Talent.com
Application Security Manager
Application Security ManagerGreat Eastern • Kuala Lumpur, Kuala Lumpur, Malaysia
Application Security Manager

Application Security Manager

Great Eastern • Kuala Lumpur, Kuala Lumpur, Malaysia
1 day ago
Job description

The Manager, Application Security is responsible for strengthening our enterprise application security posture. This is a hands‑on individual contributor role responsible for performing penetration testing, secure code review, software composition analysis, container image assurance, and vulnerability assessments, as well as managing findings and supporting compliance with financial industry regulations. The role requires strong technical expertise, practical testing skills, and familiarity with regulatory requirements such as MAS TRM Guidelines and BNM RMiT Policy Document.

Responsibilities

  • Conduct penetration testing for web, mobile, and API applications.
  • Perform secure code reviews, software composition analysis, and container image assurance to identify vulnerabilities early in the SDLC.
  • Perform vulnerability assessments for applications, middleware, and supporting systems.
  • Utilise industry-standard tools such as Burp Suite, OWASP ZAP, Fortify, Checkmarx, Black Duck, Nessus, Aqua and Qualys.
  • Triage, validate, and prioritise security findings from security assessments.
  • Work with development, DevOps, and infrastructure teams to ensure timely remediation.
  • Track and report remediation progress, ensuring closure within timelines required by regulatory instruments and Technology Security Standards.
  • Provide guidance to developers and project teams on secure coding practices.
  • Embed application security controls and tools (SAST, DAST, SCA, IAST) into CI / CD pipelines.
  • Maintain security documentation and provide evidence for audits and regulatory reviews.
  • Ensure compliance with internal policies, regulatory obligations, and industry best practices.
  • Support audits, risk assessments, and regulatory inspections involving application security.

Qualifications

  • Bachelor’s degree in Information Security, Computer Science, or related field.
  • Professional certifications such as CREST, OSCP+, OSEP, or GPEN.
  • 7+ years of IT security experience, with at least 4 years of direct experience in project‑based and annual penetration testing for web, mobile, and API applications.
  • Experienced in secure code reviews, software composition analysis, container image assurance, and vulnerability assessments.
  • Strong technical knowledge of web, mobile, and API security, including OWASP Top 10 and common attack vectors.
  • Hands‑on expertise with security testing tools mentioned above.
  • Working knowledge of MAS TRM, MAS Cyber Hygiene, and BNM RMiT requirements.
  • How you succeed

  • Champion and embody our Core Values in everyday tasks and interactions.
  • Demonstrate high level of integrity and accountability.
  • Take initiative to drive improvements and embrace change.
  • Take accountability of business and regulatory compliance risks, implementing measures to mitigate them effectively.
  • Keep abreast with industry trends, regulatory compliance, and emerging threats and technologies to understand and highlight potential concerns / risks to safeguard our company proactively.
  • Who we are

    Founded in 1908, Great Eastern is a well‑established market leader and trusted brand in Singapore and Malaysia. With over S$100 billion in assets and more than 16 million policyholders, including 12.5 million from government schemes, it provides insurance solutions to customers through three successful distribution channels – a tied agency force, bancassurance, and financial advisory firm Great Eastern Financial Advisers. The Group also operates in Indonesia and Brunei.

    The Great Eastern Life Assurance Company Limited and Great Eastern General Insurance Limited have been assigned the financial strength and counterparty credit ratings of “AA‑” by S&P Global Ratings since 2010, one of the highest among Asian life insurance companies. Great Eastern’s asset management subsidiary, Lion Global Investors Limited, is one of the leading asset management companies in Southeast Asia.

    Great Eastern is a subsidiary of OCBC, the longest established Singapore bank, formed in 1932. It is the second largest financial services group in Southeast Asia by assets and one of the world’s most highly‑rated banks, with an Aa1 rating from Moody’s and AA‑ by both Fitch and S&P. Recognised for its financial strength and stability, OCBC is consistently ranked among the World’s Top 50 Safest Banks by Global Finance and has been named Best Managed Bank in Singapore by The Asian Banker.

    Recruitment Agency Notice

    To all recruitment agencies : Great Eastern does not accept unsolicited agency resumes. Please do not forward resumes to our email or our employees. We will not be responsible for any fees related to unsolicited resumes.

    Seniority level : Mid‑Senior level

    Employment type : Full‑time

    Job function : Information Technology

    Industries : Banking and Financial Services

    #J-18808-Ljbffr

    Create a job alert for this search

    Security Manager • Kuala Lumpur, Kuala Lumpur, Malaysia

    Related jobs
    Technical Project Manager - Security Services

    Technical Project Manager - Security Services

    Arbitrum • Kajang Municipal Council, Selangor, Malaysia
    Founded in 2015 with the mission to protect the open economy, OpenZeppelin is the world leader in securing blockchain applications and smart contracts. Our Open-Source Contract Libraries are a publi...Show more
    Last updated: 30+ days ago • Promoted
    M / AD - Enterprise Security Architect - TRC (Petaling Jaya)

    M / AD - Enterprise Security Architect - TRC (Petaling Jaya)

    KPMG Malaysia • Petaling Jaya, Selangor, Malaysia
    M / AD - Enterprise Security Architect - TRC (Petaling Jaya).Join KPMG Malaysia as an Enterprise Security Architect in Petaling Jaya. You will design, implement and maintain enterprise security archit...Show more
    Last updated: 30+ days ago • Promoted
    Lead Engineer

    Lead Engineer

    Soft Space Sdn Bhd • Seremban, Negeri Sembilan, Malaysia
    We are seeking a technically strong leader based in Malaysia to head our North America region projects.The Lead Engineer will take ownership of regional delivery, technical solutioning, and team le...Show more
    Last updated: 26 days ago • Promoted
    Strategic Banking Solutions Architect — Cloud & Security

    Strategic Banking Solutions Architect — Cloud & Security

    alrajhi bank Malaysia • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading financial institution in Kuala Lumpur is seeking a Solutions Architect to design and implement scalable technology solutions that meet business needs. The ideal candidate will have over 5 ...Show more
    Last updated: 1 day ago • Promoted
    Intune & Endpoint Management Architect - Autopilot Security

    Intune & Endpoint Management Architect - Autopilot Security

    MRP Group • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading IT consulting firm in Kuala Lumpur is seeking an experienced Intune Specialist to design and implement a secure and scalable endpoint management environment across multiple platforms.The ...Show more
    Last updated: 1 day ago • Promoted
    Pre-Opening Safety & Security Director

    Pre-Opening Safety & Security Director

    Hilton • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading global hospitality company is seeking a Director of Safety & Security in Kuala Lumpur to oversee safety operations and ensure compliance with safety regulations.This role involves managin...Show more
    Last updated: 1 day ago • Promoted
    Senior SAP Basis + AWS Security Architect

    Senior SAP Basis + AWS Security Architect

    PEOPLE PROFILERS • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading recruitment company is seeking a Senior SAP BASIS and AWS specialist in Kuala Lumpur.The role involves managing SAP landscapes, optimizing AWS cloud infrastructures, and ensuring security...Show more
    Last updated: 4 days ago • Promoted
    Resort Operations Leader : Guest Experience & Efficiency

    Resort Operations Leader : Guest Experience & Efficiency

    Private Advertiser • Nilai, Negeri Sembilan, Malaysia
    A leading resort operator in Malaysia is seeking an experienced Resort Operations Manager to oversee daily operations and ensure exceptional guest experiences. The ideal candidate will have strong l...Show more
    Last updated: 4 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    CARSOME • Kuala Lumpur, Kuala Lumpur, Malaysia
    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Be among the first 25 applicants. Get AI-powered advice on this job and more exclu...Show more
    Last updated: 17 days ago • Promoted
    Information Security Engineer

    Information Security Engineer

    R Systems • Kuala Lumpur, Kuala Lumpur, Malaysia
    R Systems WP, Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Information Security Engineering Lead.Acts as a team leader providing guidance to the Security Engineering team, sets goals a...Show more
    Last updated: 6 days ago • Promoted
    Azure Architect (AI Adoption / Security)

    Azure Architect (AI Adoption / Security)

    Softenger (Malaysia) Sdn Bhd • Sepang, Selangor, Malaysia
    Job Title : AI Architect (Adoption / Security).We are hiring for key roles to support a major enterprise‑scale AI transformation program. Candidates will work closely with business and IT teams to driv...Show more
    Last updated: 4 days ago • Promoted
    Regional Head, Malaysia & KLIA Hub

    Regional Head, Malaysia & KLIA Hub

    Malaysia Airlines • Sepang, Selangor, Malaysia
    Regional Head, Malaysia & KLIA Hub.Senior Manager, Line Operations Management.The Regional Head, Malaysia & KLIA Hub is responsible for ensuring safe, secure, and cost-effective airport operations ...Show more
    Last updated: 1 day ago • Promoted
    Security Engineer

    Security Engineer

    Ensign InfoSecurity • Kuala Lumpur, Kuala Lumpur, Malaysia
    Manage the ticketing system and ensure all tickets are up to date with the latest information / updates.Handles customers’ calls / escalation and performs 1st & 2nd level troubleshooting and resolution...Show more
    Last updated: 6 days ago • Promoted
    Remote Technical Project Manager - Blockchain Security

    Remote Technical Project Manager - Blockchain Security

    Placeholder • Sepang, Sepang, Malaysia
    A leading technology firm is seeking an experienced Technical Project Manager in Shah Alam, Malaysia.You will manage client relationships, ensure project delivery, and work with cutting-edge blockc...Show more
    Last updated: 4 days ago • Promoted
    Regional Engagement Lead — Global Cybersecurity (Remote)

    Regional Engagement Lead — Global Cybersecurity (Remote)

    Positka • Klang Municipal Council, Klang Municipal Council, Malaysia
    A boutique consulting firm is seeking a Regional Engagement Manager in Kuala Lumpur.This role requires 7+ years of experience in Project Management and fluency in Mandarin for client communication ...Show more
    Last updated: 3 days ago • Promoted
    Centre Manager

    Centre Manager

    Knight Frank Property Management • Sepang, Selangor, Malaysia
    As a Centre Manager, your responsibilities include but are not limited to : .Plan, manage, and supervise day-to-day operations of the industrial / site, including building maintenance, housekeeping, se...Show more
    Last updated: 4 days ago • Promoted
    Senior E&C Risk Governance Lead - Remote

    Senior E&C Risk Governance Lead - Remote

    Oman Shell • Sepang, Selangor, Malaysia
    A leading energy company located in Cyberjaya is seeking an E&C Risk Governance Lead to manage E&C risk management processes, improving frameworks and reporting for stakeholder engagement.The ideal...Show more
    Last updated: 5 days ago • Promoted
    Resort Operations, Manager / Senior Manager / Director

    Resort Operations, Manager / Senior Manager / Director

    Private Advertiser • Nilai, Negeri Sembilan, Malaysia
    Resort Operations, Manager / Senior Manager / Director.The Resort Operations Senior Manager oversees the daily operations of the resort to ensure exceptional guest experiences, efficient workflow, and ...Show more
    Last updated: 4 days ago • Promoted