Search by job, company or skills

Aurous Consultancy Sdn Bhd

Information Security (Governance, Risk & Compliance)

Early Applicant
Quick Apply
  • 3 hours ago
  • Be among the first 50 applicants
Exp: 7-10 Years
667 - 833 MYR/m

Insurance,

Life Insurance,

Health Insurance

Job Description

Greetings,

One of our clients, Generali Malaysia, is currently seeking a candidate for the position of Information Security (Governance, Risk & Compliance) located in Kuala Lumpur. The ideal candidate should have at least 5 years of relevant experience.

Client Name: Generali Malaysia

Location: Kuala Lumpur

Position Summary:

The Information Security GRC (Governance, Risk & Compliance) role leads all security GRC initiatives, offering both strategic and hands-on management. The position requires a deep understanding of financial industry regulations (e.g., RMIT, GPIS) and best practices (e.g., NIST, ISO). Responsibilities include managing GRC processes, frameworks, and tools such as Archer, overseeing budgets, and ensuring compliance with security standards. The ideal candidate is a strong leader who mentors a security team and collaborates across the organization, particularly with the CISO.

Key Responsibilities:

Develop and implement reporting frameworks for security metrics and trends.

Manage security violations, risk memos, and compliance exceptions.

Plan and execute security reviews and audits.

Ensure security management policies meet GRC requirements.

Provide guidance on security compliance and regulations.

Conduct risk assessments and develop response plans.

Manage and update security policies and controls.

Align policy strategies with Information Security Leadership.

Collaborate with IT teams to ensure compliance and address risks.

Monitor security controls and address gaps.

Lead security projects to improve compliance.

Work with auditors on compliance issues.

Provide IT risk training and awareness.

Qualifications:

Bachelor's degree in IT.

7-10 years of IT experience, with 8+ years in security, particularly in GRC domains.

Strong experience in technology controls, risk assessment, and policy review.

Security certifications (e.g., CISA, CISM, CRISC, CISSP) are preferred.

Project management experience is a plus.

Strong communication and report-writing skills.

If the above scope aligns with your qualifications, please share your most updated CV along with the following details via WhatsApp:

https://wa.me/60122456834

Thank you!

Skills Required

Login to check your skill match score

Login

Date Posted: 26/11/2024

Job ID: 101508661

Report Job

About Company

Aurous, is an IT company with a passion for innovation, so we are always looking for new ways to make your IT experience better. We'll meet all your IT needs, whether you have a Any change requests, Application development request or you need any expertise in technology consulting.

Recruiter
0 Active Jobs
42 Followers
Follow

Hi , want to stand out? Get your resume crafted by experts.

Similar Jobs

Head IT Security Governance Architecture Banking domain Malaysian

IT Consulting CompanyCompany Name Confidential

Information Security Management

Sciente International Pte LtdCompany Name Confidential