Consulting on current trends in the methodological and technical assessment of IT security requirements
Regular analysis of the threat landscape in the IT security environment and review of regulatory requirements and methodologies with regard to information security (e.g., KRITIS, ISO 27001, ISO 27005)
Responsibility for continuous monitoring of the IT security level, assessment of threat potentials and residual risks, and development of corresponding recommendations for action
...
Operations and Fusion Center Operator The Dell Security & Resiliency organization (SRO) manages the security risk across all aspects of Dell’s business. We are currently experiencing incredible growth to meet the security needs of the world’s largest technology company. With team members located in over 15 countries, you will have an excellent opportunity to influence the security culture at Dell and further develop your career.
Join us as an Operations and Fusion Center Operator on our Corporate Security team in Cyberjaya to do the best work of your career and make a profound social impact.
What you’ll achieve As an Operations and Fusion Center Operator, you will provide security support and protect Dell assets by identifying, analyzing, and responding to security incidents that could impact team members, travelers, facilities, assets, and our name brand. You will work with our global human resource team, regional security teams, cyber response teams, and supply chain partners to intake and triage incidents impacting DT operations.
...
Certification: Active OSCP certification is mandatory. Candidates without a valid OSCP or an equivalent hands-on certification (e.g., OSEP, CPTS) will not be considered.
Experience: 5+ years in offensive security, penetration testing, or vulnerability management.
Autonomy: Proven track record of building security processes from scratch in environments where they were the sole security expert.
...
Conduct Vulnerability Assessments and Penetration Testing (VAPT) for web applications, APIs, internal/external networks, wireless environments, cloud platforms, Active Directory, and infrastructure.
Perform security architecture reviews, configuration reviews, and security hardening assessments.
Identify security vulnerabilities, assess risks, and provide practical remediation recommendations.
...
7+ years of experience in one or more of the following areas: security program management, security operations, operational risk, compliance/assurance, or client-facing security roles.
Demonstrated experience supporting a high-stakes or low-risk-tolerance environment (regulated industry, high integrity programs, safety/security-critical services, or high-visibility client engagements).
Proven ability to lead across multiple teams without direct authority, using influence, clarity, and follow-through to drive work to closure.
...
To timely response to security alerts using a combination of technology solutions and a complete & reliable set of documented processes on a 24 x 7 x 365 basis
Act as a point of escalation for Level-1 analysts in 12-hour shift rotation
Escalate suspected incidents to L3 with detailed analysis and actionable recommendations.
...
Security Framework Alignment: Define and maintain the Bank’s technical security standards, aligning them with industry frameworks (e.g., NIST, PCI-DSS, ISO/IEC 27001, SOC 2, CIS Benchmarks).
Policy & Standard Engineering: Review and update technical security policies, baselines, and procedures for Web Application Firewalls (WAF), Web Proxies, Enterprise VPNs, and Network Access Control (NAC) systems and other security devices.
Audit & Compliance Remediation: Lead technical readiness for internal and external audits. Work directly with teams to track, prioritize, and validate the remediation of security findings and vulnerabilities.
...
Security Framework Alignment: Define and maintain the Bank’s technical security standards, aligning them with industry frameworks (e.g., NIST, PCI-DSS, ISO/IEC 27001, SOC 2, CIS Benchmarks).
Policy & Standard Engineering: Review and update technical security policies, baselines, and procedures for Web Application Firewalls (WAF), Web Proxies, Enterprise VPNs, and Network Access Control (NAC) systems and other security devices.
Audit & Compliance Remediation: Lead technical readiness for internal and external audits. Work directly with teams to track, prioritize, and validate the remediation of security findings and vulnerabilities.
...
Set the overall direction by formulating and executing a comprehensive Group IT Security strategy for RHB Banking Group (including regional offices), ensuring a secure, resilient, and risk‑minimised IT environment that supports business objectives and complies with all applicable regulatory, legal and industry requirements.
The role is accountable for Group‑wide cyber security governance, technology controls, incident readiness, and security culture, while providing strategic advisory to the Board, senior management and regulators.
Define, own and continuously evolve the Group IT Security strategy, roadmap, and target maturity model, aligned with business priorities and regulatory expectations
...