. This could be on technical or process aspects (such as Information Security Management Systems (ISMS) or ISO 27001, Business Continuity Management / IT Disaster Recovery Management or ISO 22301/ ISO 27301, Data Loss Prevention (DLP), Identity and Access Management (IAM), cloud security, cyber security design, tools and solutions, security strategy and security project management).
  • Provide experience and advice in the identification, assessment, mitigation and management of information security risks and issues across the information security spectrum.
  • Identify, translate and capture business requirements and best practices for Information Security into technically feasible and user friendly deliverables and communicate to clients and their information security staff or regulators to achieve strategic alignment from internal and external stakeholders.
  • Conduct training on information security solutions when required.
  • Gain understanding of key customer and market issues, build opportunities, create proposals and make presentations to clients as required.
  • Lead and manage teams, prioritize responsibilities and tasks in order to deliver quality and timely results and coach & motivate employees.
Qualifications and Requirements:
  • Degree in any discipline and/or MBA from a recognised institution; IT Degree preferred.
  • Minimum 8 years of working experiences in Information Security or IT security and IT systems and / or industry knowledge. Working experience in big 4 companies or multinationals is preferred.
  • Experience in leading a team and in project management.
  • Familiarity and experience with security standards and regulatory frameworks (e.g. ISO/IEC 27001, ITIL, BNM RMiT, MAS TRM Guidelines, PCI-DSS, etc.)
  • Proven track record of delivering security projects on ISMS / BCP / IT DR / DLP / GRC / IAM.
  • Proven experience in a particular industry such as financial services, telecom, government etc.
  • Must have at least one of the following security certifications CISSP, CCSP, SSCP, GSLC, GISP, CISM, CRISC, CGEIT, CCSK, CISA, ISO 27001 Lead Auditor, etc.
  • Good overall understanding of the information security roles and activities.
  • Strong understanding of information security & regulatory standards/ frameworks; e.g. ISO/IEC27001, COBIT, ITIL, PCI-DSS, NIST Cyber Security Framework, BNM RMiT, MAS TRM Guidelines, etc.
  • Good technical knowledge in Governance, Risk and Compliance (GRC).
  • Good technical knowledge in at least 2-3 of the following areas:
  • Data Security, Privacy, Classification and Data Loss Protection.
  • IT Disaster Recovery Planning and Business Continuity Management.
  • Network security architecture, management and controls including firewall, routers, IPS etc.
  • Threat Intelligence & Advanced Persistent Threats (APT).
  • Security Strategy and Roadmaps.
  • Security Policy, Standard and Framework.
  • Information Security Management Systems.
  • Log Management and SIEM.
  • Identity and access management solutions and implementation.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Manager
Information Security Manager

EPOS • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Security Engineer
Security Engineer

Mission Consultancy Services • Kuala Lumpur

On-site
MYR 80,000 - 120,000
Security Consultant
Security Consultant

nttlimited • Petaling Jaya

On-site
MYR 120,000 - 180,000
Junior Security Solutions Consultant
Junior Security Solutions Consultant

UniQ Consulting & Services Sdn Bhd • Petaling Jaya

On-site
MYR 60,000 - 120,000
Cyber Defense Lead
Cyber Defense Lead

Hong Leong Bank Berhad • Selangor

On-site
MYR 120,000 - 160,000
Senior Security Advisor & Technical Project Manager
Senior Security Advisor & Technical Project Manager

Hong Leong Bank Berhad • Petaling Jaya

On-site
MYR 180,000 - 300,000
Consultant – Cybersecurity Integration
Consultant – Cybersecurity Integration

Accenture • Kuala Lumpur

On-site
MYR 60,000 - 90,000
Senior Executive, Cybersecurity & IT Governance
Senior Executive, Cybersecurity & IT Governance

Asia Recruit (Permanent, Contract, & Executive Recruitment) • Shah Alam

On-site
MYR 80,000 - 120,000
Information Technology Security Analyst
Information Technology Security Analyst

Lotus's Malaysia • Kuala Lumpur

On-site
MYR 90,000 - 150,000
Information Security Analyst
Information Security Analyst

Media.Monks • Kuala Lumpur

On-site
MYR 90,000 - 150,000