IT Security Governance Manager

Hong Leong Bank Berhad

Petaling Jaya

On-site

MYR 180,000 - 280,000

Full time

6 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Hong Leong Bank Berhad is seeking a Technical Governance Manager specializing in Network Security Controls to oversee policy, compliance, and risk management for the bank’s perimeter defenses. You will define security standards, ensure proper rule justification, and drive audits and remediation across WAF, proxies, VPNs, and NAC systems.

Responsibilities include aligning with NIST, PCI-DSS, ISO/IEC 27001, and SOC 2; managing governance for WAF rule sets, SSL/TLS policies, and 802.1X NAC; and

Qualifications

  • 5+ years in cybersecurity, technical risk, or IT audit.
  • Deep knowledge of firewall, WAF, proxies, and VPN platforms.
  • Experience auditing or defining policies with Cisco ISE.
  • Familiarity with regulatory banking requirements (PCI-DSS, etc.).

Responsibilities

  • Define and maintain technical security standards aligned with NIST, PCI-DSS, ISO/IEC 27001, SOC 2, CIS Benchmarks.
  • Review and update policies for WAFs, proxies, VPNs, and NAC systems.
  • Lead readiness for audits and track remediation of findings and vulnerabilities.
  • Report KRIs on control effectiveness to management.
  • Govern WAF deployments, rule tuning, and API security baselines.
  • Audit Cisco ISE architectures for enterprise WiFi security and network access.
  • Oversee firewall rule lifecycle and proxy content filtering governance.
  • Ensure VPN configurations and MFA align with Zero Trust principles.

Skills

Firewall architectures
WAF & proxy governance
VPN security & NAC
Zero Trust
Regulatory compliance
Security policy engineering
Auditing & remediation
Risk assessment

Education

Bachelor's degree in cybersecurity

Tools

Cisco ISE
NSPM tools
SSL/TLS inspection tooling

Job description

We are seeking a Technical Governance Manager specializing in Network Security Controls to oversee the policy, compliance, and risk management frameworks governing our bank's perimeter defenses.

In this role, you will act as the ultimate authority on what the security rules should be, ensuring our Firewalls, WAFs, Proxies, VPN infrastructure, and Wireless Access Networks strictly adhere to banking regulations and internal security standards. You will ensure that every rule, policy, network access pathway, and application defense mechanism is justified, documented, regularly reviewed, and fully compliant with financial sector mandates.

Responsibilities

Security Framework Alignment: Define and maintain the Bank’s technical security standards, aligning them with industry frameworks (e.g., NIST, PCI-DSS, ISO/IEC 27001, SOC 2, CIS Benchmarks).

Policy & Standard Engineering: Review and update technical security policies, baselines, and procedures for Web Application Firewalls (WAF), Web Proxies, Enterprise VPNs, and Network Access Control (NAC) systems and other security devices.

Audit & Compliance Remediation: Lead technical readiness for internal and external audits. Work directly with teams to track, prioritize, and validate the remediation of security findings and vulnerabilities.

Metrics & Reporting: Report and track Internal, Paynet & BNM regulatory Key Risk Indicators (KRIs) regarding control effectiveness.

WAF & Application Layer Governance: Define the governance framework for Web Application Firewall (WAF) deployments. Establish standards for rule tuning, core rule sets (e.g., OWASP Top 10 mitigation), API security baselines, SSL/TLS decryption profiles, and the management of false-positive thresholds to protect critical banking applications.

WiFi & Network Access Control (NAC) Governance: Define and audit the security architectures within Cisco ISE governing corporate, guest, and BYOD wireless networks. Establish strict baselines for 802.1X authentication, device profiling, and endpoint posture assessment before network admission.

Firewall Rule Lifecycle Governance: Define the mandatory review intervals and lifecycle processes for firewall rules. Oversee the automated or manual recertification of rule base to eliminate legacy, overly permissive, or unused rules.

Proxy & Content Filtering Governance: Establish governance frameworks for URL categorization, SSL decryption policies, data loss prevention (DLP) integration at the proxy level, and the formal approval process for proxy bypasses.

VPN & Remote Access Compliance: Ensure VPN configurations, multi-factor authentication (MFA) mandates, and conditional access policies align with Zero Trust principles and banking regulatory standards.

Assurance & Continuous Auditing: Utilize network assurance and compliance tools to continuously audit configurations against established golden images and security compliance baselines.

Exception Management & Risk Acceptance: Formally evaluate, risk-score, and manage the lifecycle of technical exception requests (e.g., emergency port openings, WAF rule bypasses for specific legacy applications, or non-compliant wireless device onboarding), ensuring temporary risks are tracked and mitigated.

Regulatory & Audit Liaison: Serve as the primary subject matter expert during internal, external, and central bank/regulatory audits concerning network perimeter security, application protection, and network access controls.

Skills & Experience We Are Looking For:

Required Experience & Technical Knowledge

Experience: 5+ years in cybersecurity, technical risk, or IT audit

Perimeter & Application Security Expertise: Deep conceptual and technical understanding of firewall architectures Web Application Firewall, secure web gateways/proxies and enterprise VPN platforms.

Identity & NAC Expertise: Proven experience auditing or defining policies within Cisco ISE (Identity Services Engine) for enterprise WiFi management, including certificate-based authentication and guest network segmentation.

Network Auditing Tools: Strong familiarity with Network Security Policy Management (NSPM) tools used for rule optimization and compliance mapping.

Regulatory Knowledge: Clear understanding of banking-specific compliance requirements related to network segmentation, application layer security, wireless security, and data protection (e.g., PCI-DSS compliance for public-facing web applications).

Preferred Qualifications

Certifications: CISA /CRISC/ CISSP, or technical networking/security certifications (not mandatory)

Mindset: A highly analytical, detail-oriented professional who values strict documentation and process-repeatable outcomes over quick operational fixes.

Unlock job insights

Hirer responsiveness Salary match Number of applicants

Your application will include the following questions:

  • Which of the following statements best describes your right to work in Malaysia?
  • Which of the following types of qualifications do you have?

Banking & Credit More than 10,000 employees

We are a leading financial institution in Malaysia backed by a century of entrepreneurial heritage. Providing comprehensive financial services guided by a Digital-at-the-Core ethos has earned us industry recognition and accolades for our innovative approach in making banking simpler and more effortless for our customers. Our digital and physical offerings span across a vast nationwide network in Malaysia, strengthened with an expanding regional presence in Singapore, Hong Kong, Vietnam, Cambodia, and China.

We seek to strike a balance between diversity, inclusion and merit to achieve our mission of infusing diversity in thinking and skillsets into our organisation. Candidates are assessed based on merit and potential, in line with our mission to attract and recruit the best talent available. Expanding on our “Digital at the Core” ethos, we are progressively digitising the employee journey and experience to provide a strong foundation for our people to drive life-long learning, achieve their career aspirations and grow talent from within our organisation.

HONG LEONG GROUP PERSONAL DATA POLICY

Hong Leong Group use personal data in accordance with the Hong Leong Group Privacy Notice (New Applicants) which can be found at http://www.hongleong.com/download/HLG_Privacy_Notice_New_Applicants.pdf

By providing to us your personal data, you hereby consent to the processing of your personal data with the said Privacy Notice.

We are a leading financial institution in Malaysia backed by a century of entrepreneurial heritage. Providing comprehensive financial services guided by a Digital-at-the-Core ethos has earned us industry recognition and accolades for our innovative approach in making banking simpler and more effortless for our customers. Our digital and physical offerings span across a vast nationwide network in Malaysia, strengthened with an expanding regional presence in Singapore, Hong Kong, Vietnam, Cambodia, and China.

We seek to strike a balance between diversity, inclusion and merit to achieve our mission of infusing diversity in thinking and skillsets into our organisation. Candidates are assessed based on merit and potential, in line with our mission to attract and recruit the best talent available. Expanding on our “Digital at the Core” ethos, we are progressively digitising the employee journey and experience to provide a strong foundation for our people to drive life-long learning, achieve their career aspirations and grow talent from within our organisation.

HONG LEONG GROUP PERSONAL DATA POLICY

Hong Leong Group use personal data in accordance with the Hong Leong Group Privacy Notice (New Applicants) which can be found at http://www.hongleong.com/download/HLG_Privacy_Notice_New_Applicants.pdf

By providing to us your personal data, you hereby consent to the processing of your personal data with the said Privacy Notice.

To help fast track investigation, please include here any other relevant details that prompted you to report this job ad as fraudulent / misleading / discriminatory / salary below minimum wage.

Researching careers? Find all the information and tips you need on career advice.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Governance Manager
IT Security Governance Manager

HLB • Petaling Jaya

On-site
MYR 180,000 - 300,000
IT Security Governance Manager
IT Security Governance Manager

Hong Leong Bank • Petaling Jaya

On-site
MYR 180,000 - 240,000
Senior Security Advisor - Technical Project Manager
Senior Security Advisor - Technical Project Manager

Hong Leong Bank • Shah Alam

On-site
MYR 180,000 - 260,000
Application ID Administrator
Application ID Administrator

Hong Leong Bank Berhad • Selangor

On-site
MYR 120,000 - 180,000
Manager, Deposit, Campaign & Analytics
Manager, Deposit, Campaign & Analytics

Hong Leong Bank Berhad • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Application ID Administrator
Application ID Administrator

HLB • Petaling Jaya

On-site
MYR 180,000 - 240,000
Application Support Manager
Application Support Manager

Hong Leong Bank Berhad • Kuala Lumpur

On-site
MYR 120,000 - 160,000
Application ID Administrator
Application ID Administrator

Hong Leong Bank • Petaling Jaya

On-site
MYR 70,000 - 110,000
Head - Operations Compliance & Risk
Head - Operations Compliance & Risk

HLB • Kuala Lumpur

On-site
MYR 240,000 - 360,000
Information & Cybersecurity, Consultant
Information & Cybersecurity, Consultant

AIA Malaysia • Kuala Lumpur

On-site
MYR 70,000 - 90,000