VP, Senior Information Security Specialist - Kuala Lumpur, Malaysia - United Overseas Bank

    Default job background
    Full time
    Description

    VP, Senior Information Security Specialist

    Posting Date: 06-May-2023 Location:

    Kuala Lumpur, Wilayah Persekutuan, MY

    Company: United Overseas Bank (Malaysia) Bhd

    About UOB

    United Overseas Bank Limited (UOB) is a leading bank in Asia with a global network of more than 500 branches and offices in 19 countries and territories in Asia Pacific, Europe and North America. In Asia, we operate through our head office in Singapore and banking subsidiaries in China, Indonesia, Malaysia and Thailand, as well as branches and offices.

    Our history spans more than 80 years. Over this time, we have been guided by our values — Honorable, Enterprising, United and Committed. This means we always strive to do what is right, build for the future, work as one team and pursue long-term success. It is how we work, consistently, be it towards the company, our colleagues or our customers.

    About the Department

    The Technology and Operations function is comprised of five teams of specialists with distinct capabilities: business partnership, technology, operations, risk governance and planning support and services. We work closely together to harness the power of technology to support our physical and digital banking services and operations. This includes developing, centralising and standardising technology systems as well as banking operations in Singapore and overseas branches.

    Job Responsibilities

  • Technical Subject Matter Expert on offensive, defensive, network security and defense-in-depth methodologies and technology
  • Prepare roadmap plan and identify security projects/initiatives to meet Group Security framework, identify solution to automate key BAU functions
  • Prepare yearly security operation budget, keep track of budget spending
  • Work with team to deliver Security projects and initiatives, provide technical/architecture consultancy on the design and approach
  • Work with the team and vendor to perform gap analysis using Cyber security maturity assessment
  • Network Security Assessment, MITRE Attack Assessment and etc. Propose and drive solution/initiative to close the gap
  • Prepare response and evidence submission for security assessment/review (people, policies, processes, controls) requested by various parties; Regulators (BNM, PAYNET, PCI-DSS, MAS, TRM SWIFT), Risk and Compliance, Auditor and etc.
  • Prepare various Cyber Operation statistics/updates for management presentation and update key operational risk indictors.
  • Provide assistance and consultancy on other operation matters
  • Job Requirements

  • A Bachelor's Degree in Computer Science, Engineering, Information Systems or its equivalent.
  • Minimum 5-8 years of related working experience. Knowledge of IT security is essential. Industry certifications will be a plus e.g. CCNA, CCIE, CRISC, CISSP, CEH, CISM and CISA.
  • Minimum 3 year working experience in financial institutions in the area of security governance and security strategy
  • Familiar with Security standards and Exposure in financial institution's regulatory compliance response preparation and evidence submission (RMIT, PCIDSS, Paynet, MAS and etc)
  • Prior exposure in the areas of security SIEM monitoring, security intrusion detection (IPS/IDS), phishing handling, DDoS, DLP, VA scan and APT solutions.
  • Knowledge and experience in network security is a plus
  • Highly result oriented, able to work independently with minimal supervision and able to deliver tasks timely in face paced environment.
  • Good leadership qualities and have experience in managing a small team will be a plus
  • Ability to build relationship and interact effectively with internal and external parties. Strong engagement skills with stakeholder management.
  • Good analytical, technical, written and verbal communication skills.
  • Ability to exercise discretion and independent judgment in applying established techniques, procedures or standards