Technology & Security Risk Analyst (Fixed Term Contract)
Kuala Lumpur - Wisma Guocoland, Malaysia
dentsu
Me olemme dentsu. Joukko optimisteja, visionäärejä ja edelläkävijöitä. Jatkuvasti muuttuvassa maailmassa me autamme brändejä kasvamaan, transformoitumaan ja kehittämään liiketoimintaansa vastuullisesti.Job Description:
Dentsu is the network designed for what’s next, helping clients predict and plan for disruptive future opportunities and create new paths to growth in the sustainable economy. Taking a people-centered approach to business transformation, we use insights to connect brand, content, commerce and experience, underpinned by modern creativity.
At dentsu, we’re committed to protecting our clients’ brands and data and therefore, we continue to invest in technology and security governance, risk and compliance across our global technology functions.
Your role as a Technology & Security Risk Analyst, you will be part of our global Technology & Security Risk team and report to the Head of Technology & Security Risk. You will be responsible for implementing our risk management processes into a newly acquired entity and then continue to support the ongoing management of technology and security risks for the entity.
You will work closely with the business stakeholders within the entity and colleagues across technology and security to embed our risk management process for the entity. You will gain an in-depth understanding of the security risk posture within the entity and help them manage their risks effectively and proportionately.
Key responsibilities
Embed our security risk management process within a newly acquired entity, creating the foundation for the ongoing management of security risks for the entity.
Support the alignment of dentsu’s global technology and security policies, controls and ISO27001 standard within the newly acquired entity.
Work closely with stakeholders to identify, assess, monitor and respond to security risks, in line with the technology & security risk management framework and associated processes.
Update the risk register within our GRC platform, e.g. documenting agreed treatment plans, adding regular progress updates, and escalating delays or blockers.
Provide risk reporting to stakeholders and, where required, relevant forums, e.g. dentsu international markets Security Risk Committee.
Lead security issue management working groups with relevant stakeholders to assess risk issues and develop treatment plans.
Provide analysis on key risk areas to drive security maturity and help shape future investment decisions.
Understand the external security environment and emerging trends to support security risk management.
Support the growth and adoption of technology and security risk management processes across dentsu international markets.
What we’re looking for
2-3 years of experience in technology and security governance and risk management within a medium or large-sized organisation.
General knowledge of all domains within security covering people, process and technology.
Experience in stakeholder engagement and strong communication skills.
Ability to explain technical complex concepts to non-technical audiences.
A self-motivated, proactive, action-orientated approach to achieve deadlines.
A collaborative mindset, working alongside others to achieve common objectives.
Interest in personal development in the areas of governance, risk, compliance or security.
Knowledge of security, technology and enterprise risk management frameworks (desirable).
Experience with using industry-leading GRC platforms (desirable).
Experience of security compliance initiatives within an enterprise technology environment such as ISO27001, NIST, CIS, PCI DSS, Cyber Essentials (desirable).
Experience in using Microsoft Excel, PowerPoint, Forms, and PowerBi (desirable).
Achieved or working towards an information security qualification (CISSP, CISM, CISA, CRISC) (desirable).
#LI-EY1
#LI-HYBRID
Location:
Kuala LumpurBrand:
Global FunctionsTime Type:
Full timeContract Type:
Fixed Term Contract (Fixed Term)* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: CISA CISM CISSP Compliance CRISC Governance ISO 27001 NIST PCI DSS Risk management RMF
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.