Description
Prudential's purpose is to be partners for every life and protectors for every future. Our purpose encourages everything we do by creating a culture in which diversity is celebrated and inclusion assured, for our people, customers, and partners.
The Senior Manager, Information Security is responsible for delivering exceptional information security services that set us apart and make customer service a strategic advantage.
Key Responsibilities:
- Implement tools, technologies, and countermeasures to protect information from exterior threats on actionable assets.
- Adopt master data management platforms for 7-sisters data sets.
- Develop and implement data strategy, policies, and regional processes aligned with local business units.
- Ensure protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction.
KEY RESPONSIBILITIES:
- Provide local leadership to drive the implementation of the organization's information security initiatives, aligned with Group directives, industry frameworks, and applicable regulatory requirements.
- Identify, assess, and manage information security and cybersecurity risks, ensuring appropriate mitigation measures are implemented.
- Support security-related internal and external audits, ensuring timely remediation and closure of findings.
- Oversee security monitoring, incident response, and threat management capabilities.
- Drive the implementation of security improvement projects and initiatives to strengthen the organization's security posture.
- Review and approve secure design and deployment of applications and infrastructure in line with security standards.
- Provide security advisory and guidance to support the organization's transformation initiatives and business-as-usual operations.
- Support cyber resilience and business continuity initiatives.
- Provide security insights to support management in risk-based decision-making.
- Drive continuous improvement of security controls, processes, and awareness across the organization.
QUALIFICATIONS & REQUIREMENTS: a. Qualifications
- Minimum tertiary education. Professional certification such as CISM, CISSP is desired but not a must.
b. Experience
- Minimum 8-10 years of relevant experience in information security or cybersecurity roles.
- Proven track record in driving and delivering security initiatives to strengthen the organization's security posture.
c. Knowledge
- Possess a strong understanding of key security frameworks and standards, including NIST Cybersecurity Framework, ISO/IEC 27001, CIS Critical Security Controls, as well as applicable local regulatory requirements.
- Demonstrate knowledge of threat intelligence and assessment.
- Familiar with security tools and their core functionalities, including SIEM, EDR, DLP, and IAM.
- Possess strong understanding and practical application of security controls aligned with the organization's risk appetite, internal policies, and standards, and regulatory requirements.
This listing is enriched and indexed by YubHub. To apply, use the employer's original posting:
https://prudential.wd3.myworkdayjobs.com/en-US/prudential/job/Kuala-Lumpur/Senior-Manager--Information-Security_26070244