Enable job alerts via email!

IT Security and Compliance

Wilhelmsen group

Kuala Lumpur

On-site

MYR 60,000 - 90,000

Full time

9 days ago

Job summary

A global maritime firm in Kuala Lumpur seeks a Cyber Security professional to enhance their ISO 27001 Information Security Management System. Candidates must have a Bachelor's degree in Cyber Security or related fields, along with 3+ years of relevant experience. This role involves managing risks, compliance audits, and technical security reviews, within a collaborative work culture that emphasizes career development and work-life balance.

Qualifications

  • 3+ years of experience in Cyber Security, Risk Management, or Internal Audit.
  • Understanding of networking, operating systems, and cyber threats.
  • Familiar with security frameworks like ISO 27001.

Responsibilities

  • Support implementation and improvement of ISMS.
  • Assist risk management and compliance audits.
  • Perform technical security reviews and analysis.

Skills

Cyber Security understanding
Risk Management
Analytical skills
Communication skills

Education

Bachelor's degree in Cyber Security or related field

Tools

Security monitoring tools
Vulnerability scanning tools
Job description

Join our global team for a career filled with opportunities to solve challenges both small and large, local and global, simple and complex.

About Us Wilhelmsen Ship Management is one of the world’s largest third-party ship managers originated from Oslo, Norway with a portfolio of more than 450 vessels, a pool of more than 14,000 seafarers and over 900 shore-based employees all over the world. Our employees are working with a comprehensive global maritime group providing over half of the merchant fleet with essential products and services, along with supplying crew and technical management to the largest and most complex vessels ever to sail.

We offer a culture and vibrant work environment of strong leadership, collaborative, career development, work-life balance and a job that is both challenging and stimulating. All team members are empowered with the freedom to influence each other as long it complies with our Company’s values and vision.

What You\'ll Be Responsible For:
  • Support the implementation and continuous improvement of the ISO 27001 Information Security Management System (ISMS).

  • Assist in identifying and managing information security risks, controls, and related documentation.

  • Help maintain records such as the statement of applicability (SoA), risk treatment plans, and security policies.

  • Perform regular technical security reviews including vulnerability scans, patch status checks, and log analysis.

  • Assist in ensuring compliance with internal controls and regulatory standards through documentation and audits.

  • Support the configuration and maintenance of security systems such as firewalls, endpoint protection, and monitoring tools.

  • Participate in incident handling and investigations under the guidance of the Senior Cyber Security Specialist.

  • Assist with asset inventory updates, system classification, and control mapping.

  • Monitor and report on KPIs and KRIs relevant to the ISMS and risk management.

  • Collaborate in the delivery of user awareness training on information security and cyber security.

  • Contribute to change and incident management processes from a security compliance perspective.

  • Assist to track and monitor status of risk assessment.

  • Support internal and external audits by providing relevant documentation and evidence.

What Experience and Skills Required:
  • Bachelor\'s degree or higher in Cyber Security, Information Security, Computer Science, InformationSystems/Technology, or related field.

  • Minimum 3 years of working experience in Cyber Security / Risk Management / Internal Audit or equivalent work experience.

  • Foundational understanding of networking, operating systems, and common cyber threats.

  • Familiarity with security monitoring tools, log analysis, and basic incident response processes.

  • Good analytical, organizational, and communication skills.

  • Knowledge of regulatory requirements and industry standards.

  • Preferably with certification in the areas of Cyber Security/Information Security.

  • Familiarity with industry cybersecurity frameworks and standards, such as ISO 27001, NIS2 and CISControls, is necessary.

Note: Only shortlisted candidates will be contacted

Become a valued member of our team, where every day presents new opportunities for learning and development. Sound interesting? Click "APPLY" now to embark on a rewarding career journey!

#WSM

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.