We are seeking a highly skilled and proactive Information Security Manager to join our team. The successful candidate will play a crucial role in Eastspring Regional team ensuring the security and compliance of project / application implementation, with a particular focus on Cloud services and technologies for all business units.
•Conduct security-by-design reviews on new programs, initiatives, projects, Cloud services and technologies regionally (in-house development, Commercial Off-The-Shelf, SaaS), ensuring sufficient documentation for compliance / audit.
•Collaborate with Group and Regional information security teams, as well as business stakeholders, to ensure project implementation aligns with security controls in accordance with policies, standards, guidelines, and regulations.
•Take part in the security architecture blueprint and design review process for the Cloud hosted solutions.
•Ensure critical vulnerabilities are tracked and remediated prior to application go-live.
•Analyse, review, and approve non-standard software/technology implementations regionally.
•Perform ad-hoc and periodic reviews of Proxy/Network/Firewall requests, designs, and configurations in Eastspring.
•Provides advisory and consultation to business units, business owners, and project teams for any Cloud Security related matters.
•Create a culture of security-by-design awareness by conducting related training for LBUs and other relevant stakeholders.
•Create, maintain, and update relevant security policies, standards, and operating procedures for Eastspring.
•Support the team leader with any assigned security operation tasks related to Identity Access Management, endpoint security, network security, data protection, DLP, VAPT, security alerts, and incidents.