Information Technology Security Analyst (Assistant Manager)
export-import bank of malaysia berhad (exim bank)- Posted 8 hours ago
- Be among the first 10 applicants
Job Description
Company Description Export-Import Bank of Malaysia Berhad (EXIM Bank) is a government-owned Development Financial Institution established in 1995 to provide financing and takaful solutions for cross-border ventures. The Bank supports reverse investment and the export of strategic sectors including capital goods, infrastructure projects, shipping, and value-added manufactured products. EXIM Bank plays a key role in facilitating Malaysian companies entry into new and non-traditional markets. Effective 1 May 2025, EXIM Bank became a subsidiary of Bank Pembangunan Malaysia Berhad (BPMB), which is wholly owned by MOF Inc., strengthening its mandate and institutional support.
Role Description The Information Technology Security Analyst (Assistant Manager) is a full-time, on-site role based in Kuala Lumpur City. The role is responsible for monitoring, analyzing, and enhancing the Bank's security posture across applications, networks, and information systems. Daily tasks include reviewing security alerts, conducting incident investigations, coordinating remediation efforts, and ensuring adherence to security policies and regulatory requirements. The role involves performing vulnerability assessments, supporting secure configuration and change management, and collaborating with IT and business units to implement security controls. The analyst also contributes to security awareness initiatives, prepares technical and compliance reports, and assists in developing and maintaining security standards and procedures.
Qualifications
- Strong foundation in Information Technology and Information Security, with the ability to apply best practices in a financial institution environment.
- Demonstrated experience in Cybersecurity, including threat analysis, incident response, and security monitoring.
- Proficiency in Network Security, such as firewall management, intrusion detection/prevention systems, and secure network architecture.
- Experience in Application Security, including secure software lifecycle practices, vulnerability scanning, and remediation for web and enterprise applications.
- Relevant academic qualification in Computer Science, Information Technology, Cybersecurity, or a related field.
- Professional certifications such as CISSP, CISM, CEH, CompTIA Security+, or equivalent are an advantage.
- Knowledge of regulatory and compliance frameworks relevant to financial institutions (e.g., Bank Negara Malaysia guidelines, ISO 27001, PCI DSS) is beneficial.
- Strong analytical, problem-solving, and communication skills, with the ability to work collaboratively with technical and non-technical stakeholders.
More Info
Key Skills
Secure software lifecycle practices
Bank Negara Malaysia guidelines
Remediation for web and enterprise applications
Regulatory and compliance frameworks
