Lead Security Architecture [RID-00430]

CYBERSECURITY
Malaysia

Mid Senior level


About Setel:

The Future of Mobility

Introduced in July 2018, Setel is a mobile platform that aims to delight customers by innovating for better, inclusive mobility. Setel serves customers across Malaysia by powering one app as the constant companion to ease motorists’ journey across fueling, parking, EV charging, motor insurance, road tax, auto assistance, general purchases, and more across an ecosystem of PETRONAS petrol stations, retail partners, and online merchants.

Role Purpose:

To establish and deploy Setel’s Security Architecture in alignment with Setel’s Enterprise Architecture, through the plan, design, review, improve and maintenance of the As-Is and To-Be security architecture, management of security baselines and adherence to security policies and controls, to ensure Setel’s digital assets, systems and infrastructure are protected against cyber threats.

In this role you will:

  • Develop and update the enterprise security architecture framework, its corresponding roadmap and security principles in alignment with Setel’s enterprise architecture to ensure a fully integrated approach to cybersecurity.
  • Drive strategic programmes to deploy key security architecture that will enable Setel to get from current state to future state based on input from Cybersecurity Strategy to help align security processes with business goals and optimize overall cybersecurity posture.
  • Determine and develop specific reference architectures required based on overall security architecture for reference by other practitioners (e.g. project manager).
  • Act as the security architecture authority to review or approve technical designs from the security perspective as well as participate in or execute architecture related evaluations and/or risk assessments.
  • Review and manage cyber security baselines and policies as the minimum security controls required for safeguarding Setel’s overall information systems landscape, with the aim of ensuring the confidentiality, integrity, and availability (CIA) of critical system resources.
  • Develop and maintain solution implementation guidelines to guide project teams on all necessary cyber security elements for project deployment.
  • Ensure business processes and solutions are tested against the enterprise security architecture and its associated reference architectures and all identified risks and vulnerabilities are mitigated, to ensure all corrective measures/ controls are in place to safeguard Setel’s assets and operations.
  • Keep abreast on the development of threats as the results of the latest technology e.g. AI, Quantum Computing and develop a preventive and mitigation plan as part of improvement to security posture.
  • Cover the tasks of other Leads in the department (as and when necessary), and collaborate with both internal stakeholders and external third parties in ensuring the delivery of cyber initiatives and the compliance with requirements.
  • Assist with any related tasks, projects, and other assigned duties as and when deemed necessary.
  • Ensure adherence to the compliance of company policies, industry regulations and legal requirements. 

You're a great fit if you have:

  • Bachelor’s Degree in computer science, information systems, engineering, software engineering or a related discipline
  • Cybersecurity certifications
  • Experience of at least 10 years in technology-related areas, with a latter emphasis on Security Architecture (within the last 2-3 years)
  • Experience in translating business requirements, industry trends and cyber threat information into security architecture designs based on specific architecture principles.
  • Practice and apply knowledge of cyber security solutions landscape alongside cyber security governances, guidelines and risks
  • Experience deploying cybersecurity in the financial services industry is advantageous
  • Ability to handle sensitive information with confidentiality.
  • Excellent communication and interpersonal skills.
  • Possess skills such as DevSecOps, Artificial Intelligence Security, Enterprise Security Architecture, Cybersecurity Governance, Threat Intelligence, Cyber Drill/Red Team Exercise/Compromise Assessment, Cloud-AWS & Google.

What Makes Working With Us Awesome

  • Our people and culture: You will get to work with awesome and friendly colleagues to whom you can expect to collaborate well to deliver your work. Empowerment is given and you will get a lot of opportunities for peer-learning.
  • Availability of tools and applications: You will be provided with different tools to facilitate your work. Automate your work whenever possible so that you can focus on delivering impact for your role.
  • Development focused: Your learning and growth matters most for us. We are people centric and always ready to help our people to define what they want to make an impact on and craft their learning plan accordingly.

Cool Perks/Benefits

  • Hybrid working arrangement; Flexible working hours.
  • Relax and unwind at the leisure area with video games, board games, books, and more.
  • Wear your favourite jeans, or any cool OOTD so that you can work comfortably (in style).
  • Coffee, tea, or snacks are available for consumption at the pantry. Because you’ll be happier with a full tummy.
  • A healthy body leads to a brilliant mind. Let’s get moving with the inter-company sports team.
  • There will be workshops, talent shows, sport activities, and other events for sharing and bonding.


Personal Data Protection

Setel Ventures Sdn Bhd (“Setel”, “we”, “our” “us”) is committed to protecting and respecting your privacy. This Setel privacy statement (“Privacy Statement”) explains what personal data we collect about you, when and why we collect it, how we use it, the conditions under which we may disclose it to others, your rights to your personal data and how we keep it secure. This Privacy Statement covers both our online and offline collection activities, including personal data that we collect through online platforms such as websites, applications, third party social networks or our online and physical events, or through other third parties that we work with. Please read this Privacy Statement carefully to understand our views and practices regarding your personal data.

APPLY

About the Company

Setel Ventures Sdn Bhd