
Manager Security Operations (SOC)
- Kuala Lumpur
- Permanent
- Full-time
- Lead and execute strategical direction for the overall SOC and incident management function from planning, tools implementation and budgeting to support business continuity and security incident management and response
- Lead a team of 3 internal cybersecurity professionals and third party SOC service provider on strategical operational support on security operations and incident management activities
- Leads the information security incident investigation and management process and post incident review
- Report and escalate to leadership management team on controls effectiveness and operational efficiencies
- Promote and support “center of excellence” for cybersecurity management, continuous improvement and optimization of security operations and its processes
- Leads or commissions the preparation, implementation and validating of cybersecurity policies, standards, procedures and guidelines for SOC/IM
- Support the design and operation of related compliance monitoring and improvement activities to ensure compliance with ISO27001 practices, internal security policies and applicable laws and regulations
- Flexible on-call rotations to ensure 24/7 security escalation coverage when situation requires
- Cross collaboration with regional, country IT teams, business stakeholders, external vendors and regulator to protect DKSH interest
- Keep abreast of latest security and privacy legislation, regulations, adversaries, alerts, and vulnerabilities
- Bachelor's degree in Computing/Information Technology or equivalent;
- At least 8 years' experience in similar role with at least 3 years in managerial position
- Excellent experience and knowledge on enterprise security operations and incident management are required
- Excellent knowledge on common attacks and counter measures
- Knowledge in IT environment and solutions such as Windows/Linux OSes, AD, DNS, DHCP, IPS, AV, Routers, Switches, VM, etc are required
- Hands-on experience with SOC and IM technologies and operations
- Experienced in leading security incident investigation and response
- Ability to manage remote environments
- Sense of ownership and pro-activeness in identify, improve and optimize processes and mitigating gaps
- Excellent written and verbal communication skills; interpersonal and collaborative skills; and the ability to communicate security and risk-related concepts to technical and non-technical stakeholders;
- Strong ability to work independently and cooperate with diverse teams with multiple stakeholders;