Title: Manager Security Operations
Kuala Lumpur, MY, MY
Job Summary:
This role presents an excellent opportunity within the Cybersecurity team as the Security Operations and Incident Management Lead. The position supports the Cybersecurity Director in overseeing and managing SOC and Incident Management practices. The ideal candidate will have strong expertise in IT security operations and incident management as core competencies. This role will take ownership of defining, implementing, documenting, and enhancing security operations and incident management processes at DKSH. The focus will be on driving maturity in SOC and IM practices and ensuring DKSH’s overall security posture aligns with industry best practices.
Job Description:
- Lead and execute strategical direction for the overall SOC and incident management function from planning, tools implementation and budgeting to support business continuity and security incident management and response
- Lead a team of 3 internal cybersecurity professionals and third party SOC service provider on strategical operational support on security operations and incident management activities
- Leads the information security incident investigation and management process and post incident review
- Report and escalate to leadership management team on controls effectiveness and operational efficiencies
- Promote and support “center of excellence” for cybersecurity management, continuous improvement and optimization of security operations and its processes
- Leads or commissions the preparation, implementation and validating of cybersecurity policies, standards, procedures and guidelines for SOC/IM
- Support the design and operation of related compliance monitoring and improvement activities to ensure compliance with ISO27001 practices, internal security policies and applicable laws and regulations
- Flexible on-call rotations to ensure 24/7 security escalation coverage when situation requires
- Cross collaboration with regional, country IT teams, business stakeholders, external vendors and regulator to protect DKSH interest
- Keep abreast of latest security and privacy legislation, regulations, adversaries, alerts, and vulnerabilities
Job Requirement:
- Bachelor's degree in Computing/Information Technology or equivalent;
- At least 8 years’ experience in similar role with at least 3 years in managerial position
- Excellent experience and knowledge on enterprise security operations and incident management are required
- Excellent knowledge on common attacks and counter measures
- Knowledge in IT environment and solutions such as Windows/Linux OSes, AD, DNS, DHCP, IPS, AV, Routers, Switches, VM, etc are required
- Hands-on experience with SOC and IM technologies and operations
- Experienced in leading security incident investigation and response
- Ability to manage remote environments
- Sense of ownership and pro-activeness in identify, improve and optimize processes and mitigating gaps
- Excellent written and verbal communication skills; interpersonal and collaborative skills; and the ability to communicate security and risk-related concepts to technical and non-technical stakeholders;
- Strong ability to work independently and cooperate with diverse teams with multiple stakeholders;