IT Information Security Management (ISM) / CyberSecurity Officer

Nationgate Solution (M) Sdn Bhd

Seberang Perai

On-site

MYR 90,000 - 150,000

Full time

7 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Nationgate Solution (M) Sdn Bhd in Malaysia is seeking an IT Information Security Management System (ISMS)/Cyber Security Officer to strengthen our cybersecurity posture across systems, networks, and applications.

You will collaborate with IT Infrastructure, ERP, MES, WMS, Operations teams, vendors, and auditors to implement security controls, perform risk assessments, monitor threats, and support audits and certification activities.

Qualifications

  • Bachelor's degree in cybersecurity or related field.
  • Fresh graduates welcome; related experience is a plus.
  • Knowledge of ISMS and security standards is advantageous.
  • Familiar with networking, Windows, Active Directory, and enterprise IT.
  • Strong analytical and problem-solving skills.
  • Good communication and documentation skills.
  • Willingness to participate in incident response.

Responsibilities

  • Support ISMS implementation and continuous improvement.
  • Monitor compliance with security policies and regulatory requirements.
  • Assist in risk assessments, security reviews, and gap analyses.
  • Identify vulnerabilities and track remediation activities.
  • Support incident investigations and RCA activities.
  • Coordinate vulnerability assessments and penetration testing.
  • Assist with access reviews and privileged account reviews.
  • Participate in audits and security certifications.
  • Maintain security policies and audit evidence.
  • Contribute to security awareness and training programs.
  • Review security requirements for new systems and IT projects.

Skills

Analytical skills
Problem-solving
Communication skills
Documentation skills
Team collaboration

Education

Bachelor's Degree in CyberSecurity, Information Technology, Computer Science, Information Security, or a related field

Tools

Active Directory
Windows Server
ISMS

Job description

Jora Malaysia will close on 16th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.

IT Information Security Management (ISM) / CyberSecurity Officer

We are looking for a motivated and skilled IT Information Security Management System (ISMS) / Cyber Security Officer to support and strengthen the organization's cybersecurity posture, information security governance, and compliance initiatives. The ideal candidate will be responsible for implementing, monitoring, and maintaining security controls to protect the organization's information assets, systems, applications, networks, and infrastructure from cyber threats and security risks.

In this role, you will work closely with IT Infrastructure, Application, ERP, MES, WMS, Operations teams, vendors, auditors, and business users to ensure compliance with security policies, industry standards, and regulatory requirements. You will participate in security monitoring, vulnerability management, incident response, security assessments, audit activities, and continuous improvement of cybersecurity controls across the organization.

Key Responsibilities
  • Support the implementation, maintenance, and continuous improvement of the organization's Information Security Management System (ISMS).
  • Monitor and ensure compliance with information security policies, standards, procedures, and regulatory requirements.
  • Assist in conducting information security risk assessments, security reviews, and gap analyses for systems, applications, and infrastructure.
  • Identify, assess, and track security vulnerabilities, risks, and remediation activities.
  • Support security incident investigation, containment, recovery, and Root Cause Analysis (RCA) activities.
  • Monitor security alerts, logs, and events, and coordinate response actions when required.
  • Coordinate vulnerability assessments, penetration testing activities, and remediation follow-up with internal teams and external vendors.
  • Support cybersecurity controls related to network security, endpoint protection, user access management, and data protection.
  • Perform user access reviews, privileged account reviews, and access control compliance checks.
  • Participate in internal audits, customer audits, security assessments, and certification activities.
  • Maintain security policies, procedures, standards, risk registers, audit evidence, and related documentation.
  • Support cybersecurity awareness and training programs for employees.
  • Review security requirements for new systems, applications, infrastructure changes, and IT projects.
  • Collaborate with Infrastructure, Application, ERP, MES, WMS, Server/Database administrator and Operations teams to ensure security requirements are integrated into business and IT processes.
  • Monitor compliance with security baselines, system hardening standards, patch management requirements, and cybersecurity policies.
  • Support business continuity, disaster recovery, and IT resilience initiatives.
  • Coordinate with vendors, customers, auditors, and business stakeholders on security-related matters.
  • Stay updated on emerging cybersecurity threats, vulnerabilities, technologies, and industry best practices.
Qualifications
  • Bachelor's Degree in CyberSecurity, Information Technology, Computer Science, Information Security, or a related field.
  • Fresh graduates are encouraged to apply. Candidates with experience in Information Security, Cyber Security, IT Governance, Risk Management, Compliance, Infrastructure, or IT Operations will have an added advantage.
  • Basic understanding of cybersecurity principles, information security practices, and risk management concepts.
  • Familiarity with networking concepts, Windows environments, Active Directory, and enterprise IT infrastructure.
  • Knowledge of Information Security Management Systems (ISMS) and security standards is an advantage.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Good communication and interpersonal skills.
  • Ability to work independently and collaboratively with cross-functional teams.
  • Strong documentation, organizational, and reporting skills.
  • Willingness to participate in security incident response activities when required.
Preferred Skills
  • Basic understanding of information security standards such as ISO 27001, NIST Cybersecurity Framework, or CIS Controls.
  • Familiarity with security monitoring, endpoint protection, antivirus, vulnerability management, and email security solutions.
  • Understanding of network security concepts, including firewalls, VPNs, network segmentation, and access controls.
  • Familiarity with Active Directory, user account administration, and privileged access management.
  • Knowledge of Windows Server security hardening, patch management, and system security best practices is an advantage.
  • Experience supporting audit preparation, compliance assessments, and security documentation is preferred.
  • Relevant certifications such as Security+, SC-900, ISO 27001 Foundation, CEH, or equivalent certifications are an added advantage.
  • Excellent communication skills to collaborate with users, management, auditors, customers, vendors, and technical teams.
  • Proficiency in English and Mandarin is preferred due to communication and collaboration with overseas customers, vendors, and business partners.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Analyst
Information Security Analyst

Media.Monks • Kuala Lumpur

On-site
MYR 90,000 - 150,000
Security Engineer
Security Engineer

Mesiniaga Berhad • Subang Jaya

On-site
MYR 120,000 - 200,000
IT Security Assistant Manager / Manager
IT Security Assistant Manager / Manager

NTT DATA Payment Services • Subang Jaya

On-site
MYR 90,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Sysarmy • Kuala Lumpur

On-site
MYR 70,000 - 100,000
System Engineer (Contract)
System Engineer (Contract)

Experian • Kuala Selangor

On-site
MYR 120,000 - 180,000
Manager – ICT Governance - Compliance
Manager – ICT Governance - Compliance

Scicom (MSC) Berhad • Kuala Lumpur

On-site
MYR 67,000 - 78,000
Salary up to RM7000
Performance related allowance forStaff
Information Security Officer (ISO) Asia-Pacific
Information Security Officer (ISO) Asia-Pacific

GEA • Shah Alam

On-site
MYR 150,000 - 230,000
IT Security Officer
IT Security Officer

FOZ One Sdn Bhd • Kulai

On-site
MYR 36,000 - 52,000
IT Project Manager (Information Security)
IT Project Manager (Information Security)

Tentacle Technologies • Kuala Lumpur

On-site
MYR 120,000 - 180,000
High-impact cybersecurity project
Mentorship from security professionals
Career growth in IT security
+1
Security Engineer
Security Engineer

Job Search Asia • Petaling Jaya

On-site
MYR 90,000 - 150,000
EPF
SOCSO
EIS