Save Job Back to Search Job Description Summary Similar JobsStrong work cultureCompetitive SalaryAbout Our ClientMy client is a high-tech regional hub in Penang shaping the future of power through advanced, large-scale manufacturing.Job DescriptionLead enterprise cybersecurity architecture and security improvement initiatives across IT and OT environments.Analyze cyber threat intelligence and emerging attack techniques to identify organizational risks.Correlate threat intelligence, vulnerabilities, and attack methodologies to develop effective defensive strategies.Drive vulnerability and threat management programs, including prioritization and remediation of security findings.Manage penetration testing engagements and oversee remediation of identified vulnerabilities.Lead security monitoring, threat detection, threat hunting, and incident response activities.Design and implement security controls to strengthen enterprise security posture.Support development of security policies, standards, and governance frameworks.Collaborate with GRC teams on risk governance, compliance, and security assessments.Conduct vendor and third-party security risk assessments.Manage cybersecurity projects, vendors, and cross-functional stakeholders.Support security operations across both enterprise IT and OT environments, including OT threat detection and remediation activities.The Successful ApplicantA successful Staff IT Security Engineer should have:A degree in Information Technology, Cybersecurity, or a related field.Strong knowledge of IT security principles and best practices.Experience with security tools such as firewalls, intrusion detection systems, and vulnerability scanners.Familiarity with regulatory compliance standards and frameworks.Proven ability to manage and respond to cybersecurity incidents effectively.Analytical thinking and problem-solving skills.Excellent communication and teamwork abilities.8+ years of experience in cybersecurity, security engineering, security operations, or security architecture.Strong expertise in cyber threat intelligence, attack techniques, incident response, and vulnerability management.Hands-on experience with SIEM, EDR/XDR, threat detection, and security monitoring platforms.Strong understanding of security architecture, network security, and enterprise security controls.Proven experience leading remediation programs and driving risk reduction initiatives.Experience managing penetration testing activities and security assessments.Working knowledge of IT and OT security environments.Familiarity with ISO 27001, ISMS, risk governance, and security policy development.Strong stakeholder management, vendor management, and project leadership capabilities.Preferred ExperienceOT/ICS security experience.Experience with NIST, ISA/IEC 62443, or Purdue Model.Third-party/vendor security review experience.Cloud security experience (Azure, AWS, GCP).Security certifications such as CISSP, CISM, GCIH, GCIA, GICSP, or equivalent.What's on OfferCompetitive salary ranging from MYR 194400 to MYR 237600 annually.Comprehensive benefits package.Permanent position within a stable industry.If you are ready to contribute to IT security in the industrial and manufacturing sector in Pulau Pinang, we encourage you to apply.ContactRyan WongQuote job refJN-082026-7086348Phone number+60323024060Job summaryFunctionITSpecialisationSecurityWhat is your area of specialisation?Industrial / ManufacturingLocationPenangContract TypePermanentConsultant nameRyan WongConsultant contact+60323024060Job ReferenceJN-082026-7086348