Jora Malaysia will close on 16th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.
FOZ One is a company dedicated to transforming ideas into life, empowering businesses worldwide. We offer state-of-the-art facilities at our vibrant HQ, featuring a rooftop commune, gym, and innovative spaces designed for collaboration and wellness. Join us to be part of FOZ One's branding transformation and immersive digital experiences, and thrive in a dynamic environment that values learning, growth, and cutting-edge innovation.
About the Role
The IT Security Officer assists in day-to-day monitoring of security systems, access control, vulnerability scanning, and basic incident handling. This is a role focused on supporting cybersecurity operations, performing routine security checks, and ensuring compliance with established procedures. The Officer helps run phishing simulations, security awareness activities, door access processing, and file access checks under supervision.
Key Responsibilities
Information & Data Security
- Monitor assigned security alerts, endpoint notifications, antivirus/EDR events, and security tickets.
- Perform basic first-level checks using approved procedures and elevate suspicious or unresolved events.
- Assist with routine endpoint security checks, policy compliance verification, and security tool status monitoring.
- Support data protection, document control, email security, and web security activities.
- Maintain accurate incident, alert, and activity records.
Identity & Access Management (IAM)
- Process system, application, file, and physical door access requests after verifying required approvals.
- Support user onboarding, role changes, and offboarding access activities.
- Assist with scheduled access reviews and identify inactive accounts, excessive access, or missing approvals.
- Update access lists, permission inventories, approval records, and review evidence.
- Escalate access exceptions or unusual access rights to senior team members.
Security Awareness & Phishing Simulation
- Assist in preparing and distributing security awareness materials, reminders, posters, and user communications.
- Support phishing simulation campaigns, record user responses, and update tracking reports.
- Provide basic guidance to users on phishing reporting, password safety, and acceptable use requirements.
Vulnerability Assessment & Risk Support
- Run approved vulnerability scans under supervision and record identified findings.
- Update remediation trackers and follow up with assigned system owners on status.
- Assist in gathering information and evidence for risk assessments, audits, and compliance reviews.
IT Security Support
- Provide first-level support for security-related enquiries and requests.
- Assist with security documentation, reports, dashboards, checklists, and standard operating procedures.
- Support security projects, testing activities, and other tasks assigned by senior team members.
Qualification & Requirements
At least Bachelor’s Degree in Computer Science, Information Technology, Cybersecurity, or a related field.
Experience: Fresh graduate or up to 1 year of relevant internship or working experience in IT support, networking, system administration, or cybersecurity.
Technical Requirements
- Basic understanding of cybersecurity concepts, common threats, malware, phishing, passwords, and access control.
- Basic knowledge of Windows, Microsoft 365, Active Directory, networking, TCP/IP, DNS, DHCP, and firewalls.
- Familiarity with antivirus/EDR, SIEM, vulnerability scanning, or ticketing tools is an advantage.
- Ability to follow technical procedures, checklists, escalation paths, and documentation standards.
- Basic ability to review logs, identify unusual activities, and record findings clearly.
- Willingness and ability to learn new security tools, technologies, policies, and processes.