Search by job, company or skills

System Security Manager

System Security Manager

Hong Leong Bank
Fresher
Not Disclosed
  • Posted 11 hours ago
  • Be among the first 10 applicants

Job Description

If you are looking to excel and make a difference, take a closer look at us…

Overview:

Dual-capacity role managing a system security engineering team while serving as the primary SME and hands-on lead for Privileged Access Management (MasterSAM). Responsible for hardening, optimizing, and governing endpoint, data, PAM, key management, and secure file transfer security across the Bank, regional entities, and business units. Bridges technical execution with governance, audit/RCSA compliance, and operational efficiency.

Responsibilities:


  • People & Capacity Management: Direct and mentor security engineers, balance workload bottlenecks, and plan team capacity.
  • Frameworks & Development: Enforce clear RACI matrices across internal/regional IT, Platform, Security, and Service Desk (FOTS) teams.
  • Drive talent development via the 70:20:10 framework for succession planning.

  • Key, Encryption & SSL: Oversee HSM and ESKM governance drive end-to-end SSL certificate lifecycle automation (e.g., auto-ticketing).
  • Endpoint & Mobile Security: Manage XDR and NBA protection stacks, coordinate pre-deployment health checks with FOTS to ensure total agent registration.
  • File Transfer & Boundary Security: Eliminate single points of failure in secure file transfer environments and modernize legacy platforms with automated malware scanning.
  • System Integrity: Maintain CIS server hardening benchmarks, source code scanning, OS access controls, and vendor PC security checks.

  • Automation & RCSA: Automate routine workflows, auto-ticketing, and access requests streamline RCSAs to remove redundant checks.
  • Health Monitoring & SLAs: Continuously track tool health, agent connectivity (heartbeats), and signature updates across PAM/IAM/XDR/NBA tools. Enforce incident response/resolution SLAs and conduct Root Cause Analyses (RCAs).
  • Lifecycle & Delegation: Manage End-of-Support (EOS) lifecycles for security agents. Offload Level 1 support tasks to regional teams and enforce pre-deployment security mandates.

  • Audit & Baselines: Respond to internal/external audits within set timelines and maintain strict compliance baselines across production/non-production systems. Adhere to Group Compliance, PDPA, AML/CFT, and Code of Conduct.
  • Regional Service Reviews: Conduct regular service reviews, gap analyses, asset inventories, and lead cross-border security centralization initiatives.

  • Act as hands-on administrator and technical authority for enterprise PAM (MasterSAM).
  • Plan and execute MasterSAM architecture separation and migration projects for scalability and security isolation.
  • Design, audit, and maintain access policies, password vaulting, session recording, and credential rotation across Windows and Unix/Linux (Solaris, AIX, RHEL, Euler).
  • Manage L3 escalations and handle integrations with directory services, SIEM, and provisioning workflows.

Skills and Experience We Are Looking For:


  • Bachelor's Degree in Computer Science, Cybersecurity, IT, or related field.

7+ years in system security engineering/operations 2+ years in technical team leadership. Background in banking/financial services preferred.


  • OS/Infra: Solaris, AIX, RHEL, Euler, Microsoft Windows Server.
  • PAM & Security Tools: MasterSAM, SEP, Carbon Black (CBR), JAMF, MaaS360.
  • Encryption & Data: HSM, TecTia, SFTP, SSL management, DLP, malware scan solutions.
  • Scripting/Monitoring: Ability to build/use custom scripts/dashboards for heartbeat and connectivity tracking.

  • CISSP, CISM, or CISA.

For more job opportunities, please go to HLB Careers:

More Info

Key Skills

MaaS360

TecTia

JAMF

malware scan solutions

MasterSAM

SSL management

About Company