Senior Executive - Data & Digital Governance

Gamuda Group

Kuala Lumpur

On-site

MYR 120,000 - 170,000

Full time

26 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Gamuda Berhad in Malaysia seeks a Senior Executive - Data & Digital Governance with expertise in ISO 27001, ISO 27701, and IT governance to drive enterprise data protection strategies and ensure compliance with GDPR, PDPA and regional laws.

You will align information governance with business objectives, lead cross-functional teams, and promote digital trust through privacy by design, risk-based controls, and ongoing improvement of data management practices.

Qualifications

  • CISA, CGEIT, ISO 27001 & ISO 27701 Lead Auditor certifications preferred.
  • Experience with GDPR, PDPA and related privacy regulations.
  • Knowledge of IT security, incident management and data protection tools.

Responsibilities

  • Define and oversee Information Security policies and ISMS per ISO 27001.
  • Define and oversee Data Management policies and PIMS per ISO 27701.
  • Manage data inventory, data flow mapping, and PIAs/DPIAs.
  • Liaise with regulators, auditors and external stakeholders on data and cybersecurity matters.

Skills

CISA
CGEIT
ISO 27001 Lead Auditor
ISO 27701 Lead Auditor
CRISC
CISSP
PDPA knowledge

Education

Bachelor degree in IT related field

Job description

Senior Executive - Data & Digital Governance

Job Summary

Data & Digital Governance of Gamuda Berhad, the Senior Executive with experience in Information Security (ISO 27001), Data Privacy (ISO 27701), and IT Governance frameworks. Experienced in establishing enterprise-wide data protection strategies, ensuring compliance with global privacy and cybersecurity laws such as the GDPR, PDPA, and other regional data protection regulations in countries such as Malaysia, Singapore, Vietnam, Australia and others.

Strong background in aligning information governance initiatives with organizational objectives, integrating cybersecurity controls, data lifecycle management, and risk-based compliance frameworks to protect corporate assets and stakeholder interests. Skilled in leading cross-functional teams to drive digital trust, regulatory adherence, and continual improvement in information management practices across diverse business environments.

Key Responsibilities
  • ISO Related Matters
    • Define and oversee the execution of information security policies, standards, and controls to safeguard corporate assets.
    • Ensure the implementation, and continual improvement of the Information Security Management System (ISMS) in accordance with ISO/IEC 27001.
    • Conduct risk assessments and ensure mitigation strategies are effectively implemented across business units.
  • Data Governance and Management
    • Define and oversee the execution of Data Management related policies, standards and controls to data/ information of the Gamuda.
    • Implement and maintain the Privacy Information Management System (PIMS) based on ISO/IEC 27701.
    • Drive compliance with global privacy laws and regulations (e.g., GDPR, PDPA) and ensure data subject rights are respected.
    • Oversee data inventory, data flow mapping, and privacy impact assessments (PIAs/DPIAs).
    • Assist DPO for any Data related matters across the group.
    • Serve as the key liaison with regulators, auditors, and external stakeholders on data and cybersecurity matters.
    • Advocate for a culture of security and privacy through continuous awareness and training initiatives.
  • Cybersecurity and Compliance Integration
    • Collaborate with IT and Legal Department to align cybersecurity measures with regulatory requirements.
    • Monitor emerging cyber laws, data protection frameworks, and regulatory trends globally, advising the organization on compliance implications.
    • Manage internal and external audits, regulatory assessments, and certification renewals.
    • Benchmark against global standards and incorporate lessons learned from incidents, audits, and regulatory feedback.
Qualifications

Minimum Bachelor degree in Computer Science, Information Technology, Computer Engineering or its equivalent in IT related field.

Skills & Abilities
  • Candidates holding an ISACA CISA, CGEIT, ISO 27001 & ISO 27701 Lead Auditor, CRISC, CISSP certification are preferred.
  • Experience and knowledge of ISO 27701, PDPA, GDPR and other related privacy regulations are preferred.
  • Knowledge of IT security, incident management, data protection tools, encryption technologies, and DLP mechanisms.
  • Experience with internal/external audit management and compliance monitoring platforms.
Expected Minimum Years of Experience

At least 3 years experience in IT/Governance, compliance, IT Audits, Data management or Information Security.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Data & Privacy Governance Lead
Data & Privacy Governance Lead

Gamuda Group • Kuala Lumpur

On-site
MYR 120,000 - 170,000
Manager – ICT Governance & Compliance
Manager – ICT Governance & Compliance

Scicom MSC Berhad • Kampung Cendana

On-site
MYR 71,000 - 85,000
Salary up to RM7000
Medical insurance
Medical and hospitalization leaves
+1
ASSISTANT MANAGER- DATA PRIVACY & GOVERNANCE
ASSISTANT MANAGER- DATA PRIVACY & GOVERNANCE

JAYA GROCER • Malaysia

On-site
MYR 80,000 - 120,000
Manager – ICT Governance - Compliance
Manager – ICT Governance - Compliance

Scicom (MSC) Berhad • Kuala Lumpur

On-site
MYR 67,000 - 78,000
Salary up to RM7000
Performance related allowance forStaff
Senior Manager, Data Governance
Senior Manager, Data Governance

AIA Hong Kong and Macau • Kuala Lumpur

On-site
MYR 80,000 - 120,000
Lead IT Security Policy | Up to RM14K
Lead IT Security Policy | Up to RM14K

Randstad Malaysia • Kuala Lumpur

On-site
MYR 180,000 - 240,000
Assistant General Manager-General Manager, Group Cybersecurity - Technology Governance
Assistant General Manager-General Manager, Group Cybersecurity - Technology Governance

IOI Properties Group • Putrajaya

On-site
MYR 300,000 - 520,000
Security Governance Assistant Manager
Security Governance Assistant Manager

Boost Holdings Sdn Bhd • Kuala Lumpur

On-site
MYR 150,000 - 210,000
Senior IT Manager (Information Security, Risk & Governance)
Senior IT Manager (Information Security, Risk & Governance)

Alphv Recruit • Kuala Selangor

On-site
MYR 180,000 - 260,000
Cybersecurity & Data Privacy Consultant - DLP & Governance
Cybersecurity & Data Privacy Consultant - DLP & Governance

Randstad Malaysia • Kuala Lumpur

On-site
MYR 90,000 - 150,000