Senior Manager, Group Information Security (Cyber Security Incident Response - IR Team Lead)
FWD Life Insurance Corporation
About FWD Group
FWD Group (1828.HK) is a pan-Asian life and health insurance business that serves more than 38 million customers across 10 markets, including BRI Life in Indonesia. FWD's customer-led and tech-enabled approach aims to deliver innovative propositions, easy-to-understand products and a simpler insurance experience. Established in 2013, the company operates in some of the fastest-growing insurance markets in the world with a vision of changing the way people feel about insurance. FWD Group is listed on the main board of the Hong Kong Stock Exchange under the stock code 1828.
For more information, please visit
FWD Technology and Innovation Malaysia Sdn. Bhd., known as FWD TIM, was established in late 2019. Strategically located in Kuala Lumpur, FWD TIM serves as a pivotal shared service location within FWD Group, providing services to multiple markets across the Group. FWD TIM houses a diverse and talented workforce focused on essential business and technology services such as information security, cloud operations, IT solutions delivery, digital and data, actuarial, finance, investments, and customer service, among many others. FWD TIM is dedicated to drive and deliver operational excellence and efficiency, foster innovation and ensure regulatory compliance across all business functions as well as maintain a competitive edge in the market.
PURPOSE
Position of IR Team Lead
Most senior incident responder with subject matter expertise
Supports the pillar head of Security Monitoring and Incident Response in leading the Incident Response sub-function
Provide visibility to the pillar head of Security Monitoring and Incident Response on the day to day operations of the team
Lead the coordination, investigation, management, and resolution of a broad range of cyber-security incidents for FWD Group including all markets.
Establishes processes and SOPs.
Proactively identify, propose and drive the transformation and enhancement projects through the management and collaboration with relevant internal teams and external solutions providers to continuously improve the Group Cyber Security Incident Response Management, Detection and Monitoring processes and SOPs, performed by internal teams and vendors, leveraging automation and technologies available.
Build knowledge and coach Business Units IT Security leads, to understand their role in Cyber Incident Management.
KEY ACCOUNTABILITIES
Work with L1 and L2 Security Monitoring service providers to ensure L1/L2 resolutions meet the expected SLA and to enhance their monitoring, triage investigation processes capabilities prior to escalation.
Oversee delivery of the L3 incident response team and ensure that they meet incident response SLA's and SLO's.
Ensure L3 IR team is assigned tasks efficiently and keep track of work delegated from pillar head of SM&IR
Coordinate IR functions with other related functions included that of Threat Intelligence, in collaboration with Threat Intelligence lead
Investigate incident response cases to identify root cause, and coordinate with multiple internal teams and external solutions providers to remediate and resolve issues on a timely manner and effectively.
Leverage detection and response solutions in place, to further assess and proactively address any escalated potential incidents
Identify and drive continuous improvement of FWD Cyber Incident detection, contextualization and response processes and tools, leveraging automation and orchestration where possible
Manage and coordinate potential incidents escalations, for investigation, along with any required internal or external stakeholders
Lead and manage the communication and coordination of Cyber Security Incident response actions with Business Units and ensure smooth and proper closure of the Incident Response cases
Analyze the findings of Threat Intelligence and work with relevant internal teams and Business Units to coordinate and/or execute actions to ensure FWD Group prevention, detection and response capabilities setup is maximized against those new threats.
Perform in-depth analysis of malware or other potential malicious processes or software identified in the organization
Coordinate and manage Cyber Security testing activities, and provide advice on remediation
Develop, document and maintain SOPs and knowledge base for cyber security services relating to incident response, intelligence analysis, evidence acquisition, forensics recovery, and others
Continuous knowledge improvement in tools and best practices in Cyber Security threat monitoring and incident response, including contextualization and automation
Evaluate new emerging Cyber Security technologies and make recommendations for adoption within FWD Group
KEY PERFORMANCE INDICATORS
Timely and accurate coordination and management of all incident response cases within SLA for self and the rest of the team
Successful implementation of transformation and improvement initiatives to enhance Incident Response Management and Monitoring capabilities, with the support of Group IT Security Engineering teams
Evolve Cyber Incident Monitoring, Contextualization and Response processes and SOPs, leveraging automation and technologies available
Doing things right, creating synergies for the overall FWD goals and objectives, along with a people first approach
EXTERNAL & INTERNAL CONTACTS
Group CISO
Pillar lead of Information Security Monitoring and Incident Response (lead of Cyber Fusion Centre)
Threat Intelligence lead (peer)
Security Operations Centre lead (peer)
Group IT and IT Security Teams
Business Units IT and IT Security Teams
IT Vendors and/or Service Providers
QUALIFICATIONS / EXPERIENCE
Minimum 6 years working experience in Cyber Security Incident Management
Degree from Information Technology or equivalent discipline
Desirable Certifications on: ECCouncil Computer Hacking Forensics Investigator (CHFI), GIAC Certified Incident Handler (GCIH), GIAC Reverse Engineering
Malware (GREM), GIAC Certified Forensic Analyst (GCFA)
Regional experience in this role is preferred
Experience in a team lead role desired
KNOWLEDGE & TECHNICAL SKILLS
Able to train less experienced L1 and L3 team members to transfer skills and knowledge
Excellent knowledge of Advanced Persistent Threats, attack tools, techniques, and methods used by adversaries
Excellent knowledge of penetration testing services and techniques.
Excellent written and verbal communication skills and ability to perform working under pressure (IT Security Incidents)
Excellent management and coordination skills with solid influencing skills to drive remediation, resolution and changes in a regional and multicultural environment
Ability to define, prioritize and execute process in a structured manner
Experience in an operational capacity as part of IT Security incident response function
Experience with networking and TCP/IP traffic, along with firewall, SIEM, IPS, EPP, EDR, APT, DLP, proxy, antivirus, anti-spam and spyware solutions.
Experience conducting log and activity review, along with stream or packet capture, in support of intrusion analysis.
Desirable: Certification in Crowdstrike or Carbonblack EDR solutions.
Desirable: Experience on Splunk and QRadar SIEM solutions
Desirable: Experience with a programming/scripting language
COMPETENCIES
Operational management skills
Incident Response management
Technical leader
- ...RecruitFirst Pte Ltd is seeking an Advanced Cyber Security Incident Responder to monitor, investigate, triage, and respond to cybersecurity incidents... .... You will collaborate with global IT and security teams to reduce cyber risk and strengthen the organization’s security...
- ...consultancy in Kuala Lumpur seeks an Incident Response Technical Lead. This senior role involves managing incident response services,... ...the APAC incident response team. The successful candidate will... ...forensics, a strong understanding of cyber threats, and the ability to...
- ...in Malaysia's Cyber Defense & Incident Response KPMG Malaysia... ...Response team operates within... ...strengthening security operations, vulnerability management, offensive security... ...Stands Out Senior Associate: -... ...Manager: - Lead deployment... ...empowered and informed throughout the...
- ...About FWD Group FWD Group (1828.HK... ...28. For more information, please visit... ...as information security, cloud operations... ...Identity & Access Management Team. This role will... ...independently and solely responsible to provide... ...Collaborate with other Cyber Incident Response and...
- ...About FWD Group FWD Group... ...For more information, please visit... ...information security, cloud operations... ...disciplined team structure,... ...projects Lead stakeholders... ...relationships with senior executives... ...teams. Responsible and execute... ...Manage teams and mentor...
- ...Description: As a Sales Manager , you will be responsible for driving... ...Networks' security products and solutions... ...· Develop and lead account planning... ...business. Team with Hillstone authorized... ...of Hillstone cyber security... ...Platforms. For more information, please visit...
- ...intelligence and cyber security consultancy.... ...their toughest information security challenges... ...role Our Incident Response Technical Leads are a critical... ...expertise in a senior delivery role across... ...your project team. Overseeing... ...project management support, including...
- ...Associate (Forensics Lead), Incident Response Malaysia... ...intelligence and cyber security consultancy.... ...their toughest information security challenges... ...Incident Response team, you will deploy... ...by more senior technical team members... ...Windows systems (e.g. Managing domains services...
MYR 8,000 - 15,000 per month
...advanced cyber security incident responder Overview... ...Computer Science, Information Security, Information... ..., Incident Response, Threat Hunting,... ...IT and security teams to reduce cyber... ...evidence sources Lead small to medium-... ...within case management systems. Contribute...- ...of the company's infrastructure security architecture, continuously enhancing... ...hybrid cloud infrastructures. Lead security initiatives to identify information security risks throughout the... ...security projects. Strong project management and execution skills, with the...
- ...Kuala Lumpur is looking for an Associate (Forensics Lead) to play a critical role in their Cyber Security division. The successful candidate will manage incident responses and forensic investigations, ensuring the team's effectiveness in addressing various cyber...
- ...Job Summary: Lead access services team and manage the organization Identity... ...for APAC. Ensure secure & timely access to... .... Key Responsibilities: . Manage... ...PAM administration, incidents and... ...Bachelor's Degree in Information Technology, Computer...
- ...service delivery of the information and technology (IT) services and working with teams within the IT Department... ...other entities within the group and external parties/... ...and recommendation. The Incident Management Analyst primary responsibility is to coordinate/record...
- ...About FWD Group FWD Group (1828.... ...8. For more information, please visit... ...as information security, cloud operations... ...Support the team in the complex... ...integration and incident matters KEY... ...control metrics for management reporting... ...Cloud Security Lead and Head of Security...
- A leading IT security firm in Malaysia is seeking a Managed Security Services Lead to join their Security Operations Center... ...real-time threat detection, incident response, and collaboration in security... ...have a Bachelor's degree in Information Security or related field and...
- ...the AirAsia Group Engineering... ...world-class security and performance... .... The Cyber Security Analyst... ...supporting the Information Security... ..., technical teams (SRE/IT), and... ...Monitoring: Lead the daily implementation... ...Security Management System (ISMS... ...rules. Incident Support:...
- ...We are in search of a Security Engineer to join their vibrant team, where you will play a crucial... ..., implementing, and managing comprehensive security solutions... ...and respond to security incidents, ensuring quick... ...looking for: Strong Information Security (InfoSec) skills...
- ...is partnering with a leading global freight forwarding... ...now looking to hire a Team Lead (Control Tower... ...quality targets. Job Responsibilities: Lead, coach, and... ...improvement opportunities. Manage shift schedules,... ...; handle escalated incidents and deviations. Support...
- ...Job Purpose: To lead Collections Team in managing end-to-end collections process. This role is responsible for ensuring accurate bad debt recovery, timely resolution of unmatched transactions, broker reconciliation, audit readiness, and continuous process improvement...
- ...Chief Information Security Officer (CISO) - NGO (Senior Manager) Shape the Future of... ...Technical Operator , responsible for building,... ...leadership team, responsible... ...oversight of cyber and technology... ...growth Lead initiatives such... ...detection, and incident response across...
- ...TDCX Group is seeking a Senior Cyber Security Expert in Malaysia to join their 24x7 SOC team. The role involves monitoring security incidents, conducting threat analyses, and ensuring compliance with cybersecurity measures. The ideal candidate will have a Bachelor'...
- ...comprehensive services. Responsibilities Solution Design Design Salesforce... ...Cloud Field Service Management Commerce Cloud Define... ...Work with sales teams to shape opportunities and articulate... ...Project Delivery & Management Lead project delivery and...
- ...Senior Cyber Security Expert (Shifting Schedule) Enable... ...of TDCX 24x7 SOC team to monitor and respond to incidents and task-related... ...Collaborate with various Information Security and... ...plan, implement, manage, monitor and... ...problems, ensuring response to all system and...
- ...Overall Responsibility Set the overall... ...comprehensive Group IT Security strategy for... ...for Group‑wide cyber security... ...technology controls, incident readiness,... ...the Board, senior management and regulators... ...to enable informed risk‑based decisions... ...trends. Lead resource planning...
- ...experienced and strategic Cyber Defense Lead to spearhead our comprehensive security operations. This... ...role will be responsible for overseeing... ...vulnerability management, security governance... ..., and manage a team of VAPT specialists... ...Science, Information Security, or a related...
- ...is looking for a Team Lead, Packaging... ...Development. Job Responsibilities: Ensure support... ...the achievement of group business... ...Identify and manage budget for operations... ...other SAP related information. Work with external... ...preferred for more senior positions....
- ...We empower our global team with absolute... ...We are seeking a Group Product Manager (GPM) who is both a world... ...you will have the dual responsibility: # Champion Product... ...of Advanced Ads —our leading ad-management platform... ...product trios, data-informed decision making, rapid...Remote job
- ...Job Description: Perform security assessments and penetration testing on Shopee's... ...drive them to closure with engineering teams. Review code and architecture designs... .... Support vulnerability response and incident investigation track industry trends and...
- ...software support, managed services and... ..., and is the leading third-party... ...actively seeking a Security & Identity... ...This role is responsible for ensuring that... ...security teams. Reporting... ...Align platform incident response with... ...with security information and event management...
- ...Job Description: Monitor and analyze security related alerts through the various platforms. Conduct timely investigation of alerts... ...security research, security assessment, operations, and incident response to ensure security across different products and systems....
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Manager, Group Information Security (Cyber Security Incident Response - IR Team Lead). Be the first to apply!


