Job Purposes
- Lead and define the IT security strategy across the MIBG region.
- Ensure the confidentiality, integrity, and availability of IT systems and data.
- Oversee regional security operations, governance, risk management, and compliance.
- Provide strategic leadership for IT security initiatives and programs.
- Ensure adherence to global and local security standards, policies, and regulatory requirements.
- Collaborate with business, IT, and regulatory stakeholders to mitigate risks.
- Drive proactive measures to protect organizational assets from cyber threats.
- Mentor and guide regional IT security teams to build capability and resilience.
Job Responsibilities
- Define, implement, and continuously improve the regional IT security strategy.
- Provide guidance and direction to regional IT security teams.
- Ensure adherence to global and local security standards, policies, and regulatory requirements. Conduct periodic reviews and audits.
- Identify, assess, and mitigate IT security risks.
- Lead vulnerability management, threat intelligence, and incident response activities.
- Oversee investigation and resolution of security incidents.
- Develop and execute response plans for critical events.
- Collaborate with business units, IT teams, regulators, and external partners to implement security initiatives.
- Promote cybersecurity awareness programs and ensure training for staff and regional teams.
- Guide the adoption of secure technologies, architecture reviews, and system hardening practices.
- Mentor and develop regional IT security teams.
- Identify talent gaps and succession plans.
Job Requirements
- Bachelor's or Master's degree in Information Technology, Cybersecurity, Computer Science, or related field.
- Strong understanding of IT infrastructure, networking, and cybersecurity principles.
- Minimum 1012 years of progressive experience in IT security, cybersecurity, or risk management roles.
- Proven track record in leading IT security programs and teams, preferably across multiple countries or regions.
- Experience with security governance, incident response, threat management, and regulatory compliance.
- Exposure to financial services or banking environment is highly preferred.
Technical & Professional
- IT security frameworks, cybersecurity practices, risk management, network and application security.
- Incident response, vulnerability management, threat intelligence, and secure architecture review.
- Knowledge of multi-country regulatory compliance (Malaysia, Singapore, Indonesia, India, UK, Philippines, Thailand, Vietnam).
Leadership & Management
- Lead and develop high-performing teams; strategic thinking; project/program management.
- Stakeholder management and decision-making under pressure.
Analytical & Problem-Solving
- Assess risks, identify threats, and implement actionable solutions.
- Anticipate emerging security threats and technology trends.
Behavioral & Personal Attributes
- High integrity, ethical, proactive, resilient, and adaptable.
- Excellent communication and mentoring skills