Information Security Officer_2758

Joinimagine

Kuala Lumpur

On-site

MYR 120,000 - 180,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Allianz Technology Malaysia seeks an Information Security Officer to lead the local information security program and align with regional and global teams. You will oversee ISMS activities, risk assessment, remediation, and compliance with group standards and regulatory requirements.

The role requires 5+ years in information security, strong knowledge of ISO27001/ COBIT2019, and experience with outsourcing and supplier management.

Qualifications

  • 5+ years of information security experience and/or risk management.
  • Strong knowledge of ISO270xx, COBIT2019 and related standards.
  • Experience with supplier management and IT outsourcing.
  • Proven track record in people and project management.
  • Desirable certifications: CISM/CISSP; ISO27001 Lead Implementer/Auditor.

Responsibilities

  • Oversee the Information Security function in Malaysia and liaise with regional and central Information Security Teams.
  • Oversee the implementation of and compliance with Group-wide standards, regulatory requirements and industry security standards in all Allianz Technology services and in projects.
  • Lead local Information Security Steering Boards and support preparation of Information Security action plans.
  • Support regional and local executive body in their regulatory Information Security-related governance requirements and their responsibility to set up sound organizational and operational structures and procedures.
  • Support the implementation of Group-wide IS framework, regulatory requirements and industry security standards in all Allianz Technology services and in projects; oversee the compliance reporting process for local entities; assess and address deviations from security policies and contractual security provisions, as well as developing effective strategies to mitigate identified information security risks.
  • Serve as central contact person for information security-related matters in Malaysia, including interfaces to business, partners, customers and other safeguarding functions.
  • Provide information security consulting and liaison with all relevant stakeholders.
  • Ensure the effective implementation of Information Security principles and procedures during the full-service life cycle of services offered by Allianz Technology, including those provided by external parties and outsourcing partners.
  • Systematically assess the effectiveness of security controls in all services provided by Allianz Technology, its partners and third-party providers.
  • Security Risk Management, including supporting the life cycle of security risk assessments, assessing and addressing deviations from security policies and contractual security provisions, as well as developing effective strategies to mitigate identified information security risks.
  • Regularly exchange with and contribute to the regional and global Allianz Technology ISO community.
  • Promote knowledge and awareness of Allianz Technology security requirements and processes.
  • Contribute to defining contractual security provisions in the context of third-party management.
  • Support the annual compliance reporting process for the local entity.
  • Support local management in their regulatory Information Security-related governance requirements.

Skills

InfoSec experience
Risk management
IT security knowledge
Supplier management
People management
Project management

Education

University degree

Job description

Job Purpose/Role

The Information Security Officer (ISO) Malaysia is a key role within the Allianz Technology’s global IS organization. The ISO is accountable for the information security of the environment supporting the Allianz businesses in Malaysia, including oversight of related ISMS activities, risk identification, assessment, prevention, and remediation. The ISO (Malaysia) provides advice to regional management as well as to the local Allianz Technology Malaysia Functions with respect to Information Security risk areas, included services provided by third parties. In his/her function, the ISO will be instrumental in building up and integrating IS assurance capabilities and have a direct functional reporting line to the Allianz Technology Malaysia Heat of IT as well as the APAC Regional ISO.

Key Responsibilities
  • Oversee the Information Security function in Malaysia and liaise with regional and central Information Security Teams.
  • Oversee the implementation of and compliance with Group-wide standards, regulatory requirements and industry security standards in all Allianz Technology services and in projects.
  • Lead local Information Security Steering Boards and support preparation of Information Security action plans.
  • Support regional and local executive body in their regulatory Information Security-related governance requirements and their responsibility to set up sound organizational and operational structures and procedures.
  • Support the implementation of Group-wide IS framework, regulatory requirements and industry security standards in all Allianz Technology services and in projects; oversee the compliance reporting process for local entities; assess and address deviations from security policies and contractual security provisions, as well as developing effective strategies to mitigate identified information security risks.
  • Serve as central contact person for information security-related matters in Malaysia, including interfaces to business, partners, customers and other safeguarding functions.
  • Provide information security consulting and liaison with all relevant stakeholders.
  • Ensure the effective implementation of Information Security principles and procedures during the full-service life cycle of services offered by Allianz Technology, including those provided by external parties and outsourcing partners.
  • Systematically assess the effectiveness of security controls in all services provided by Allianz Technology, its partners and third-party providers.
  • Security Risk Management, including supporting the life cycle of security risk assessments, assessing and addressing deviations from security policies and contractual security provisions, as well as developing effective strategies to mitigate identified information security risks.
  • Regularly exchange with and contribute to the regional and global Allianz Technology ISO community.
  • Promote knowledge and awareness of Allianz Technology security requirements and processes.
  • Contribute to defining contractual security provisions in the context of third-party management.
  • Support the annual compliance reporting process for the local entity.
  • Support local management in their regulatory Information Security-related governance requirements.
Key Requirements/Skills/Experience
  • University degree in computer science, natural sciences etc. or equivalent professional experience.
  • Long track record of experience in IT, 5 years+ experience in Information Security related fields and/and or risk management.
  • Sound knowledge of IT security technology, architecture and processes and profound knowledge of information security management systems and relevant industry standards and control frameworks (in particular ISO270xx, COBIT2019); local regulatory standards
  • Professional experience with supplier management (including Cloud providers), IT outsourcing and relevant control frameworks; track record in defining and monitoring contractual information security provisions.
  • Proven track record in people management and/or project management in complex enterprise environments.
  • Desirable certifications: CISM/ CISSP; ISO27001 Lead Implementer/Auditor
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Security Officer (Malaysia/APAC)
Senior Information Security Officer (Malaysia/APAC)

Joinimagine • Kuala Lumpur

On-site
MYR 120,000 - 180,000
IT Information Security Management (ISM) / CyberSecurity Officer
IT Information Security Management (ISM) / CyberSecurity Officer

Nationgate Solution (M) Sdn Bhd • Seberang Perai

On-site
MYR 90,000 - 150,000
6412 - IT Security Manager
6412 - IT Security Manager

Agensi Pekerjaan Minde Group Sdn Bhd • Penang

On-site
MYR 180,000 - 270,000
Infrastructure Information Security Manager
Infrastructure Information Security Manager

Flintex Consulting • Kuala Lumpur

On-site
MYR 180,000 - 260,000
Manager – ICT Governance & Compliance
Manager – ICT Governance & Compliance

Scicom MSC Berhad • Kampung Cendana

On-site
MYR 71,000 - 85,000
Salary up to RM7000
Medical insurance
Medical and hospitalization leaves
+1
Senior Security Engineer — ISO27001 & Incident Response
Senior Security Engineer — ISO27001 & Incident Response

Mesiniaga Berhad • Subang Jaya

On-site
MYR 120,000 - 200,000
Regional Information Security Leader
Regional Information Security Leader

Principal Malaysia • Kuala Lumpur

On-site
MYR 120,000 - 180,000
IT Team Lead: Security & ISO 27001 Champion
IT Team Lead: Security & ISO 27001 Champion

FIRMUS SDN BHD • Kuala Lumpur

On-site
MYR 100,000 - 140,000
IT Security Governance
IT Security Governance

GoKardz Technologies • Kuala Lumpur

On-site
MYR 90,000 - 120,000
Infrastructure Information Security Manager
Infrastructure Information Security Manager

Flintex Consulting Pte Ltd • Kuala Lumpur

On-site
MYR 179,000 - 223,000