Jobs Companies Bjak Chief Information Security Officer

À propos de ce poste Chief Information Security Officer chez Bjak

Bjak · Hybride · Malaysia

About the Role

The CISO will own information security and technology risk for doit Holdings, our regulated investment platform in Malaysia, and will be the person the board names as responsible for technology risk under the Securities Commission's Guidelines on Technology Risk Management. Nothing exists yet. The framework, the controls, the monitoring and the evidence all have to be built, and they have to hold up to an independent assessment before the platform can be registered.

What you will be doing

  • Hold the board-appointed responsibility for day-to-day technology risk oversight and for delivering the board's cyber security strategy.

  • Build the technology risk and cyber security frameworks, the risk appetite statement and the policy set beneath them, and keep them approved and current.

  • Run security operations across monitoring, vulnerability and patch management, access control, data protection, cryptography and secure development.

  • Own incident response from detection through recovery, including the report to the SC on the day an incident occurs.

  • Take the platform through the independent technology validation that gates registration, and close what it finds.

  • Take ISO/IEC 27001 from scoping through to certification.

  • Deliver the annual cyber security awareness programme across the board, senior management and staff.

What you will need

  • Deep information security background, with at least 8 years in the field including 5 in financial services or another regulated sector.

  • At least one of CISSP, CISM or CISA. This is a requirement. These are the certifications the SC names as acceptable for the external party who assesses technology risk controls, and the officer who owns those controls should not sit below the standard set for the officer who audits them.

  • Deep command of the SC's Guidelines on Technology Risk Management, operationalised rather than restated.

  • Real depth in cyber security, operational resilience, and cloud and third-party risk.

  • ISO/IEC 27001 implementation experience through to certification.

  • A degree in computer science, information technology, information security or a cognate discipline, and able to meet the SC's fit and proper criteria.

  • ISO/IEC 27001 Lead Implementer or Lead Auditor, CRISC or CCSP, or experience of an SC or BNM technology examination, is useful.

  • Hands-on operating style. Able to review the controls, run the simulation and close the gaps personally.

Location

This is a hybrid role. You are expected to work from our local office at least 3 days per week, with the remaining days offering flexibility to work remotely.

Candidates should be based in, or able to work from, the location where the role is advertised.

Language

English is our main working language across global teams. Strong English communication is required.

Interview Process

Our process is designed to move fast:

1. Introductory conversation

2. Technical and regulatory deep dive

3. CEO / final round

For strong candidates, we aim to complete the process and make an offer within 1 week from the start of the interview process. Candidates who complete assessments quickly will be prioritized.

Prêt à postuler chez Bjak ?
Postuler chez Bjak

Emplois similaires

moomoo
Head of Information Security
moomoo
⚡ Postuler tôt Kuala Lumpur, Federal Territor... Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 sem.
Satispay
Chief Information Security Officer
Satispay
⚡ Postuler tôt Milan, Italy Hybride €120,000–€120,000
● Nouveau 👁 Vu ✓ Postulé il y a 35 min
Zipline
Chief Information Security Officer
Zipline
⚡ Postuler tôt South San Francisco, Californi... Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 4 h
Mercury
Deputy Chief Information Security Officer - Bank
Mercury
⚡ Postuler tôt San Francisco, CA, New York, N... · lieu restreint $269,700–$353,950
● Nouveau 👁 Vu ✓ Postulé il y a 13 h
Anthropic
Head of Vulnerability Disclosure & Security Community
Anthropic
⚡ Postuler tôt New York City, NY; Remote-Frie... · lieu restreint $330,000–$395,000
● Nouveau 👁 Vu ✓ Postulé il y a 13 h
Smarkets
Head of Security Engineering (DevSecOps & CISO)
Smarkets
⚡ Postuler tôt London Hybride
● Nouveau 👁 Vu ✓ Postulé il y a 15 h
hipages Group
Head of Cyber Security
hipages Group
⚡ Postuler tôt Sydney, New South Wales, Austr... Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Profound
Member of Technical Staff, Head of Security
Profound
⚡ Postuler tôt New York, New York Sur site $300,000–$375,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Cohere
Chief Information Security Officer (CISO)
Cohere
⚡ Postuler tôt Toronto Hybride CA$420,000–CA$485,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Bjak

Voir tous les emplois chez Bjak →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit