Talent.com
Head of Information Security

Head of Information Security

Boost BankKuala Lumpur, Kuala Lumpur, Malaysia
1 day ago
Job description

Boost Bank Federal Territory of Kuala Lumpur, Malaysia

Head of Information Security

Boost Bank Federal Territory of Kuala Lumpur, Malaysia

The Head of Information Security in the Boost DigiBank is responsible for ensuring the security of the bank's information systems and data, and for managing the bank's overall information security strategy. The Head of Information Security is typically a high‑level executive who reports directly to the Bank's CEO or Board of Directors.

Responsibilities :

  • Formulate and facilitate the implementation of Technology Risk Management Framework (TRMF) and Cyber Resilience Framework (CRF) which are to be aligned to Enterprise Risk Management Framework.
  • Work closely with all relevant business divisions, IT and other support functions to put in place appropriate policies & procedures in place to support & complement TRMF and CRF as well as to ensure compliance with BNM guidelines on information technology (IT) risks.
  • Assess adequacy of IT security & cybersecurity strategy including the employment of effective tools to monitor and enable timely detection of anomalous activities.
  • Responsible for developing and implementing IT Security Assessment (Application, infrastructure, network architecture) and risk management frameworks, policies and including site reviews of branch offices, data centres and vendors.
  • Assess whether enterprise information security architecture and roadmaps are able to support both business and information security objectives and monitor / report on the status of implementation.
  • Develop appropriate technology risk appetite (tolerance levels) and suitable Key Risk Indicators (KRIs) to effectively monitor technology & cyber risks.
  • Review & monitor results of penetration testing / vulnerability assessments / IT audits and monitor / report on status of corrective actions taken.
  • Work closely with System, Network and Application teams for closure of non‑compliance issues, which could be identified through periodic IT Security‑related reviews / audits and controls.
  • Advise and validate the operational IT Security requirements for any technology projects.
  • Assess the reasonableness / practicality of expenditures and capital investments pertaining to the implementation of new technologies.
  • Develop and / or review adequacy of Cyber Incident Response Plan (CIRP), processes, reporting templates and rules to formalise response to incidents involving cyberattacks or disaster.
  • Coordinate with relevant stakeholders on forensic investigations, cybercrimes, and / or cyberattacks and incident response.
  • Coordinate threat management and recovery against cyber threats (e.g., malware, phishing, hacking).
  • Ensure timely reporting IT Security related incidents (cyberattacks, etc.) to senior management, the Board and regulators and participate and contribute from a risk assessment perspective as and when required.
  • Attending to the Board‑level Committee to provide independent views to the board and senior management on technology risks at the enterprise level.

Overall, the CISO plays a critical role in ensuring that the bank's information assets are protected from unauthorized access, theft, or damage, and that the bank's customers can trust the security of their financial transactions and personal information.

Qualifications :

  • Degree in Information Technology (IT), Computer Science or other related discipline with relevant experience in managing cyber risk in financial market infrastructures, critical national infrastructure, military, security intelligence or equivalent.
  • 8+ years of full‑time work experience in information security management and / or related functions (such as IT audit and IT Risk Management).
  • Professional certification such as CISM, CISA, CSXP, CISSP, CREST, GPEN or equivalent is highly desirable.
  • Good understanding of the regulatory frameworks and compliance requirements associated with financial services and thorough understanding of end‑to‑end IT operations and how IT interfaces with business, risk management and compliance processes and IT Security.
  • Must possess excellent interpersonal skills and able to communicate and manage relationship at all levels including senior management, business users, participants, vendors and team members.
  • Ability to communicate security risks in business terms to all levels of the organization.
  • Knowledge of security metrics and Key Security Risk indicators.
  • Seniority level

  • Director
  • Employment type

  • Full‑time
  • Job function

  • Engineering, Information Technology, and Strategy / Planning
  • Industries

  • Banking and Insurance
  • Federal Territory of Kuala Lumpur, Malaysia

    #J-18808-Ljbffr

    Create a job alert for this search

    Information Security • Kuala Lumpur, Kuala Lumpur, Malaysia

    Related jobs
    • Promoted
    Head of Security Operations

    Head of Security Operations

    CanonicalKuala Lumpur, Kuala Lumpur, Malaysia
    Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Get AI-powered advice on this job and more exclusive features. This global leadership role in cyber security is to manage the Secu...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Security Engineering

    Head of Security Engineering

    Krisvconsulting Services Pte LtdKuala Lumpur, Kuala Lumpur, Malaysia
    The Head of Security Engineering will lead the design, implementation, and continuous improvement of the banks security infrastructure. This strategic role is responsible for building secure, scalab...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Security Operations

    Head of Security Operations

    MaxisKuala Lumpur, Kuala Lumpur, Malaysia
    Maxis Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Get AI-powered advice on this job and more exclusive features. We seek an experienced, dynamic leader to head our Security Operations ...Show moreLast updated: 7 days ago
    • Promoted
    Head of Security Governance and Data Protection

    Head of Security Governance and Data Protection

    Krisvconsulting Services Pte LtdKuala Lumpur, Kuala Lumpur, Malaysia
    Head of Security Governance and Data Protection.About the job Head of Security Governance and Data Protection.An ideal candidate will be responsible for overseeing the organisation's data protectio...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Information Security I TNG

    Head of Information Security I TNG

    Touch 'n Go GroupKuala Lumpur, Kuala Lumpur, Malaysia
    We fuel the ideas and ambitions of our people with an environment built on Our DNA of Love, Entrepreneurship, Agility, and Passion – LEAP. We are a culture that empowers everyone to innovate and cre...Show moreLast updated: 27 days ago
    • Promoted
    Information Security Manager – APAC

    Information Security Manager – APAC

    ChubbKuala Lumpur, Kuala Lumpur, Malaysia
    Are you interested in spearheading cybersecurity excellence in a growth and diverse region? Chubb is seeking a seasoned Information Security Manager to lead our information security initiatives acr...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Manager

    Information Security Manager

    Michael PageKuala Lumpur, Kuala Lumpur, Malaysia
    The employer is a growing organization in the Technology & Telecoms industry, known for its innovative solutions and commitment to excellence. Based in Kuala Lumpur, the company operates as a small-...Show moreLast updated: 3 days ago
    • Promoted
    Head of Cyber Security Operations Centre

    Head of Cyber Security Operations Centre

    TIME dotCom BerhadShah Alam, Selangor, Malaysia
    Head of Cyber Security Operations Centre.We are seeking an experienced SOC Manager to lead our Security Operations Centre (SOC). The ideal candidate combines strong people leadership with deep, hand...Show moreLast updated: 15 days ago
    • Promoted
    Information Security Governance & Compliance Lead

    Information Security Governance & Compliance Lead

    Pacific Comnet (M) Sdn BhdKuala Lumpur, Kuala Lumpur, Malaysia
    Information Security Governance & Compliance Lead.Certification & Compliance Governance.Oversee Pacific Internet’s ISO27001 : 2022 certification program and surveillance audits.Govern Acclivis’ trans...Show moreLast updated: 19 days ago
    • Promoted
    VP, Information Security Engineering Lead

    VP, Information Security Engineering Lead

    UOBKuala Lumpur, Kuala Lumpur, Malaysia
    VP, Information Security Engineering Lead.United Overseas Bank Limited (UOB) is a leading bank in Asia with a global network of more than 500 branches and offices in 19 countries and territories in...Show moreLast updated: 7 days ago
    • Promoted
    Head of Information Technology (IT)

    Head of Information Technology (IT)

    The Body ShopSubang Jaya, Selangor, Malaysia
    Title : Head of Information Technology (IT).Department : Information Technology.We are looking for a hands-on, detail-oriented Head of IT to lead the daily operations of our technology infrastructure...Show moreLast updated: 19 days ago
    • Promoted
    Head of Technology and Operations Risk (1LOD)

    Head of Technology and Operations Risk (1LOD)

    Kerry ConsultingKuala Lumpur, Kuala Lumpur, Malaysia
    Head of Technology and Operations Risk (1LOD).Head of Technology & Operations Risk.LOD) risk function, responsible for establishing, executing, and continuously enhancing the risk and control frame...Show moreLast updated: 8 days ago
    • Promoted
    Head, Information Security Engineering

    Head, Information Security Engineering

    AmbitionKuala Lumpur, Kuala Lumpur, Malaysia
    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Head, Information Security Engineering.Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia. Leading regional financial institution.As ...Show moreLast updated: 10 days ago
    • Promoted
    Head, Information Systems and Technology

    Head, Information Systems and Technology

    AHAM Asset Management BerhadKuala Lumpur, Kuala Lumpur, Malaysia
    Head, Information Systems and Technology.The Head of Information Systems and Technology is responsible for leading the strategic planning, implementation, and governance of all technology systems w...Show moreLast updated: 19 days ago
    • Promoted
    Head of Group Cybersecurity & Information Security (SVP Grade)

    Head of Group Cybersecurity & Information Security (SVP Grade)

    Krisvconsulting Services Pte LtdKuala Lumpur, Kuala Lumpur, Malaysia
    The Enterprise Head of Group Cybersecurity & Information Security is a strategic leadership role responsible for safeguarding the banks digital assets, customer data, and infrastructure across all ...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Security APAC

    Head of Security APAC

    Technip EnergiesKuala Lumpur, Kuala Lumpur, Malaysia
    Be part of the solution at Technip Energies and embark on a one-of-a-kind journey.You will help develop cutting‑edge solutions to solve real‑world energy problems. Kuala Lumpur, Federal Territory of...Show moreLast updated: 25 days ago
    • Promoted
    Head of Information Technology Operations

    Head of Information Technology Operations

    NTT DATA Payment ServicesKuala Lumpur, Kuala Lumpur, Malaysia
    Head of Information Technology Operations.Get AI-powered advice on this job and more exclusive features.Direct message the job poster from NTT DATA Payment Services. NTT Data Payment Services is com...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Security Operations

    Head of Security Operations

    Maxis Broadband Sdn BhdKuala Lumpur, Kuala Lumpur, Malaysia
    Add expected salary to your profile for insights.Are you ready to get ahead in your career?.We want to empower you to turn your ambitions into achievements. We thrive in inclusiveness, diversity and...Show moreLast updated: 3 days ago