Manager, IT Security

Pixlr Group

Subang Jaya

On-site

MYR 180,000 - 240,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Annual leaves
Medical cover
Subsidies
Training & growth
Diversity culture

Job summary

Pixlr Group is seeking an hands-on IT Security Manager to own the security program across product, cloud, and corporate environments. You will define policies, conduct risk assessments, and ensure compliance while partnering with Engineering, IT, Product, Legal, and Operations.

You will lead secure SDLC practices, implement security tooling in CI/CD, and guide teams on OWASP Top 10, API security, and supply-chain risks. Strong incident response and cloud security experience are essential.

Qualifications

  • 6–10 years of experience in IT or application security.
  • Hands-on experience with application security and vulnerability management.
  • Practical expertise in AWS security services, IAM and cloud monitoring.
  • Familiarity with SAST/DAST and security logging tools.
  • Knowledge of ISO 27001, SOC 2, PDPA, GDPR is a plus.

Responsibilities

  • Own and run security program across product, cloud, and corporate security.
  • Embed security in the software development lifecycle and perform threat modelling.
  • Operate CI/CD security tooling for SAST, DAST, and dependency analysis.
  • Define baseline cloud security controls, identity management, logging and monitoring.
  • Lead incident response planning and coordinated security incidents.
  • Enforce identity lifecycle management and access controls across platforms.

Skills

Application security
Secure SDLC
Vulnerability management
AWS security
IAM & cloud monitoring

Tools

SAST
DAST
Dependency scanning
Secret management
Security logging platforms

Job description

We’re hiring a hands-on IT Security Manager to own product, cloud, and corporate security across Pixlr. You’ll define and run our security program, from policy and risk to AppSec and incident response, while partnering closely with Engineering, IT, Product, Legal, and Operations.

The Job:
1. Security Governance, Risk & Compliance
  • Establish and maintain the security policy stack, aligned with ISO 27001, SOC 2 controls, and applicable privacy regulations (e.g., PDPA, GDPR).
  • Conduct security risk assessments, vendor and third-party reviews, and data classification activities.
  • Support audit readiness through evidence collection, control testing, and maintenance of security control mappings.
2. Application & Product Security
  • Embed security practices within the software development lifecycle, including threat modelling, secure coding standards, and security reviews.
  • Own and operate application security tooling within CI/CD pipelines, including static, dynamic, and dependency analysis.
  • Guide engineering teams on secure design principles, OWASP Top 10, API security, and supply-chain risk considerations.
3. Cloud & Platform Security
  • Implement and operate cloud security controls across AWS environments, including identity management, logging, monitoring, and threat detection services.
  • Define baseline hardening standards, guardrails, and policy-as-code controls for cloud and infrastructure environments.
  • Drive container, serverless, and data protection security practices, including encryption and key management.
4. Detection, Response & Resilience
  • Develop and maintain incident response plans and coordinate security incident handling with Engineering and IT teams.
  • Operate centralised security logging, alerting, and detection capabilities.
  • Maintain business continuity and disaster recovery security requirements, including backup and recovery verification.
5. Access Hygiene & Privacy
  • Enforce identity lifecycle management and access controls across cloud platforms, SaaS systems, and data environments.
  • Partner with Legal and Data teams on privacy impact assessments, data retention practices, and data loss prevention controls.
6. Culture, Enablement & Operations
  • Deliver security awareness and role-based training for engineering, product, and operations teams.
  • Define and track security operational metrics to monitor risk, control coverage, and remediation effectiveness.
  • Balance security requirements with delivery velocity and cost considerations through cross-functional collaboration.
The Person:
  • 6–10 years of experience in IT or application security, including ownership of security programmes or AppSec/CloudSec functions.
  • Strong hands‑on experience with application security, secure SDLC practices, and vulnerability management.
  • Practical expertise in AWS security services, identity and access management, and cloud security monitoring.
  • Experience with common security tooling, including SAST, DAST, dependency scanning, secret management, and security logging platforms.
  • Solid understanding of security governance frameworks and regulatory principles, including ISO 27001, SOC 2, PDPA, and GDPR.
  • Proven ability to lead incident response activities and communicate security risks clearly to technical and non-technical stakeholders.
Nice-to-Haves
  • Certifications: CISSP, CCSP, AWS Security Specialty, ISO 27001 Lead Implementer/Auditor.
  • Experience with creative/EdTech or high‑scale consumer SaaS; exposure to SOC 2/ISO27001 journeys and GRC platforms (e.g., Drata/Vanta).
  • Container/Kubernetes security, serverless security, and SBOM/supply chain practices.
  • Annual Leaves- Additional annual leave will be credited to you on a yearly basis.
  • Medical and Insurance Coverages - We have got you covered.
  • Subsidies - Enhancing your well‑being, we offer optical and dental subsidies.
  • Opportunities - Above training and guidance, you will have the opportunity to try, to build your confidence and become your best self, and to interact and build a strong relationship.
  • Rocking Diversity- Play hard, work harder with people of diverse skill sets and experiences! Challange yourself to step out of your comfort zone, and you'll find yourself growing in way you'd never imagine.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Assistant Manager, IT Operations
Assistant Manager, IT Operations

Pixlr Online AI Photo Editor • Bandar Baru Bangi

On-site
MYR 120,000 - 180,000
Annual leave
Medical coverage
Dental subsidies
+3
Sales Manager
Sales Manager

Pixlr Online AI Photo Editor • Subang Jaya

On-site
MYR 80,000 - 100,000
Annual leave
Medical and insurance coverage
Optical and dental subsidies
+2
Security Program Lead: AppSec, Cloud & IT
Security Program Lead: AppSec, Cloud & IT

Pixlr Group • Subang Jaya

On-site
MYR 180,000 - 240,000
Annual leaves
Medical cover
Subsidies
+2
Marketing Director/Head
Marketing Director/Head

Pixlr Online AI Photo Editor • Bandar Baru Bangi

On-site
MYR 120,000 - 150,000
Annual Leaves
Medical and Insurance Coverages
Optical and Dental Subsidies
+2
Senior Sales Executive
Senior Sales Executive

Pixlr Online AI Photo Editor • Subang Jaya

On-site
MYR 70,000 - 120,000
Annual Leaves
Medical Insurance
Dental Subsidies
+2
Application Security Engineer
Application Security Engineer

Respond.io • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Mental health allowance
Flexible working hours
Competitive compensation
+1
Senior Software Quality Assurance Engineer
Senior Software Quality Assurance Engineer

Pixlr Group • Subang Jaya

On-site
MYR 60,000 - 90,000
Additional annual leave
Medical and insurance coverages
Optical and dental subsidies
+2
DevSecOps Engineer (Application & Endpoint)
DevSecOps Engineer (Application & Endpoint)

Respond • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Culture and growth
Competitive pay
Mental health allowance
+2
Senior Software Quality Assurance Engineer
Senior Software Quality Assurance Engineer

Pixlr Online AI Photo Editor • Bandar Baru Bangi

On-site
MYR 60,000 - 80,000
Annual Leaves
Medical and Insurance Coverage
Optical and Dental Subsidies
+2
Full Stack Software Engineer
Full Stack Software Engineer

Pixlr Group • Subang Jaya

Hybrid
MYR 120,000 - 190,000
Annual leave
Medical coverage
Dental subsidies
+1