Sign up to access all features of our service
  • Job search
  • Favorites
  • Create a CV
    New
  • Subscriptions

Senior Manager, Group Information Security (Cyber Security Incident Response - IR Team Lead)

FWD Life Insurance Corporation

About FWD Group

FWD Group (1828.HK) is a pan-Asian life and health insurance business that serves more than 38 million customers across 10 markets, including BRI Life in Indonesia. FWD's customer-led and tech-enabled approach aims to deliver innovative propositions, easy-to-understand products and a simpler insurance experience. Established in 2013, the company operates in some of the fastest-growing insurance markets in the world with a vision of changing the way people feel about insurance. FWD Group is listed on the main board of the Hong Kong Stock Exchange under the stock code 1828.

For more information, please visit

FWD Technology and Innovation Malaysia Sdn. Bhd., known as FWD TIM, was established in late 2019. Strategically located in Kuala Lumpur, FWD TIM serves as a pivotal shared service location within FWD Group, providing services to multiple markets across the Group. FWD TIM houses a diverse and talented workforce focused on essential business and technology services such as information security, cloud operations, IT solutions delivery, digital and data, actuarial, finance, investments, and customer service, among many others. FWD TIM is dedicated to drive and deliver operational excellence and efficiency, foster innovation and ensure regulatory compliance across all business functions as well as maintain a competitive edge in the market.

PURPOSE

  • Position of IR Team Lead

  • Most senior incident responder with subject matter expertise

  • Supports the pillar head of Security Monitoring and Incident Response in leading the Incident Response sub-function

  • Provide visibility to the pillar head of Security Monitoring and Incident Response on the day to day operations of the team

  • Lead the coordination, investigation, management, and resolution of a broad range of cyber-security incidents for FWD Group including all markets.

  • Establishes processes and SOPs.

  • Proactively identify, propose and drive the transformation and enhancement projects through the management and collaboration with relevant internal teams and external solutions providers to continuously improve the Group Cyber Security Incident Response Management, Detection and Monitoring processes and SOPs, performed by internal teams and vendors, leveraging automation and technologies available.

  • Build knowledge and coach Business Units IT Security leads, to understand their role in Cyber Incident Management.

KEY ACCOUNTABILITIES

  • Work with L1 and L2 Security Monitoring service providers to ensure L1/L2 resolutions meet the expected SLA and to enhance their monitoring, triage investigation processes capabilities prior to escalation.

  • Oversee delivery of the L3 incident response team and ensure that they meet incident response SLA's and SLO's.

  • Ensure L3 IR team is assigned tasks efficiently and keep track of work delegated from pillar head of SM&IR

  • Coordinate IR functions with other related functions included that of Threat Intelligence, in collaboration with Threat Intelligence lead

  • Investigate incident response cases to identify root cause, and coordinate with multiple internal teams and external solutions providers to remediate and resolve issues on a timely manner and effectively.

  • Leverage detection and response solutions in place, to further assess and proactively address any escalated potential incidents

  • Identify and drive continuous improvement of FWD Cyber Incident detection, contextualization and response processes and tools, leveraging automation and orchestration where possible

  • Manage and coordinate potential incidents escalations, for investigation, along with any required internal or external stakeholders

  • Lead and manage the communication and coordination of Cyber Security Incident response actions with Business Units and ensure smooth and proper closure of the Incident Response cases

  • Analyze the findings of Threat Intelligence and work with relevant internal teams and Business Units to coordinate and/or execute actions to ensure FWD Group prevention, detection and response capabilities setup is maximized against those new threats.

  • Perform in-depth analysis of malware or other potential malicious processes or software identified in the organization

  • Coordinate and manage Cyber Security testing activities, and provide advice on remediation

  • Develop, document and maintain SOPs and knowledge base for cyber security services relating to incident response, intelligence analysis, evidence acquisition, forensics recovery, and others

  • Continuous knowledge improvement in tools and best practices in Cyber Security threat monitoring and incident response, including contextualization and automation

  • Evaluate new emerging Cyber Security technologies and make recommendations for adoption within FWD Group

KEY PERFORMANCE INDICATORS

  • Timely and accurate coordination and management of all incident response cases within SLA for self and the rest of the team

  • Successful implementation of transformation and improvement initiatives to enhance Incident Response Management and Monitoring capabilities, with the support of Group IT Security Engineering teams

  • Evolve Cyber Incident Monitoring, Contextualization and Response processes and SOPs, leveraging automation and technologies available

  • Doing things right, creating synergies for the overall FWD goals and objectives, along with a people first approach

EXTERNAL & INTERNAL CONTACTS

  • Group CISO

  • Pillar lead of Information Security Monitoring and Incident Response (lead of Cyber Fusion Centre)

  • Threat Intelligence lead (peer)

  • Security Operations Centre lead (peer)

  • Group IT and IT Security Teams

  • Business Units IT and IT Security Teams

  • IT Vendors and/or Service Providers

QUALIFICATIONS / EXPERIENCE

  • Minimum 6 years working experience in Cyber Security Incident Management

  • Degree from Information Technology or equivalent discipline

  • Desirable Certifications on: ECCouncil Computer Hacking Forensics Investigator (CHFI), GIAC Certified Incident Handler (GCIH), GIAC Reverse Engineering

  • Malware (GREM), GIAC Certified Forensic Analyst (GCFA)

  • Regional experience in this role is preferred

  • Experience in a team lead role desired

KNOWLEDGE & TECHNICAL SKILLS

  • Able to train less experienced L1 and L3 team members to transfer skills and knowledge

  • Excellent knowledge of Advanced Persistent Threats, attack tools, techniques, and methods used by adversaries

  • Excellent knowledge of penetration testing services and techniques.

  • Excellent written and verbal communication skills and ability to perform working under pressure (IT Security Incidents)

  • Excellent management and coordination skills with solid influencing skills to drive remediation, resolution and changes in a regional and multicultural environment

  • Ability to define, prioritize and execute process in a structured manner

  • Experience in an operational capacity as part of IT Security incident response function

  • Experience with networking and TCP/IP traffic, along with firewall, SIEM, IPS, EPP, EDR, APT, DLP, proxy, antivirus, anti-spam and spyware solutions.

  • Experience conducting log and activity review, along with stream or packet capture, in support of intrusion analysis.

  • Desirable: Certification in Crowdstrike or Carbonblack EDR solutions.

  • Desirable: Experience on Splunk and QRadar SIEM solutions

  • Desirable: Experience with a programming/scripting language

COMPETENCIES

  • Operational management skills

  • Incident Response management

  • Technical leader

Vacancy posted a month ago
Similar jobs that could be interesting for youBased on the Senior Manager, Group Information Security (Cyber Security Incident Response - IR Team Lead) in Malaysia vacancy
  •  ...RecruitFirst Pte Ltd is seeking an Advanced Cyber Security Incident Responder to monitor, investigate, triage, and respond to cybersecurity incidents...  .... You will collaborate with global IT and security teams to reduce cyber risk and strengthen the organization’s security... 

    RecruitFirst Pte Ltd

    Malaysia
    1 day ago
  •  ...consultancy in Kuala Lumpur seeks an Incident Response Technical Lead. This senior role involves managing incident response services,...  ...the APAC incident response team. The successful candidate will...  ...forensics, a strong understanding of cyber threats, and the ability to... 

    S-RM

    Malaysia
    3 days ago
  •  ...in Malaysia's Cyber Defense & Incident Response KPMG Malaysia...  ...Response team operates within...  ...strengthening security operations, vulnerability management, offensive security...  ...Stands Out Senior Associate: -...  ...Manager: - Lead deployment...  ...empowered and informed throughout the... 

    KPMG PLT

    Malaysia
    a month ago
  •  ...About FWD Group FWD Group (1828.HK...  ...28. For more information, please visit...  ...as information security, cloud operations...  ...Identity & Access Management Team. This role will...  ...independently and solely responsible to provide...  ...Collaborate with other Cyber Incident Response and... 

    FWD Life Insurance Corporation

    Malaysia
    a month ago
  •  ...About FWD Group FWD Group...  ...For more information, please visit...  ...information security, cloud operations...  ...disciplined team structure,...  ...projects Lead stakeholders...  ...relationships with senior executives...  ...teams. Responsible and execute...  ...Manage teams and mentor... 

    FWD Life Insurance Corporation

    Malaysia
    a month ago
  •  ...Description: As a Sales Manager , you will be responsible for driving...  ...Networks' security products and solutions...  ...· Develop and lead account planning...  ...business. Team with Hillstone authorized...  ...of Hillstone cyber security...  ...Platforms. For more information, please visit... 

    Hillstone Networks

    Malaysia
    13 days ago
  •  ...intelligence and cyber security consultancy....  ...their toughest information security challenges...  ...role Our Incident Response Technical Leads are a critical...  ...expertise in a senior delivery role across...  ...your project team. Overseeing...  ...project management support, including... 

    S-RM

    Malaysia
    3 days ago
  •  ...Associate (Forensics Lead), Incident Response Malaysia...  ...intelligence and cyber security consultancy....  ...their toughest information security challenges...  ...Incident Response team, you will deploy...  ...by more senior technical team members...  ...Windows systems (e.g. Managing domains services... 

    S-RM

    Malaysia
    5 days ago
  • MYR 8,000 - 15,000 per month

     ...advanced cyber security incident responder Overview...  ...Computer Science, Information Security, Information...  ..., Incident Response, Threat Hunting,...  ...IT and security teams to reduce cyber...  ...evidence sources Lead small to medium-...  ...within case management systems. Contribute... 

    RecruitFirst Pte Ltd

    Malaysia
    1 day ago
  •  ...of the company's infrastructure security architecture, continuously enhancing...  ...hybrid cloud infrastructures. Lead security initiatives to identify information security risks throughout the...  ...security projects. Strong project management and execution skills, with the... 

    Shopee

    Malaysia
    6 days ago
  •  ...Kuala Lumpur is looking for an Associate (Forensics Lead) to play a critical role in their Cyber Security division. The successful candidate will manage incident responses and forensic investigations, ensuring the team's effectiveness in addressing various cyber... 

    S-RM

    Malaysia
    4 days ago
  •  ...Job Summary: Lead access services team and manage the organization Identity...  ...for APAC. Ensure secure & timely access to...  .... Key Responsibilities: . Manage...  ...PAM administration, incidents and...  ...Bachelor's Degree in Information Technology, Computer... 

    Rural Community Insurance Agency Inc

    Malaysia
    a month ago
  •  ...service delivery of the information and technology (IT) services and working with teams within the IT Department...  ...other entities within the group and external parties/...  ...and recommendation. The Incident Management Analyst primary responsibility is to coordinate/record... 

    Hong Leong Bank

    Malaysia
    a month ago
  •  ...About FWD Group FWD Group (1828....  ...8. For more information, please visit...  ...as information security, cloud operations...  ...Support the team in the complex...  ...integration and incident matters KEY...  ...control metrics for management reporting...  ...Cloud Security Lead and Head of Security... 

    FWD Life Insurance Corporation

    Malaysia
    a month ago
  • A leading IT security firm in Malaysia is seeking a Managed Security Services Lead to join their Security Operations Center...  ...real-time threat detection, incident response, and collaboration in security...  ...have a Bachelor's degree in Information Security or related field and... 

    PentagonPlus

    Malaysia
    1 day ago
  •  ...the AirAsia Group Engineering...  ...world-class security and performance...  .... The Cyber Security Analyst...  ...supporting the Information Security...  ..., technical teams (SRE/IT), and...  ...Monitoring: Lead the daily implementation...  ...Security Management System (ISMS...  ...rules. Incident Support:... 

    Air Asia

    Malaysia
    a month ago
  •  ...We are in search of a Security Engineer to join their vibrant team, where you will play a crucial...  ..., implementing, and managing comprehensive security solutions...  ...and respond to security incidents, ensuring quick...  ...looking for: Strong Information Security (InfoSec) skills... 

    Hyphen Connect Limited

    Malaysia
    a month ago
  •  ...is partnering with a leading global freight forwarding...  ...now looking to hire a Team Lead (Control Tower...  ...quality targets. Job Responsibilities: Lead, coach, and...  ...improvement opportunities. Manage shift schedules,...  ...; handle escalated incidents and deviations. Support... 

    Monroe Consulting Group

    Malaysia
    a month ago
  •  ...Job Purpose: To lead Collections Team in managing end-to-end collections process. This role is responsible for ensuring accurate bad debt recovery, timely resolution of unmatched transactions, broker reconciliation, audit readiness, and continuous process improvement... 

    Rural Community Insurance Agency Inc

    Malaysia
    7 days ago
  •  ...Chief Information Security Officer (CISO) - NGO (Senior Manager) Shape the Future of...  ...Technical Operator , responsible for building,...  ...leadership team, responsible...  ...oversight of cyber and technology...  ...growth Lead initiatives such...  ...detection, and incident response across... 

    Fairview International School

    Malaysia
    1 day ago
  •  ...TDCX Group is seeking a Senior Cyber Security Expert in Malaysia to join their 24x7 SOC team. The role involves monitoring security incidents, conducting threat analyses, and ensuring compliance with cybersecurity measures. The ideal candidate will have a Bachelor'... 

    TDCX Group

    Malaysia
    1 day ago
  •  ...comprehensive services. Responsibilities Solution Design Design Salesforce...  ...Cloud Field Service Management Commerce Cloud Define...  ...Work with sales teams to shape opportunities and articulate...  ...Project Delivery & Management Lead project delivery and... 

    ABeam Consulting (Singapore)

    Malaysia
    16 days ago
  •  ...Senior Cyber Security Expert (Shifting Schedule) Enable...  ...of TDCX 24x7 SOC team to monitor and respond to incidents and task-related...  ...Collaborate with various Information Security and...  ...plan, implement, manage, monitor and...  ...problems, ensuring response to all system and... 

    TDCX Group

    Malaysia
    1 day ago
  •  ...Overall Responsibility Set the overall...  ...comprehensive Group IT Security strategy for...  ...for Group‑wide cyber security...  ...technology controls, incident readiness,...  ...the Board, senior management and regulators...  ...to enable informed risk‑based decisions...  ...trends. Lead resource planning... 

    RHB Bank Berhad

    Malaysia
    1 day ago
  •  ...experienced and strategic Cyber Defense Lead to spearhead our comprehensive security operations. This...  ...role will be responsible for overseeing...  ...vulnerability management, security governance...  ..., and manage a team of VAPT specialists...  ...Science, Information Security, or a related... 

    Hong Leong Bank

    Malaysia
    a month ago
  •  ...is looking for a Team Lead, Packaging...  ...Development. Job Responsibilities: Ensure support...  ...the achievement of group business...  ...Identify and manage budget for operations...  ...other SAP related information. Work with external...  ...preferred for more senior positions.... 

    Universal Robina Corp

    Malaysia
    8 days ago
  •  ...We empower our global team with absolute...  ...We are seeking a Group Product Manager (GPM) who is both a world...  ...you will have the dual responsibility: # Champion Product...  ...of Advanced Ads —our leading ad-management platform...  ...product trios, data-informed decision making, rapid... 
    Remote job

    MonetizeMore

    Malaysia
    more than 2 months ago
  •  ...Job Description: Perform security assessments and penetration testing on Shopee's...  ...drive them to closure with engineering teams. Review code and architecture designs...  .... Support vulnerability response and incident investigation track industry trends and... 

    Shopee

    Malaysia
    7 days ago
  •  ...software support, managed services and...  ..., and is the leading third-party...  ...actively seeking a Security & Identity...  ...This role is responsible for ensuring that...  ...security teams. Reporting...  ...Align platform incident response with...  ...with security information and event management... 

    Rimini Street

    Malaysia
    10 days ago
  •  ...Job Description: Monitor and analyze security related alerts through the various platforms. Conduct timely investigation of alerts...  ...security research, security assessment, operations, and incident response to ensure security across different products and systems.... 

    Shopee

    Malaysia
    9 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Manager, Group Information Security (Cyber Security Incident Response - IR Team Lead). Be the first to apply!