Job Summary
Director II of the Network Security Management Department (NSMD) will support the Head of Department in the daily operations of NSMD. This role involves planning and managing various matters to strengthen network security, resilience, and reliability. The incumbent will also be responsible for operationalizing strategic initiatives that safeguard the nation's digital assets, protect consumer interests, and align with the National Policy Objectives outlined in CMA98.
Job Responsibilities:
Strategic Leadership & Centre Management:
- Oversee and manage day-to-day operations to ensure effective delivery of cybersecurity capability-building and innovation initiatives.
- Support the Head of Division/Department in strategic planning, operational governance, and performance oversight programmes under NSMD.
- Translate national cybersecurity strategies and MCMC mandates into actionable programmes with measurable outcomes.
Policy, Governance & Framework Development:
- Ensure alignment with CMA98, the Malaysia Cyber Security Strategy, national security directives, and evolving cybersecurity threats.
- Manage the development and operational aspects of the regulatory frameworks on information and network security, aligning with the national policy objectives of the CMA98, the Malaysia Cyber Security Strategy, and other relevant national policies and directives, including the development of the relevant regulatory tools and frameworks.
Security Assessments, Capability Building & Workforce Development:
- Manage, implement, and execute initiatives to promote good governance among industry players, including operationalizing the implementation of security assessments in the industry and Malaysia's Critical National Information Infrastructure (CNII) to maintain continuous security preparedness.
- Oversee the design and rollout of capacity-building programs, technical labs, hands-on exercises, and structured learning pathways.
- Identify skills and capability gaps in the public sector and drive competency frameworks and professional development initiatives.
Innovation, Technology Advancement & Research:
- Manage research, exploration, and testing of advanced cybersecurity technologies together with the support of the research development team, including AI/ML security solutions, quantum-resilient techniques, and advanced threat analytics tools.
- Identify emerging risks and provide recommendations on technology adoption, mitigation strategies, and national readiness enhancements.
Strategic Stakeholder Management & Collaboration:
- Serve as the single point of contact (SPOC) for coordination and collaboration with:
- National Cyber Security Agency (NACSA), Majlis Keselamatan Negara (MKN) and Technology Vendors (strategic technology and capacity-building partner)
- Manage the co-development and delivery of national cybersecurity training programs, workshops, and capability-building initiatives for ministries and government agencies.
- Foster high-impact partnerships with local and international organisations, law enforcement agencies, technology providers, academia, and CNII owners to strengthen national cybersecurity cooperation and information sharing.
Strategic Framework Agreement (SFA) Performance Management:
- Oversee and manage the performance, deliverables, and compliance of the Strategic Framework Agreement (SFA) with Technology Vendors.
- Monitor KPls, service levels, reporting requirements, and governance mechanisms to ensure transparency, accountability, and effective implementation.
- Drive continuous improvement through performance reviews, issue resolution, and alignment of SEA deliverables with evolving national cybersecurity priorities.
Incident Response, Expert Advisory & Technical Support:
- Oversee delivery of cybersecurity expert advisory services for MCMC divisions, government agencies, and CNII sectors.
- Provide escalation-level support for cybersecurity incidents, including incident analysis, response coordination, and technical remediation oversight.
- Maintain the readiness of the team members technical resources to support national incident response operations.
Strategic Project & Programme Management:
- Manage the planning, execution, monitoring, and reporting of all cybersecurity projects and programmes.
- Ensure project deliverables are achieved within scope, timeline, and budget, while aligning with national cybersecurity objectives.
- Oversee stakeholder engagement, procurement processes, and cross-agency programme coordination.
Financial, Resource & Performance Management:
- Manage team financial planning, budget utilization, procurement activities, and optimal resource allocation.
- Oversee organizational performance management, compliance with governance processes, including achievement of KPIs and reporting requirements.
- Ensure strong accountability, transparency, and responsible utilization of funds.
Communications, Outreach & Strategic Representation:
- Manage strategic communications, public outreach, and awareness initiatives related to MCMC programmes and national cybersecurity efforts.
- Represent MCMC at national and international cybersecurity forums, conferences, and policy engagements.
- Prepare high-quality reports, presentations, briefs, and policy insights for senior leadership and inter-agency committees.
Qualification & Work Experience
- Bachelor's Degree in Computer Science, Information Security, Technology, or a related field from a recognized university,
- Minimum 10 years of working experience in regulatory and/or project management and/or information and cyber security domain.
Candidate must be willing to work in MCMC HQ, Cyberjaya.