Manager I, Cyber Security

WorleyParsons

Kuala Lumpur

On-site

MYR 180,000 - 300,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Worley seeks a Manager I, Cyber Security to join our Malaysia team. You will lead security risk management, maintain ISMS, and coordinate audits while partnering with Procurement, Legal, Privacy, and business units across geographies.

The role requires extensive information security experience and relevant certifications, with a focus on continuous improvement and resilient cyber practices for a global energy projects organization.

Qualifications

  • Certifications such as – CISM, CRISC, ISO27001 Lead Auditor, ISO42001 Lead Auditor, CISSP, CISA
  • 10+ years of experience in information security or information technology.

Responsibilities

  • 2nd Line of Defence in IIA Three Lines of Defence Model.
  • Lead the supplier information security risk management program, including security assessments, assurance reviews, remediation oversight, and ongoing monitoring of third-party security risks.
  • Collaborate with Procurement, Legal, Privacy, Digital, and business stakeholders to ensure information security requirements are embedded within supplier onboarding processes, contractual arrangements, and business operations.
  • Manage and continuously enhance the Information Security Management System (ISMS), including maintaining ISO/IEC 27001 certification, coordinating internal and external audits, overseeing corrective actions, and ensuring ongoing compliance with certification requirements.
  • Own and administer the Digital Risk Register and Information Security Risk Register, including facilitating risk identification, assessment, treatment, monitoring, reporting, and periodic review in alignment with enterprise risk management requirements.
  • Conduct and facilitate information security risk assessments, including the evaluation of proposed deviations from security standards, policies, and control requirements.
  • Coordinate and support internal and external audits, certification activities, customer security assurance requests, and regulatory reviews.
  • Lead, coach, and develop team members while ensuring delivery of operational objectives, continuous improvement initiatives, and strategic program outcomes.

Skills

Security risk management
ISMS / ISO 27001
Stakeholder engagement
Policy & standards
Cybersecurity frameworks
Vendor risk management

Education

Bachelor's degree in IT/Computing

Tools

MS Visio
MS SharePoint

Job description

Job Description - Manager I, Cyber Security (KUA00RN)

Company : Worley

Primary Location
Job

Job: Information Technology

Schedule

Full-time

Employment Type : Employee

Job Posting

Aug 27, 2026

Unposting Date

Sep 26, 2026

About us

Worley is a global company of energy, chemicals and resources experts headquartered in Australia. We partner with our customers to deliver projects and create value across the life of their assets. We specialize in consulting, engineering, procurement and construction across the project lifecycle, with services extending through to operations and decommissioning. Leveraging extensive experience and AI-enabled delivery, we support customers in navigating complexity as they meet today's needs and transition to more sustainable solutions.

About the job

We’re looking for a Manager I, Cyber Security to join our Malaysia team.

As a Manager I, Cyber Security, you will be responsible for working with various stakeholders across Worley to assess and manage exceptions from security control implementation, including web filtering, network controls, data loss prevention controls and others. This position will also manage the process for deviations from company information security standards. Additionally, this position supports information security risk management and third-party risk management tasks to continuously improve Worley’s cybersecurity practices.

To succeed in this role, you should have experience in information security or information technology.

What you’ll do

We are looking for a Manager I, Cyber Security to join our team Malaysia.

The role responsibilities include:

  • 2nd Line of Defence in IIA Three Lines of Defence Model.
  • Lead the supplier information security risk management program, including security assessments, assurance reviews, remediation oversight, and ongoing monitoring of third-party security risks.
  • Collaborate with Procurement, Legal, Privacy, Digital, and business stakeholders to ensure information security requirements are embedded within supplier onboarding processes, contractual arrangements, and business operations.
  • Manage and continuously enhance the Information Security Management System (ISMS), including maintaining ISO/IEC 27001 certification, coordinating internal and external audits, overseeing corrective actions, and ensuring ongoing compliance with certification requirements.
  • Own and administer the Digital Risk Register and Information Security Risk Register, including facilitating risk identification, assessment, treatment, monitoring, reporting, and periodic review in alignment with enterprise risk management requirements.
  • Conduct and facilitate information security risk assessments, including the evaluation of proposed deviations from security standards, policies, and control requirements.
  • Coordinate and support internal and external audits, certification activities, customer security assurance requests, and regulatory reviews.
  • Lead, coach, and develop team members while ensuring delivery of operational objectives, continuous improvement initiatives, and strategic program outcomes.
What you’ll have Education – Qualifications, Accreditation, Training:
  • Certifications such as – CISM, CRISC, ISO27001 Lead Auditor, ISO42001 Lead Auditor, CISSP, CISA
  • 10 + years of experience in information security or information technology.
Job Specific Knowledge / Experience:
  • Demonstrated ability to partner and collaborate effectively with stakeholders, demonstrating an appreciation of both IT and business strategy.
  • Advanced awareness of full technology stack.
  • Exceptional attention to detail, with the aptitude to collect, analyze and conclude on data.
  • Demonstrated ability to produce clear, concise, and logical risk assessment documentation.
  • Operational knowledge of data handling and confidentiality.
  • Ability to work in a fast-paced unstructured customer-centric environment across multiple geographies and operational contexts.
  • Knowledge of frameworks including ITIL, COBIT, NIST CSF (Cyber Security Framework), Essential 8 and ISO27001.
IT Skills:
  • Advanced user in MS Office applications (including MS Visio) and MS SharePoint
  • Advanced awareness of full technology stack.
People Skills:
  • Interpersonal: Builds appropriate, constructive, and effective business relationships throughout the organization; uses diplomacy and tact; is approachable; communicates clearly, accurately, and consistently both verbally and in written matters. Employs the principles of active listening and encourages feedback from others.
  • Teamwork: Enjoys working in a small high caliber team with high visibility to senior stakeholders. Able to work and liaise with multiple teams and stakeholders, able to prioritize workloads and help other team members to achieve team goals.
  • Action Orientation: Achieves results set by self and others, meets timelines, pushes to achieve stretch goals, and demonstrates enthusiasm, persistence, and tenacity. Breaks down work into executable tasks.
  • Intellectual Capacity - Deals with new concepts and complexity comfortably. Examines problems carefully and thoroughly and understands their interdependencies. Can pull information and ideas from many sources and see the importance of many factors.
Flexible Working Arrangements:
  • This is a global role and will require flexibility to work across multiple time zones.
Moving forward together

We want our people to be energized and empowered to drive sustainable impact. So, our focus is on a values-inspired culture that unlocks brilliance through belonging, connection and innovation. We're building a diverse, inclusive and respectful workplace. Creating a space where everyone feels they belong, can be themselves, and are heard.

And we're not just talking about it; we're doing it. We're reskilling our people, leveraging transferable skills, and supporting the transition of our workforce to become experts in today's low carbon energy infrastructure and technology. Whatever your ambition, there's a path for you here.

And there's no barrier to your potential career success. Join us to broaden your horizons, explore diverse opportunities, and be part of delivering sustainable change.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager I, Cyber Security
Manager I, Cyber Security

Worley • Kuala Lumpur

On-site
MYR 180,000 - 300,000
Flexible work arrangements
Competitive remuneration & employee’s
Cyber Security Manager I: ISMS, Risk & Compliance Lead
Cyber Security Manager I: ISMS, Risk & Compliance Lead

Worley • Kuala Lumpur

On-site
MYR 180,000 - 300,000
Flexible work arrangements
Competitive remuneration & employee’s
Cyber Security Program Manager ISMS & Risk
Cyber Security Program Manager ISMS & Risk

WorleyParsons • Kuala Lumpur

On-site
MYR 180,000 - 300,000
Senior Marketing Coordinator
Senior Marketing Coordinator

WorleyParsons • Malaysia

On-site
MYR 65,000 - 95,000
Manager, Cybersecurity Engineering - Operations
Manager, Cybersecurity Engineering - Operations

SD Guthrie • Selangor

Hybrid
MYR 240,000 - 420,000
Flexible Benefits
Hybrid Workplace
Learning on Demand
+3
Staff IT Security Engineer
Staff IT Security Engineer

Michael Page • Penang

On-site
MYR 194,000 - 238,000
Comprehensive benefits
Permanent position
Cybersecurity Engineer
Cybersecurity Engineer

Mission Consultancy Services Malaysia • Kuala Lumpur

On-site
MYR 89,000 - 167,000
Salary 8k-15k MYR
Certifications support
Career development
Head of Information Technology
Head of Information Technology

Talenta Consultants • Kuala Lumpur

On-site
MYR 240,000 - 420,000
Senior Manager / Associate Director – Cybersecurity Practice
Senior Manager / Associate Director – Cybersecurity Practice

Accenture Southeast Asia • Kuala Lumpur

On-site
MYR 180,000 - 280,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Blue Fortress Sdn. Bhd. • Alor Setar

On-site
MYR 90,000 - 150,000