Job Purpose
The role is responsible for safeguarding Prasarana's information technology (IT and operational technology (OT systems from cyber threats. This role ensures the integrity, confidentiality, and availability of critical digital and operational assets by developing and implementing robust cybersecurity strategies. The manager will lead a team of cybersecurity professionals, conduct risk assessments, and ensure compliance with industry standards and regulations, thereby supporting Prasarana's overall mission and operational goals. As a Cybersecurity IT/OT Manager, he/she will lead and manage the day-to-day activities of the IT and OT cybersecurity operations team, ensuring the continuous monitoring, detection, and response to cybersecurity threats. The role is critical in maintaining Prasarana's security posture and responding effectively to incidents or potential threats.
Key Accountabilities
- Develop and Implement Security Strategies: Design and execute comprehensive cybersecurity strategies tailored to both IT and OT environments, aligning with Prasarana goals and regulatory requirements.
- Technology Deployment: Oversee the deployment and maintenance of security tools and technologies, including firewalls, intrusion detection systems, and encryption solutions.
- Risk Assessment and Management: Identify, assess, and prioritize cybersecurity risks within IT and OT systems; develop mitigation strategies to address identified vulnerabilities.
- Policy Development: Establish, update, and enforce cybersecurity policies and procedures to ensure robust protection of digital and operational assets.
- Incident Response: Lead the development and execution of incident response plans; coordinate investigations and remediation efforts for security incidents.
- Team Leadership: Manage and mentor a team of cybersecurity professionals; provide guidance and support for their professional development.
- Collaboration: Work iclosely with IT, operations, compliance, and other departments to integrate cybersecurity measures seamlessly into all processes.
- Compliance and Audit: Ensure adherence to relevant cybersecurity regulations and standards; prepare for and manage internal and external audits.
- Continuous Improvement: Stay abreast of emerging cybersecurity threats and technologies; recommend and implement enhancements to security posture.
- Third Party Coordination: Coordinate with external vendors and partners to ensure the security of third-party systems and services.
Qualifications, Skills & Knowledge
- Bachelor's degree in Cybersecurity, Information Technology, or equivalent. Professional certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or similar certifications are highly desirable.
- Minimum 10 years of relevant experience.
- Cybersecurity Strategy & Risk Management.
- IT & OT Security Architecture & Controls.
- Incident Response & Threat Management.
- Compliance & Regulatory Knowledge.