Senior Manager, Application Security

Vietnam - Ho Chi Minh - Long Tower Building

Applications have closed

FWD Insurance

We’re FWD. A different kind of insurer with a vision to change the way people feel about insurance. Discover our story.

View all jobs at FWD Insurance

About FWD Group

FWD Group is a pan-Asian life and health insurance business with more than 12 million customers across 10 markets, including some of the fastest-growing insurance markets in the world. The company was established in 2013 and is focused on changing the way people feel about insurance. FWD’s customer-led and digitally enabled approach aims to deliver innovative propositions, easy-to-understand products and a simpler insurance experience.

For more information, please visit www.fwd.com

FWD Vietnam Technology Company Limited., known as FWD VTC, was set up in 2024 and is part of FWD Group. FWD VTC in Vietnam is one of FWD Group’s office locations serving multiple markets within the Group and employs team members in various functions including Group Technology and Operations, Group Digital & Data and our Centre of Excellence comprising cloud & infrastructure, information security, enterprise architecture and solution delivery.

To deliver highly technical Information Security Reviews in support of stakeholders from both Business and IT teams across all Group’s Business Units, to identify and mitigate of material business risks representing significant threats to the success of the Group’s activities.

PURPOSE
• To deliver highly technical Information Security Reviews in support of stakeholders from both Business and IT teams across all Group’s Business Units, to identify and mitigate of material business risks representing significant threats to the success of the Group’s activities.
• To contribute to the continuous enhancement of the Information Security Review process by making iterative enhancements to the overall approach, workflow, scope and implementation in alignment with the needs of Group Information Security’s customers and according to the changing technical, regulatory and business environment.
• The impact for failing to undertake the Information Security Reviews effectively, could include a significant failure in the Group’s security posture leading to highly damaging reputation damage, loss of public confidence, regulatory penalties and legal proceedings against the company and its executives.
KEY ACCOUNTABILITIES
• The role sits within the Group Information Security – Application Security team and have the accountability for Information Security Review for all the 10 Business units in Asia Pacific.
• Be the tandem partner with the senior manager leading the Information Security Reviews.

Perform and coordinate Information Security Reviews throughout the lifecycle of a project.
• Drive awareness and support to Group IT Security, Group IT and Business Units IT, to understand the IT Security Architecture process, as well as their implications across the organizations.
• Deliver a consultative service to all stakeholders involved with the Information Security Reviews and, in doing so, provide a measurable benefit to the Group’s IT projects in terms of their successful, timely and secure delivery.
• The timely identification of key risks leading to their successful remediation without undue delay to the delivery of business objectives.
• Act as a Subject Matter Expert for all information security aspects of all projects and, in doing so, facilitate the efficient and secure delivery of those projects.
• Identify technical risks as result of the security reviews, ensure these risks are reported to the appropriate risk team(s) to track remediation within the agreed timeframes.
• Initiate and evaluate projects, to build and enhance new capabilities in FWD, that related to Identify, Protect, Detect, Respond and Recover to technical risks.
• Align security reviews to FWD Group Information Security and overall IT Strategy needs.
• Manage allocated resources to deliver the security reviews (either internal FWD staff or vendors).
• Collaborate with other Cyber Incident Response and Threat Intel teams on evaluation of weaknesses or new risks that require Group Information Security continuous improvement.
• Provide expertise to Business Units when needed, in building local IT Security solutions.

QUALIFICATIONS / EXPERIENCE
• University degree from Information Technology or equivalent discipline.
• Minimum 8 years working experience in IT Security Management role, preferably in Financial Services.
• Regional experience in IT Security Technical or Engineering roles.
• Technical experience in Identify, Protect, Detect, Response or Recover areas.
• Sufficient experience and Subject Matter Expert level of knowledge in fields of Information Security & solid understanding of project teams’ needs. For instance, secure architecture design, risk assessment and remediation & general IT technologies.
• Sound consulting capability including, clear and concise written and verbal communications, ability to manage senior stakeholders, and work on high profile projects with tight timelines, always present logical thinking and problem- solving capabilities even under pressures.
KNOWLEDGE & TECHNICAL SKILLS
• Certifications or official training on Cloud IAAS, CASB, SIEM solutions, WAF

solutions, End Point Protection solutions, Firewall & IPS solutions, NGAV and EDR solutions, Orchestration and Automation, Web, Email and DNS Protection, etc.
• Excellent interpersonal and influential skills.
• Good communication and presentation skills.
• Collaborative, consultative and customer service focused approach to delivery.
• Leadership skills, problem solving and decision making skills; as the incumbent has to deal with a cross section of stakeholders across 10 countries.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Application security Automation CASB Cloud DNS EDR Firewalls IaaS Incident response IPS Risk assessment SIEM Strategy

Perks/benefits: Team events

Region: Asia/Pacific
Country: Vietnam

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.