Strategic CISO: Tech Risk & Compliance Lead

Doit

Petaling Jaya

Hybrid

MYR 300,000 - 520,000

Full time

6 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

doit Holdings is seeking a CISO who will own information security and technology risk for its regulated investment platform in Malaysia. You will lead the development of risk frameworks, policies, and controls, and oversee security operations including monitoring, vulnerability management, and incident response.

The role requires 8+ years in information security with 5+ in financial services, CISSP/CISM/CISA, and ISO/IEC 27001 implementation expertise.

Qualifications

  • Requires deep information security background with 8+ years in the field, 5+ in a regulated sector.
  • CISSP, CISM or CISA certifications required.
  • Strong understanding of the SC Guidelines on Technology Risk Management.
  • Experience in cyber security, resilience, cloud and third-party risk.
  • ISO/IEC 27001 implementation through to certification.
  • Degree in CS/IT or equivalent.

Responsibilities

  • Oversee day-to-day technology risk and deliver the board's cyber security strategy.
  • Develop and maintain technology risk, cyber security frameworks, policies and risk appetite.
  • Run security operations including monitoring, vulnerabilities, patch management, access control and data protection.
  • Own incident response from detection to recovery and reporting to the SC.
  • Lead the platform through independent technology validation for registration.
  • Drive ISO/IEC 27001 scoping to certification.
  • Deliver annual cyber security awareness across management and staff.

Skills

Information security
Regulatory compliance
Risk management
Cloud security
Security governance

Education

Degree in Computer Science / Information Technology
CISSP
CISM
CISA
ISO/IEC 27001 Lead Implementer
CRISC
Lead Auditor
SC/BNM technology examination experience

Job description

doit Holdings is seeking a CISO who will own information security and technology risk for its regulated investment platform in Malaysia. You will lead the development of risk frameworks, policies, and controls, and oversee security operations including monitoring, vulnerability management, and incident response.

The role requires 8+ years in information security with 5+ in financial services, CISSP/CISM/CISA, and ISO/IEC 27001 implementation expertise.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Chief Information Security Officer
Chief Information Security Officer

Doit • Petaling Jaya

Hybrid
MYR 300,000 - 520,000
Hybrid Regulatory & Compliance Lead – FinTech
Hybrid Regulatory & Compliance Lead – FinTech

Doit • Petaling Jaya

Hybrid
MYR 120,000 - 190,000
Senior Information Security Manager
Senior Information Security Manager

Randstad Malaysia • Kuala Lumpur

On-site
MYR 180,000 - 300,000
CEO, Regulated Fintech & Investment Platform
CEO, Regulated Fintech & Investment Platform

Doit • Petaling Jaya

Hybrid
MYR 250,000 - 800,000
IT Manager: Cybersecurity & Infrastructure Leader
IT Manager: Cybersecurity & Infrastructure Leader

Private Advertiser • Kuala Lumpur

On-site
MYR 180,000 - 320,000
—
Cyber Risk Strategy Lead — Financial Services (Malaysia)
Cyber Risk Strategy Lead — Financial Services (Malaysia)

Businesslist • Kuala Lumpur

On-site
MYR 270,000 - 330,000
Career stability
Leadership role
Permanent role
CTO: Architect a Scalable Finance Platform
CTO: Architect a Scalable Finance Platform

Doit • Petaling Jaya

Hybrid
MYR 350,000 - 700,000
IT Risk & Cybersecurity Manager
IT Risk & Cybersecurity Manager

Hong Leong Investment Bank • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Senior Information Security Officer (Malaysia/APAC)
Senior Information Security Officer (Malaysia/APAC)

Joinimagine • Kuala Lumpur

On-site
MYR 120,000 - 180,000
Strategic Finance Manager, FP&A & Compliance (Cybersecurity)
Strategic Finance Manager, FP&A & Compliance (Cybersecurity)

Insider Security • Kuala Lumpur

On-site
MYR 150,000 - 210,000
Annual flexi benefits
Health screening reimbursement
18 days annual leave