Talent.com
This job offer is not available in your country.
Cybersecurity Governance & Process Analyst

Cybersecurity Governance & Process Analyst

NexperiaKuala Lumpur, Kuala Lumpur, Malaysia
11 days ago
Job description

Cybersecurity Governance & Process Analyst page is loaded## Cybersecurity Governance & Process Analystlocations : Kuala Lumpurtime type : Full timeposted on : Posted Todayjob requisition id : R-

  • About the role
  • The Cybersecurity Governance & Process Analyst is a key role responsible for establishing, maintaining, and overseeing the cybersecurity governance framework and operational processes across the organization.This position ensures that cybersecurity risks are properly identified, assessed, and managed in alignment with business objectives and regulatory requirements. The analyst focuses on developing and implementing effective cybersecurity policies, procedures, and controls while managing the enterprise risk register and driving audit findings to closure.
  • What you will do
  • Cybersecurity Governance Framework :
  • Develop, implement, and maintain the organization's cybersecurity governance framework
  • Ensure alignment with industry standards (NIST, ISO 27001, CIS Controls) and regulatory requirements
  • Establish and maintain cybersecurity policies, standards, and guidelines
  • Enterprise Risk Management :
  • Maintain and update the enterprise cybersecurity risk register
  • Conduct regular risk assessments and facilitate risk treatment plans
  • Monitor and report on cybersecurity risk posture to senior management
  • Process Development & Implementation :
  • Design, document, and implement cybersecurity processes and procedures
  • Develop and maintain process documentation, workflows, and SOPs
  • Ensure process integration across security domains and business units
  • Audit & Compliance Management :
  • Manage internal and external cybersecurity audits
  • Track audit findings and coordinate remediation activities
  • Prepare compliance reports and metrics for management review
  • Metrics & Reporting :
  • Develop and monitor cybersecurity governance metrics and KPIs
  • Prepare regular reports on governance effectiveness and compliance status
  • Analyze trends and recommend improvements to the governance program
  • Skills / Competencies
  • Technical & Functional Competencies :
  • Deep, practical knowledge of NIST CSF, NIST 800-53, ISO 27001, and CIS Critical Security Controls.
  • Superior skill in writing clear, concise, and enforceable policies, standards, and procedures.
  • Proficiency in risk assessment methodologies (e.g., NIST RMF, FAIR) and risk register management.
  • Hands-on experience with GRC platforms (e.g., ServiceNow IRM, RSA Archer, MetricStream) to automate workflows.
  • Strong understanding of audit processes and compliance requirements across multiple regulations.
  • Leadership & Soft Skills :
  • Exceptional ability to build consensus, socialize ideas, and influence change across technical and business teams without direct authority.
  • Ability to translate technical controls and risks into business terms for leadership and legal / compliance teams.
  • Strong organizational skills to manage multiple parallel workstreams and policy review cycles.
  • Attention to detail and process-oriented mindset
  • What you will need
  • Bachelor’s degree in computer science, Cybersecurity, or related field, or equivalent practical experience.
  • 5-8 years in cybersecurity governance, risk management, or compliance roles
  • Relevant industry certifications (e.g. CISSP, CISM, CRISC, CISA, CGEIT, ISO 27001 Lead Auditor / Implementer)
  • Proven, hands-on experience in developing and implementing an enterprise cybersecurity policy framework from the ground up.
  • Demonstrable experience in managing cybersecurity risk registers and facilitating risk assessments.
  • Direct experience supporting external audits and managing remediation plans.
  • Governance Framework :
  • Accountable for the development, maintenance, and effectiveness of the cybersecurity governance framework
  • Risk Management :
  • Accountable for maintaining the enterprise cybersecurity risk register and ensuring risks are properly documented and treated
  • Process Compliance :
  • Accountable for ensuring cybersecurity processes and procedures are documented, implemented, and followed across the organization
  • Audit Management :
  • Accountable for tracking and ensuring timely closure of all cybersecurity audit findings and compliance gaps
  • Reporting Accuracy :
  • Accountable for the accuracy and timeliness of cybersecurity governance reporting to management and relevant committees
  • Policy Management :
  • Accountable for the regular review and update of cybersecurity policies and standards to ensure ongoing relevance and effectiveness
  • Talent acquisition based on Nexperia vacancies is not appreciated. Nexperia job adverts are Nexperia copyright material and the word Nexperia is a registered trademark.
  • D&I Statement
  • As an equal-opportunity employer, Nexperia values diversity not just because it is the right thing to do but because diverse teams perform better. We are dedicated to being inclusive, and a proof point of this dedication is that we were the main partner of the very first Dutch Paralympic Team NL House during the Paris 2024 Paralympic Games. Our recruitment process is inclusive and accessible to all, and we consider all applicants fairly, as well as providing a safe work environment and reasonable adjustments where requested.In addition, we offer our colleagues the possibility to join employee resource groups such as the Pride Network Group or global and local Women's groups. Nexperia is committed to increasing women in management positions to 30% by 2030.

#J-18808-Ljbffr

Create a job alert for this search

Cybersecurity Analyst • Kuala Lumpur, Kuala Lumpur, Malaysia

Related jobs
  • Promoted
Regional Senior Data Security Specialist

Regional Senior Data Security Specialist

ZUS COFFEESubang Jaya, Selangor, Malaysia
Regional Data Protection & Compliance.Data Privacy Impact Assessments (DPIAs).Serve as a key contact for regional compliance initiatives and audits related to data protection.Security Architecture ...Show moreLast updated: 30+ days ago
  • Promoted
Ubuntu Security Engineer

Ubuntu Security Engineer

CanonicalSeremban, Negeri Sembilan, Malaysia
Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Join or sign in to find your next job.Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Be among the first 25 a...Show moreLast updated: 30+ days ago
  • Promoted
SOC - Threat Hunter

SOC - Threat Hunter

DXC Technology Inc.Petaling Jaya, Selangor, Malaysia
DXC Technology helps global companies run their mission-critical systems and operations while modernizing IT, optimizing data architectures, and ensuring security and scalability across public, pri...Show moreLast updated: 30+ days ago
  • Promoted
Network Security Engineer

Network Security Engineer

DellSepang, Selangor, Malaysia
The Dell Security & Resiliency organization manages the security risk across all aspects of Dell’s business.You will have an excellent opportunity to influence the security culture at Dell and furt...Show moreLast updated: 2 days ago
  • Promoted
Senior Penetration Tester

Senior Penetration Tester

Commerz Global Service SolutionsKepong, Kuala Lumpur, Malaysia
As part of the Kuala Lumpur based Offensive Security team, you will be responsible for planning, conducting penetrations tests across Commerzbank Group, documenting the results and providing adviso...Show moreLast updated: 2 days ago
  • Promoted
SOC - Threat Hunter

SOC - Threat Hunter

DXC TechnologyPetaling Jaya, Selangor, Malaysia
The Threat Hunter is responsible for proactively identifying advanced threats that evade automated security defenses.By leveraging threat intelligence, hypothesis-driven investigation, and advanced...Show moreLast updated: 30+ days ago
  • Promoted
T&T Consultant - Cyber Defense & Resilience - SG

T&T Consultant - Cyber Defense & Resilience - SG

Deloitte PLTKuala Lumpur, Kuala Lumpur, Malaysia
Are you ready to unleash your potential? At Deloitte, our purpose is to make an impact that matters for our clients, our people, and the communities we serve. We believe in delivering purpose-led gr...Show moreLast updated: 30+ days ago
  • Promoted
Lead Consultant (FortiGuard Incident Response) - APAC

Lead Consultant (FortiGuard Incident Response) - APAC

Fortinet, Inc.Kuala Lumpur, Kuala Lumpur, Malaysia
Location : Malaysia (Kuala Lumpur), Hong Kong, Singapore.Join Fortinet, a cybersecurity pioneer with over two decades of excellence, as we continue to shape the future of cybersecurity and redefine ...Show moreLast updated: 30+ days ago
  • Promoted
Web3 Senior Security Engineer

Web3 Senior Security Engineer

Hyphen ConnectPort Klang, Port Klang, Malaysia
We are working with a decentralised exchange which looks to innovate on providing the best of CEXs and DEXs, focusing on building a safe, simple and scalable platform for trading.They differentiate...Show moreLast updated: 30+ days ago
  • Promoted
IT Security Engineer

IT Security Engineer

BJAKPetaling Jaya, Selangor, Malaysia
We are looking for an experienced.This is a critical role focused on protecting BJAK’s systems, devices, and data from internal and external threats. As a tech-driven company, ensuring the security ...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

RHB BankKuala Lumpur, Kuala Lumpur, Malaysia
To be part of Cyber Threat team, tier 3 SME and mentor to the SOC team.This role requires continuous detection, analysis, investigation, response, and mitigation of advanced threats before they aff...Show moreLast updated: 2 days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

IRIS Corporation BerhadKuala Lumpur, Kuala Lumpur, Malaysia
This Cyber Security Engineer role involves protecting computer systems and networks, developing and maintaining Information Security Plans and Policies, and planning and carrying out an organizatio...Show moreLast updated: 8 days ago
  • Promoted
Senior Penetration Tester

Senior Penetration Tester

Agensi Pekerjaan Reeracoen Malaysia Sdn. Bhd.Seremban, Negeri Sembilan, Malaysia
As part of the Kuala Lumpur based Offensive Security team, you will be responsible for planning, conducting penetrations tests across our company, documenting the results and providing advisory on ...Show moreLast updated: 4 days ago
  • Promoted
L1 Cyber Security Engineer (Hybrid – Onsite & Remote)

L1 Cyber Security Engineer (Hybrid – Onsite & Remote)

EM INDUSTRIAL AUTOMATION SDN. BHD.Nilai, Negeri Sembilan, Malaysia
The L1 Security Engineer plays a critical role in the successful onboarding, maintenance, and operational health of our security technology stack. You will work closely with the SOC, Customer Succes...Show moreLast updated: 2 days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

RHB Banking GroupSelangorMalaysia, Selangor, Malaysia
To be part of Cyber Threat team, tier 3 SME and mentor to the SOC team.This role requires continuous detection, analysis, investigation, response, and mitigation of advanced threats before they aff...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

IRIS CorporationKuala Lumpur, Kuala Lumpur, Malaysia
Protecting computer systems and networks.Develop & maintain Information Security Plans and Policies with yearly review or as need arise. Develop & maintain hardening checklist by adopting industrial...Show moreLast updated: 2 days ago
  • Promoted
L1 Cybersecurity Engineer

L1 Cybersecurity Engineer

Logicalis Asia PacificKuala Lumpur, Kuala Lumpur, Malaysia
Get AI-powered advice on this job and more exclusive features.Conduct health checks, onboard log sources, validate logs, and escalate anomalies across SIEM platforms like Microsoft Sentinel, QRadar...Show moreLast updated: 30+ days ago
  • Promoted
Threat Intelligence Lead

Threat Intelligence Lead

CanonicalKuala Lumpur, Kuala Lumpur, Malaysia
Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Join or sign in to find your next job.Continue with Google Continue with Google. Canonical Kuala Lumpur, Federal Territory of Kual...Show moreLast updated: 30+ days ago
  • Promoted
Senior Security Engineer Sec Ops

Senior Security Engineer Sec Ops

Barry CallebautPetaling Jaya, Selangor, Malaysia
Senior Security Engineer SecOps,.Director of Security Operations.Your responsibilities will include coordinating incident response, improving security configurations and integrations of the SOC too...Show moreLast updated: 30+ days ago
  • Promoted
Linux Cryptography and Security Engineer

Linux Cryptography and Security Engineer

CanonicalKlang City, Selangor, Malaysia
Linux Cryptography and Security Engineer.Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.This is a unique opportunity to use your software engineering and cryptography skills to...Show moreLast updated: 8 days ago