Jora Malaysia will close on 9th September 2026. Thank you for being with us, we are cheering you on as you continue your career journey.
Strong work cultureCompetitive Salary
- Lead enterprise cybersecurity architecture and security improvement initiatives across IT and OT environments.
- Analyze cyber threat intelligence and emerging attack techniques to identify organizational risks.
- Correlate threat intelligence, vulnerabilities, and attack methodologies to develop effective defensive strategies.
- Drive vulnerability and threat management programs, including prioritization and remediation of security findings.
- Manage penetration testing engagements and oversee remediation of identified vulnerabilities.
- Lead security monitoring, threat detection, threat hunting, and incident response activities.
- Design and implement security controls to strengthen enterprise security posture.
- Support development of security policies, standards, and governance frameworks.
- Collaborate with GRC teams on risk governance, compliance, and security assessments.
- Conduct vendor and third-party security risk assessments.
- Manage cybersecurity projects, vendors, and cross-functional stakeholders.
- Support security operations across both enterprise IT and OT environments, including OT threat detection and remediation activities.
- Lead enterprise cybersecurity architecture and security improvement initiatives across IT and OT environments.
- Analyze cyber threat intelligence and emerging attack techniques to identify organizational risks.
- Correlate threat intelligence, vulnerabilities, and attack methodologies to develop effective defensive strategies.
- Drive vulnerability and threat management programs, including prioritization and remediation of security findings.
- Manage penetration testing engagements and oversee remediation of identified vulnerabilities.
- Lead security monitoring, threat detection, threat hunting, and incident response activities.
- Design and implement security controls to strengthen enterprise security posture.
- Support development of security policies, standards, and governance frameworks.
- Collaborate with GRC teams on risk governance, compliance, and security assessments.
- Conduct vendor and third-party security risk assessments.
- Manage cybersecurity projects, vendors, and cross-functional stakeholders.
- Support security operations across both enterprise IT and OT environments, including OT threat detection and remediation activities.
A successful Staff IT Security Engineer should have:
- A degree in Information Technology, Cybersecurity, or a related field.
- Strong knowledge of IT security principles and best practices.
- Experience with security tools such as firewalls, intrusion detection systems, and vulnerability scanners.
- Familiarity with regulatory compliance standards and frameworks.
- Proven ability to manage and respond to cybersecurity incidents effectively.
- Analytical thinking and problem-solving skills.
- Excellent communication and teamwork abilities.8+ years of experience in cybersecurity, security engineering, security operations, or security architecture.
- Strong expertise in cyber threat intelligence, attack techniques, incident response, and vulnerability management.
- Hands-on experience with SIEM, EDR/XDR, threat detection, and security monitoring platforms.
- Strong understanding of security architecture, network security, and enterprise security controls.
- Proven experience leading remediation programs and driving risk reduction initiatives.
- Experience managing penetration testing activities and security assessments.
- Working knowledge of IT and OT security environments.
- Familiarity with ISO 27001, ISMS, risk governance, and security policy development.
- Strong stakeholder management, vendor management, and project leadership capabilities.
Preferred Experience
- OT/ICS security experience.
- Experience with NIST, ISA/IEC 62443, or Purdue Model.
- Third-party/vendor security review experience.
- Cloud security experience (Azure, AWS, GCP).
- Security certifications such as CISSP, CISM, GCIH, GCIA, GICSP, or equivalent.
My client is a high-tech regional hub in Penang shaping the future of power through advanced, large-scale manufacturing.
- Competitive salary ranging from MYR 194400 to MYR 237600 annually.
- Comprehensive benefits package.
- Permanent position within a stable industry.