Talent.com
Information and Network Security GRC Senior Specialist
Information and Network Security GRC Senior SpecialistMaxis • Kuala Lumpur, Kuala Lumpur, Malaysia
Information and Network Security GRC Senior Specialist

Information and Network Security GRC Senior Specialist

Maxis • Kuala Lumpur, Kuala Lumpur, Malaysia
18 hari lalu
Penerangan pekerjaan

Information and Network Security GRC Senior Specialist

Maxis Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

Why does this job exist and why is it critical?

The role oversees compliance and risk management across critical technology systems, ensuring alignment with internal standards (INS / CoP), ISO / IEC 27001, and regulatory requirements. Responsibilities include managing control baselines, third‑party risk, and audit readiness; coordinating regulatory and board reporting; conducting control testing and assurance; and maintaining dashboards and key risk indicators for senior governance forums.

What are you accountable for?

  • INS / CoP Compliance (NCII) : Own the INS / CoP control baseline for critical systems across ISD and Telco Network; maintain the critical systems inventory, scope and control mapping; embed Technology & Cyber Risk Management and Cyber Resilience requirements into technical and procedural controls and SLAs.
  • Management, Regulatory & Board Reporting : Coordinate regulatory submissions (e.g., monthly / half‑yearly dashboards, incident notifications) and provide updates to senior governance bodies (e.g., TGC, ARC); track feedback and actions to closure.
  • ISO / IEC 27001 (ISMS) Governance : Act as control owner / co‑owner for applicable Annex A controls; maintain accurate SoA, risk treatment plans, audit evidence; support internal / external ISMS audits, surveillance, and certification activities.
  • Third‑Party Risk Management (TPRM) : Run end‑to‑end TPRM : vendor tiering, security questionnaires, evidence review, risk scoring, contractual security clauses (Cybersecurity General Policy & Consequence Management), tracking, and escalations for non‑responsive or high‑risk vendors. Ensure subcontractors inherit Maxis security obligations.
  • Control Testing & Assurance : Plan and perform control testing, walk‑throughs and sampling for INS / CoP, PDP, ISO 27001, and TPRM controls; produce clear findings and risk‑based remediation plans with accountable owners and target dates.
  • Metrics, KRIs & Dashboards : Develop and maintain compliance dashboards / metrics (INS / CoP, PDP, ISO 27001, TPRM). Present KRIs / KPIs to management forum, Technology Governance Committee (TGC) and ARC; ensure single source of truth for audit / regulatory evidence.
  • Incident & Resilience Enablement : Advise on incident classification, regulatory notification criteria and evidence capture for ISD & Network; ensure playbooks and runbooks reflect INS / CoP expectations and resilience targets (RTO / MTD).

What do you need to have to fit this role?

  • Bachelor’s degree in Information Security, Computer Science, IT, Risk Management, or related field.
  • Knowledge of INS / CoP, ISO / IEC 27001, and regulatory compliance frameworks.
  • Experience in third-party risk management and vendor security assessments.
  • Ability to manage audits, control testing, and remediation planning.
  • Skilled in compliance reporting, dashboarding, and presenting KRIs / KPIs.
  • Strong stakeholder engagement and communication skills.
  • Relevant certifications (e.g., ISO 27001, CISA, CRISC, CISSP) are an advantage.
  • What’s next?

  • We’ll review your application carefully. Due to a high volume of applications, we appreciate your patience for a timely review process.
  • If shortlisted, you’ll receive an invitation for a digital interview by email. You can also check your application status by logging into your candidate account.
  • Maxis values diverse voices & people. We hire and reward our employees based on capability & performance — regardless of ethnicity, gender, age, education, religion, nationality or physical ability.

    Seniority level

    Mid‑Senior level

    Employment type

    Full-time

    Job function

    Information Technology

    Industries

    IT Services and IT Consulting, Telecommunications, and Business Consulting and Services

    #J-18808-Ljbffr

    Buat amaran kerja untuk carian ini

    Information Security • Kuala Lumpur, Kuala Lumpur, Malaysia

    Pekerjaan berkaitan
    Cybersecurity Strategy Lead - Threat & Compliance

    Cybersecurity Strategy Lead - Threat & Compliance

    senangPay—A DOKU Company • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading technology company in Kuala Lumpur is seeking an IT Security Manager to manage, develop, and maintain the organization's IT security framework. The role involves leading PCI DSS audits, de...Tunjukkan lagi
    Kemas kini terakhir: 1 hari yang lalu • Dinaikkan pangkat
    Associate Technical Consultant (Network & Security)

    Associate Technical Consultant (Network & Security)

    People Profilers • Subang Jaya, Selangor, Malaysia
    Associate Technical Consultant.This role focuses on engaging with clients, understanding their business and technical needs, and delivering solutions that align with their goals across cloud, netwo...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu • Dinaikkan pangkat
    GRC - Specialist (Cybersecurity)

    GRC - Specialist (Cybersecurity)

    Axiata Digital Labs • Kuala Lumpur, Malaysia
    Review practices followed by Monitoring, Incident Response, Platform Engineering, Service Management, Threat Intelligence, Red Teaming and Penetration Testing and ensure they are aligned to GSOC po...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu • Dinaikkan pangkat
    Information Security Manager

    Information Security Manager

    senangPay—A DOKU Company • Kuala Lumpur, Kuala Lumpur, Malaysia
    To manage, develop, and maintain the organization's IT security framework, ensuring the integrity, confidentiality, and availability of information assets while meeting regulatory compliance requir...Tunjukkan lagi
    Kemas kini terakhir: 1 hari yang lalu • Dinaikkan pangkat
    Senior IT Advisory Leader - Governance & Security

    Senior IT Advisory Leader - Governance & Security

    CNM LLP • Kuala Lumpur, Kuala Lumpur, Malaysia
    A technical advisory firm based in Kuala Lumpur is seeking an experienced professional for a full-time role in Information Technology. Responsibilities include conducting IT governance assessments a...Tunjukkan lagi
    Kemas kini terakhir: 1 hari yang lalu • Dinaikkan pangkat
    Senior Executive, Network Security Research (Developer)

    Senior Executive, Network Security Research (Developer)

    Malaysian Communications and Multimedia Commission • Cyberjaya, Selangor, Malaysia
    Senior Executive, Network Security Research (Developer).Deputy Director of Network Security Research leads the development of innovative solutions for security and operational challenges, supervise...Tunjukkan lagi
    Kemas kini terakhir: 2 hari yang lalu • Dinaikkan pangkat
    Assistant General Manager Information Technology & Information Security (Audit) Specialist (Con[...]

    Assistant General Manager Information Technology & Information Security (Audit) Specialist (Con[...]

    Telekom Malaysia • Kuala Lumpur, Kuala Lumpur, Malaysia
    Assistant General Manager Information Technology & Information Security (Audit) Specialist (Contract).This role serves as a subject matter expert and advisor for the unit responsible for overseeing...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu • Dinaikkan pangkat
    Security Architecture Senior Advisor

    Security Architecture Senior Advisor

    Dell Global Business Center Sdn Bhd • Cyberjaya, Selangor, Malaysia
    Security Architecture Senior Advisor - Cybersecurity.The Dell Security & Resiliency organization manages the security risk across all aspects of Dell’s business. We are currently experiencing incred...Tunjukkan lagi
    Kemas kini terakhir: 3 hari yang lalu • Dinaikkan pangkat
    Associate Network Security & OT Infra Engineer

    Associate Network Security & OT Infra Engineer

    Ad Astra Consultants • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading consulting firm in Kuala Lumpur is seeking an Executive Search Leader who will drive business growth for APAC companies by building winning leadership teams. Responsibilities include confi...Tunjukkan lagi
    Kemas kini terakhir: 2 jam yang lalu • Dinaikkan pangkat • Baharu!
    Senior Information Security Specialist - Supply Chain Security

    Senior Information Security Specialist - Supply Chain Security

    bp • Kuala Lumpur, Kuala Lumpur, Malaysia
    Senior Information Security Specialist - Supply Chain Security.BP, Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia. Be among the first 25 applicants.Let Me Tell You About The Role.You will...Tunjukkan lagi
    Kemas kini terakhir: 7 hari yang lalu • Dinaikkan pangkat
    Information Security Engineer

    Information Security Engineer

    R Systems • Kuala Lumpur, Kuala Lumpur, Malaysia
    R Systems WP, Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Information Security Engineering Lead.Acts as a team leader providing guidance to the Security Engineering team, sets goals a...Tunjukkan lagi
    Kemas kini terakhir: 5 hari yang lalu • Dinaikkan pangkat
    Senior Security Engineer

    Senior Security Engineer

    CARSOME • Kuala Lumpur, Kuala Lumpur, Malaysia
    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Be among the first 25 applicants. Get AI-powered advice on this job and more exclu...Tunjukkan lagi
    Kemas kini terakhir: 16 hari yang lalu • Dinaikkan pangkat
    Senior Network Security Architect & Projects Lead

    Senior Network Security Architect & Projects Lead

    Singtel • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading telecommunications company in Kuala Lumpur seeks a Senior Network Security Engineer to design and manage network security projects. The ideal candidate must have 7-8 years of corporate net...Tunjukkan lagi
    Kemas kini terakhir: 5 hari yang lalu • Dinaikkan pangkat
    Operational Security Management Specialist

    Operational Security Management Specialist

    bp • Kuala Lumpur, Kuala Lumpur, Malaysia
    Operational Security Management Specialist.Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Technology is making a difference in bp’s plans to invest in today’s energy system and help buil...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu • Dinaikkan pangkat
    Network Security Specialist — Hybrid, Kuala Lumpur

    Network Security Specialist — Hybrid, Kuala Lumpur

    Marsh McLennan • Kuala Lumpur, Kuala Lumpur, Malaysia
    A multinational professional services firm is looking for a Specialist in Network Operations to join their team in Kuala Lumpur. The role involves maintaining network security integrity, troubleshoo...Tunjukkan lagi
    Kemas kini terakhir: 1 hari yang lalu • Dinaikkan pangkat
    Security Governance, GIS

    Security Governance, GIS

    UOB • Kuala Lumpur, Kuala Lumpur, Malaysia
    Join to apply for the Security Governance, GIS role at UOB.United Overseas Bank Limited (UOB) is a leading bank in Asia with a global network of more than 500 branches and offices in 19 countries a...Tunjukkan lagi
    Kemas kini terakhir: 5 hari yang lalu • Dinaikkan pangkat
    Senior Information Security Specialist

    Senior Information Security Specialist

    Standard Chartered • Kuala Lumpur, Kuala Lumpur, Malaysia
    Senior Information Security Specialist.Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.This role will be part of the Security Vulnerability Lifecycle Management function responsible for d...Tunjukkan lagi
    Kemas kini terakhir: 12 hari yang lalu • Dinaikkan pangkat
    Information Security Specialist (Team Lead) - Identity and Access Management (IAM)

    Information Security Specialist (Team Lead) - Identity and Access Management (IAM)

    Zurich 56 Company Ltd • Kuala Lumpur, Kuala Lumpur, Malaysia
    Select how often (in days) to receive an alert : .Information Security Specialist (Team Lead) - Identity and Access Management (IAM). Job Summary : Lead access services team and manage the organization...Tunjukkan lagi
    Kemas kini terakhir: 5 hari yang lalu • Dinaikkan pangkat