Senior Manager – Network Security & Identity

World Vision

Kuala Lumpur

Presencial

MYR 240.000 - 360.000

Jornada completa

14 días+
Generador de candidaturas

No envíes un currículum genérico — crea un currículum y una carta de presentación adaptados a este puesto concreto.

Supera los filtros ATS

Descripción de la vacante

World Vision International seeks a Senior Manager – Network Security & Identity to lead Global Technology Services Pillar 2, shaping global network security and IAM strategy with a small team in a zero-trust, cloud-first environment.

You will partner with the CISO and programme managers to deliver secure, resilient connectivity for office and field operations, maturing identity controls across on-premises and cloud platforms.

Formación

  • Bachelor’s or Master’s degree in Computer Science, Engineering, or related field.
  • 7–10 years in IT security, network engineering, or infrastructure with leadership experience.
  • Solid knowledge across network security and IAM; experience with Zero Trust concepts and hybrid cloud.

Responsabilidades

  • Lead global network strategy, architecture, segmentation, performance and resilience.
  • Oversee firewall configuration, VPN, ZTNA and secure remote connectivity.
  • Drive IAM engineering delivery including Entra ID, AWS identity services, PAM and MFA enforcement.
  • Foster security ownership and cross-pillar collaboration within the team.

Conocimientos

Leadership
Network security
IAM
Zero Trust
Cloud security
Stakeholder communication

Educación

Bachelor’s or Master’s degree in Computer Science, Engineering, or related field

Herramientas

Entra ID
Defender for Identity
Conditional Access
Zscaler
Meraki
Portnox

Descripción del empleo

With 75 years of experience, our focus is on helping the most vulnerable children overcome poverty and experience fullness of life. We help children of all backgrounds, even in the most dangerous places, inspired by our Christian faith.

Come join our 31,000+ staff working in nearly 100 countries and share the joy of transforming vulnerable children’s life stories!

Important Information
  • All CVs should be submitted in English.
  • This position is open to local candidates based in any country within the Asia-Pacific region and other eligible neighbouring countries where World Vision International is legally registered to operate.
Job Purpose

The Senior Manager – Network Security & Identity leads Pillar 2 within Global Technology Services (GTS), accountable for the global security, performance, and integrity of network infrastructure and identity services across World Vision International. The pillar owns two interconnected disciplines: network engineering and identity & access management (IAM) — both foundational to WVI's Zero Trust security posture and its AWS-primary cloud environment.

This is a people management role with direct responsibility for a small, specialist team: Network Engineers, the Network Tech Design Lead, IAM Engineers, and the Endpoint Tech Design Lead. The Endpoint Tech Design Lead remains in P2 as design authority for endpoint security architecture and Zero Trust alignment — endpoint engineers report into P3 (Digital Workplace & Enterprise Platform) and are not direct reports of this role. The IAM Project Manager is a temporary matrix role, dotted-line from PMO, and does not form part of this role's permanent direct report structure.

Working closely with the CISO, Head of I&O, and the IAM Programme, this role drives a security-first approach to network design and identity governance — protecting digital access, enabling resilient connectivity across office and field environments, and maturing identity controls across cloud and on-premises platforms.

Key Competencies
  • People-first leadership — develops team members deliberately; adjusts approach to the individual and the moment.
  • Security-first mindset — builds a culture where security ownership is distributed, not centralised in one person.
  • Network and identity convergence — understands that in a Zero Trust model, these two disciplines are inseparable.
  • Field-conscious design — knows that technical decisions have real consequences for staff in difficult operating environments.
  • Collaborative influence — leads through partnership across pillars and programme teams, not territorial ownership.
  • Operational discipline — maintains service quality, governance standards, and stakeholder communication under pressure.
Key Responsibilities
People Leadership
  • Directly manage Network Engineers, the Network Tech Design Lead, IAM Engineers, and the Endpoint Tech Design Lead — setting clear expectations, supporting development, and conducting regular performance conversations.
  • Match your leadership approach to each team member's experience and confidence: provide direction where needed, delegate and trust where earned.
  • Build technical depth and T-shaped skills across the team, aligned to WVI's evolving cloud-native and Zero Trust environment.
  • Coordinate with the IAM Project Manager (temporary project role, matrix from PMO) on delivery priorities, without line management responsibility for that position.
  • Foster a team culture of security ownership, continuous learning, and cross-pillar collaboration.
Network Engineering & Security
  • Own the global network strategy — architecture, segmentation, performance, and resilience — across office and field environments.
  • Oversee firewall configuration, VPN management, Zero Trust network access (ZTNA), and secure remote connectivity.
  • Lead global network operations: performance monitoring, capacity planning, and incident response.
  • Define and enforce network security standards in alignment with WVI's GTD Governance framework and CIS Controls v8.
  • Coordinate network support to regional and field office IT teams, including low-bandwidth and remote operating contexts.
Identity & Access Management
  • Lead IAM engineering delivery within P2, supporting the WVI SDF IAM Programme and the Deloitte engagement commencing September 2026.
  • Oversee IAM engineers responsible for Entra ID, AWS identity services, privileged access management (PAM), and MFA enforcement.
  • Drive Zero Trust identity principles: least privilege, continuous verification, and risk-based access controls.
  • Partner with the IAM Programme Manager and Enterprise Architect (GTD) to ensure engineering delivery aligns with IAM strategy, policy, and the WVI ADS.
  • Govern third-party and vendor identity access — including Vendor Sandbox OU controls for Deloitte, LTIMindtree, and other external partners.
Endpoint Security Architecture (Design Authority)
  • Manage the Endpoint Tech Design Lead as a direct report, providing direction, development, and performance oversight.
  • Maintain P2's design authority for endpoint security — ensuring endpoint standards, policies, and architecture decisions are set in P2, even though endpoint engineers sit in P3.
  • Work with the Endpoint Tech Design Lead to feed endpoint security architecture into WVI's Zero Trust posture — particularly device trust, compliance signalling, and conditional access policy.
  • Coordinate with the P3 Senior Manager / Lead (Digital Workplace & Enterprise Platform) to ensure endpoint engineers implement P2-defined standards consistently.
  • Ensure endpoint security standards are documented and aligned to the WVI ADS and CIS Controls v8.
Operations & Governance
  • Act as the senior escalation point for P2 major incidents, critical security risks, and complex operational issues.
  • Oversee P2 service-level performance, compliance reporting, and vendor engagement — balancing value with managed risk.
  • Apply FinOps principles to P2 operations: optimise tooling, licensing, and service costs without compromising security posture.
  • Represent P2 in GTS leadership forums, security governance bodies, and the Zero Trust Steering Group.
  • Champion Agile ways of working and DevSecOps practices across the P2 team, consistent with GTS-wide standards.
Knowledge/Qualifications For The Role
Required Education, training, license, registration, and/or Certification
  • Bachelor’s or Master’s degree in Computer Science, Engineering, or related field
Required Professional Experience
  • 7 – 10 years in IT security, network engineering, or infrastructure, with at least 4 years in a senior leadership role.
  • Solid working knowledge across network security and identity & access management.
  • Hands-on experience with Zero Trust concepts and their application in a hybrid cloud environment.
  • Experience with Microsoft security tooling: Entra ID, Defender for Identity, and conditional access.
  • Familiarity with enterprise network security: firewall management, ZTNA/VPN, and network segmentation.
  • Demonstrated ability to manage and develop a small technical team.
  • Clear communicator — able to translate security risk for both technical and non-technical stakeholders.
  • Working knowledge of CIS Controls v8, NIST CSF, or ISO 27001.
  • Deep expertise across both network security and IAM, with demonstrated ownership of enterprise-scale implementations.
  • Experience engaging with or supporting a large-scale IAM programme (Entra ID, PAM, MFA at enterprise scale).
  • Comfortable operating at the intersection of engineering delivery and security governance — shaping policy, not just implementing it.
  • Track record of cross-functional influence: working across pillars, programmes, and vendor partners to drive outcomes.
Required Language(s)
  • Excellent command of spoken and written English, with the ability to communicate clearly and effectively with diverse stakeholders.
Preferred Experience, Knowledge And/or Other Qualifications
  • Relevant certifications: CISSP, CISM, Microsoft Security certifications, CCNP/CCIE, or equivalent.
  • Experience in an INGO, NGO, or mission-driven organisation operating across multiple regions.
  • Familiarity with Zscaler (SASE/ZTNA), Meraki, or Portnox in enterprise environments.
  • Exposure to FinOps disciplines and technology cost governance.
  • AWS networking and identity experience or certifications.
Applicant Types Accepted

Local Applicants Only

World Vision is a Christian humanitarian organisation with a mission centred on following Jesus Christ in service to the world´s most vulnerable children. Therefore, in all locations to the fullest extent legally permissible, the successful applicant will affirm our core documents, observe conduct compatible with Christian principles, serve at a high level of professional ethics and strive to act in accordance with cultural sensitivities. Furthermore, regular attendance with team and office devotions, chapel and prayer gatherings are expected in line with policies in the World Vision host location and its departments.

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Global Network Security & Identity Leader (Zero Trust)
Global Network Security & Identity Leader (Zero Trust)

World Vision • Kuala Lumpur

Presencial
MYR 240.000 - 360.000
Partnership Lead, Kuching
Partnership Lead, Kuching

World Vision Malaysia Bhd • Petaling Jaya

Presencial
MYR 120.000 - 180.000
Senior Network Engineer, Global
Senior Network Engineer, Global

Vantage Data Centers • Malasia

Presencial
MYR 180.000 - 320.000
Health benefits
Above market compensation
Training & development
+1
Partnership Lead (Kuching, Sarawak)
Partnership Lead (Kuching, Sarawak)

World Vision Malaysia • Kuching

Presencial
MYR 120.000 - 180.000
Senior Network Engineer, Global
Senior Network Engineer, Global

Vantage Data Centers • Cyberjaya

Presencial
MYR 120.000 - 160.000
Comprehensive health benefits
Retirement plans
Paid leave
Senior Network & Server Support Engineer
Senior Network & Server Support Engineer

Tune Protect Group • Kuala Lumpur

Presencial
MYR 120.000 - 180.000
Security Engineer (IAM)
Security Engineer (IAM)

HAVI België • Kuala Lumpur

Híbrido
MYR 120.000 - 180.000
Hybrid Working
Professional Growth
Inclusive Environment
Senior Infrastructure and Cloud Engineer
Senior Infrastructure and Cloud Engineer

Tune Protect Group • Kampung Malaysia Tambahan

Presencial
MYR 180.000 - 240.000
Senior Infrastructure and Cloud Engineer
Senior Infrastructure and Cloud Engineer

Tune Protect Group Berhad • Kuala Lumpur

Presencial
MYR 180.000 - 280.000
Medical
Miscellaneous allowance
Education support
+4
Senior Executive Infrastructure and Cloud Engineering
Senior Executive Infrastructure and Cloud Engineering

Tune Protect Group • Kampung Malaysia Tambahan

Híbrido
MYR 120.000 - 190.000