Head of Cybersecurity (Global)
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, Malaysia
⚠️ We'll shut down after Aug 1st - try foo🦍 for all jobs in tech ⚠️
NEXT Ventures
NEXT Ventures empowers 220K+ traders in 170+ countries with innovative fintech tools that drive growth, performance, and success in global markets.Who We Are
NEXT Ventures is where ambition takes shape and momentum becomes movement. As a global platform revolutionising access to performance-based capital, we empower the world’s most driven individuals to rise. Through our flagship brand, FundedNext, we empower dreamers to become doers, and potential to turn into performance. With 500+ driven minds across five countries, we power a global rhythm—220,000+ daily users from 170+ nations, each chasing greatness in their own way.
Your Role in Our Mission
As the Head of Cybersecurity (Global), you'll lead our organization’s end-to-end security evolution. From governance and strategy to tooling, detection, and response, you will own the full stack of security across multiple regions, tech stacks, and cloud/hybrid environments. You’ll play a pivotal role in building a robust and unified cybersecurity program that enables innovation while protecting our platforms, trader data, and global systems.
This is a builder role for a senior cybersecurity leader who thrives at the intersection of policy, people, and technology—and who can deliver security maturity ahead of scale.
How You’ll Make an Impact
Cybersecurity Strategy & Governance
Develop and drive a 3-year global cybersecurity roadmap aligned with business growth and regulatory needs.
Establish and lead a Security Steering Committee across geographies.
Maintain a living risk register mapped to business impact and threat trends.
Policy, Compliance & Risk Management
Author and implement global security policies (Access Control, Secure Dev, GenAI Use, DLP, Vendor Security, IR, etc.).
Translate policies into enforceable practices across engineering, product, and business teams.
Map controls to ISO 27001 or NIST frameworks and build audit-readiness programs.
Threat Detection & Incident Response
Deploy and operate XDR, EDR, and SIEM platforms across multiple regions.
Centralize logging and threat visibility across firewalls, cloud, endpoints, and collaboration tools.
Lead 24×7 incident response readiness and act as commander during critical events.
Application Security & VAPT
Implement secure SDLC practices including SAST, DAST, IaC scanning, and red teaming.
Lead recurring penetration tests and remediation across trading portals, APIs, and back-office infra.
Track remediation SLAs and report risk insights to senior leadership.
Endpoint, Identity & Data Protection
Enforce MDM across corporate and BYOD devices.
Roll out classification and DLP policies across cloud apps, endpoints, and email.
Enforce MFA everywhere and implement PAM for sensitive systems.
Regional Security Alignment
Conduct on-site and remote assessments in Malaysia, Sri Lanka, and Bangladesh (future Cyprus).
Harmonize tooling, licenses, and policies across all entities for consistency and cost efficiency.
Security Reporting & Culture
Publish quarterly security scorecards (risk heatmaps, MTTD/MTTR, endpoint coverage, etc.).
Promote cross-functional collaboration and a culture of proactive cyber hygiene.
Present actionable insights to executive leadership and the Board Risk Committee.
What You Bring
Bachelor's degree in Cybersecurity, Computer Science, or relevant discipline.
6+ years of progressive experience in cybersecurity, with at least 3 years leading enterprise/global security programs.
Strong technical foundation in VAPT, secure SDLC, and remediation oversight.
Hands-on experience deploying and managing XDR, SIEM, EDR (e.g., Cortex XDR, CrowdStrike, Splunk, Elastic, Defender).
Proficient in enterprise policy creation and DLP, IAM, MDM implementations.
Strong communication skills with the ability to translate technical findings to business stakeholders.
Experience in fintech, prop trading, or regulated SaaS environments is a plus.
Your X-Factor
Driving strategy while staying hands-on with security technologies and operations.
Leading through influence, collaboration, and evidence-based decision making.
Aligning security controls with frameworks like ISO 27001, NIST CSF, and CIS, while keeping implementation pragmatic and lightweight.
Why Join NEXT
At NEXT Ventures, we believe the right talent fuels breakthrough innovation. If you're driven to connect great minds with big ideas and want to shape the future of fintech, we’d love to meet you. Join our team of bold thinkers where technology meets transformation.
Apply now and be part of our journey — the future is calling, and it starts with you.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs Application security Cloud Compliance Computer Science CrowdStrike DAST EDR FinTech Firewalls Full stack Generative AI Governance IAM Incident response ISO 27001 NIST NIST Frameworks Red team Risk management SaaS SAST SDLC SIEM SLAs Splunk Strategy Threat detection XDR
Perks/benefits: Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.