Manager (Technology Security Project & Service Governance)

AccionLabs Sdn Bhd

Kuala Lumpur

On-site

MYR 120,000 - 160,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

AccionLabs Sdn Bhd in Kuala Lumpur seeks a Manager for Technology Security Project & Service Governance to oversee cybersecurity governance, service management, and project governance across Malaysia. You will drive budgets, reporting, regulatory alignment, cyber resilience, and awareness campaigns.

The role requires 7–10 years of relevant experience, strong stakeholder management, and leadership in security programs within regulated industries.

Qualifications

  • Bachelor's Degree in Information Security, Computer Science, Information Technology, Risk Management, Business Administration, or related discipline.
  • 7–10 years of experience in Information Security, Technology Governance, IT Service Management, Project Management, or Operational Risk.
  • Experience in financial services, banking, insurance, or regulated industries is preferred.
  • Proven experience in governance reporting, service management, project governance, and stakeholder management.
  • Experience supporting cybersecurity programs and regulatory engagements is advantageous.

Responsibilities

  • Govern and oversee cybersecurity governance, service management, and financial reporting across Malaysia.
  • Monitor budgets, KPIs, SLAs, and service performance; coordinate governance forums and steering committees.
  • Lead cybersecurity project governance from initiation to closure; track progress, risks, and budgets.
  • Coordinate periodic security service reviews (GIS, APTB, AGB) and drive remediation actions.
  • Support development and testing of Cybersecurity Business Continuity Plans and Disaster Recovery arrangements.
  • Develop and execute cybersecurity awareness programs; track engagement and effectiveness.
  • Prepare reports for governance forums, escalating operational, compliance, and risk issues.

Skills

Security governance
IT service management
Project governance
Budget management
Stakeholder management
Cyber resilience
Security awareness
Regulatory knowledge

Education

Bachelor's Degree in Information Security / Computer Science / IT / Risk Management / Business Administration

Job description

Manager (Technology Security Project & Service Governance)

The Technology Security Project & Service Governance Manager is responsible for overseeing cybersecurity governance, service management, financial management, project governance, operational reporting, and cyber resilience activities within Malaysia. The role serves as a key liaison between local Information Security, Technology, Business stakeholders, and Group Security functions to ensure effective delivery, oversight, and continuous improvement of cybersecurity services and initiatives.

The incumbent will establish governance processes, monitor service performance, manage security budgets and financial reporting, coordinate security projects, support regulatory and audit requirements, strengthen cyber resilience, and drive cybersecurity awareness programs across the organization.

Key Responsibilities

1. Security Financial Management & Reporting

Manage the Information Security budget and expenditure tracking for Malaysia.

Monitor security-related operational and project costs against approved budgets.

Prepare monthly, quarterly, and annual financial reports for cybersecurity initiatives.

Perform budget forecasting and variance analysis to support management decision‑making.

Track security investment utilization and benefits realization.

Coordinate budget planning and funding requests with Technology, Finance, and Security stakeholders.

Support procurement governance, vendor cost reviews, and contract renewals related to security services.

2. Security Service Management & Reporting

Establish and maintain governance over cybersecurity services provided locally and by Group Information Security (GIS).

Define, monitor, and report on security service performance metrics and KPIs.

Produce regular management dashboards covering security operations, incidents, vulnerabilities, compliance status, and service performance.

Track service delivery against agreed service levels (SLAs) and operational objectives.

Coordinate service improvement initiatives and remediation actions arising from performance gaps.

Ensure appropriate documentation of security services, procedures, and operational controls.

3. Security Project Management & Reporting

Govern and oversee cybersecurity projects from initiation through implementation and closure.

Monitor project progress, risks, dependencies, milestones, budget consumption, and resource utilization.

Prepare management reports and executive updates on security project status.

Coordinate with project managers, technology teams, vendors, and business stakeholders to ensure timely delivery.

Support project governance forums and steering committee meetings.

Ensure cybersecurity projects align with regulatory requirements, organizational priorities, and security strategy.

4. Security Service Reviews (GIS, APTB, AGB)

Coordinate periodic service review meetings with Group Information Security (GIS), APTB, AGB, and relevant stakeholders.

Assess service effectiveness, performance trends, operational risks, and improvement opportunities.

Track action items, remediation plans, and service enhancement initiatives arising from reviews.

Prepare comprehensive service review reports and management presentations.

Facilitate discussions between local and regional stakeholders to resolve service issues and improve service delivery.

5. Business Continuity Planning for Cybersecurity

Support development, maintenance, and testing of cybersecurity‑related Business Continuity Plans (BCP) and Disaster Recovery (DR) arrangements.

Coordinate cyber resilience exercises, tabletop simulations, and recovery testing activities.

Ensure cybersecurity recovery requirements are integrated into business continuity and technology resilience frameworks.

Monitor remediation actions arising from resilience assessments and testing activities.

Support crisis management processes during major cybersecurity incidents.

6. Enhancing Cybersecurity Awareness

Develop and execute cybersecurity awareness and education programs for employees.

Coordinate phishing simulation campaigns and awareness assessments.

Promote a strong cybersecurity culture through communication campaigns, training sessions, and engagement initiatives.

Track and report security awareness metrics, participation rates, and effectiveness indicators.

Work with business units and Human Resources to ensure awareness programs meet organizational and regulatory requirements.

7. Governance, Risk, and Stakeholder Management

Prepare reports and presentations for management committees and governance forums.

Identify and elevate operational, compliance, and service risks to management.

Key Performance Indicators (KPIs)

Timely submission of security governance, service, project, and financial reports.

Achievement of security budget targets and financial governance requirements.

Security service performance against agreed KPIs and SLAs.

On‑time delivery of cybersecurity projects and initiatives.

Closure rate of actions arising from service reviews and governance meetings.

Successful completion of cyber resilience and business continuity testing.

Security awareness participation rates and phishing simulation improvements.

Qualifications & Experience

Education

Bachelor's Degree in Information Security, Computer Science, Information Technology, Risk Management, Business Administration, or related discipline.

Experience

Minimum 7-10 years of experience in Information Security, Technology Governance, IT Service Management, Project Management, or Operational Risk.

Experience in financial services, banking, insurance, or regulated industries is preferred.

Proven experience in governance reporting, service management, project governance, and stakeholder management.

Experience supporting cybersecurity programs and regulatory engagements is advantageous.

Preferred Certifications

One or more of the following certifications are preferred:

CISSP (Certified Information Systems Security Professional)

CISM (Certified Information Security Manager)

CRISC (Certified in Risk and Information Systems Control)

ITIL Foundation / ITIL Managing Professional

PMP (Project Management Professional)

ISO 27001 Lead Implementer or Lead Auditor

Certified Business Continuity Professional (CBCP) or equivalent

Technical & Professional

Cybersecurity Governance

IT Service Management (ITSM)

Financial Planning & Budget Management

Business Continuity & Cyber Resilience

Regulatory & Compliance Management

Leadership & Behavioural

Strong stakeholder management and influencing skills

Excellent analytical and problem-solving capabilities

Strong communication and presentation skills

Ability to drive governance and process improvements

High attention to detail and risk awareness

Ability to manage multiple priorities in a dynamic environment

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security & Governance Project Manager – 1 year contract renewable (Experience in Insurance / Banking industry is a must)
Cyber Security & Governance Project Manager – 1 year contract renewable (Experience in Insurance / Banking industry is a must)

PeopleLAKE • Kuala Lumpur

On-site
MYR 122,000 - 146,000
Group Head of IT Security
Group Head of IT Security

MindMerge Consulting • Kuala Lumpur

On-site
MYR 400,000 - 480,000
Senior Manager / Associate Director – Cybersecurity Practice
Senior Manager / Associate Director – Cybersecurity Practice

Accenture Southeast Asia • Kuala Lumpur

On-site
MYR 180,000 - 280,000
Cybersecurity Manager
Cybersecurity Manager

Flintex Consulting • Kuala Lumpur

On-site
MYR 240,000 - 360,000
Manager, Cybersecurity Engineering & Operations
Manager, Cybersecurity Engineering & Operations

SD Guthrie International • Petaling Jaya

On-site
MYR 180,000 - 350,000
Cybersecurity Governance & Projects Manager
Cybersecurity Governance & Projects Manager

AccionLabs Sdn Bhd • Kuala Lumpur

On-site
MYR 120,000 - 160,000
Junior Security Solutions Consultant
Junior Security Solutions Consultant

UniQ Consulting & Services Sdn Bhd • Petaling Jaya

On-site
MYR 60,000 - 120,000
Senior Manager, Cybersecurity & IT Infrastructure
Senior Manager, Cybersecurity & IT Infrastructure

Agensi Pekerjaan Executive Recruiters • Kuala Lumpur

On-site
MYR 180,000 - 300,000
Group Head Information Security, SVP
Group Head Information Security, SVP

RHB Banking Group • Kuala Lumpur

On-site
MYR 320,000 - 520,000
Manager – ICT Governance & Compliance
Manager – ICT Governance & Compliance

Scicom MSC Berhad • Kampung Cendana

On-site
MYR 71,000 - 85,000
Salary up to RM7000
Medical insurance
Medical and hospitalization leaves
+1