Senior IT Manager (Security)
About the role
Reporting to the CISO, the Senior IT Manager (Security) drives all corporate IT security initiatives across the IT Division. You will lead the IT Security team in protecting infrastructure, ensuring regulatory compliance, and aligning security strategies with business objectives.
Key responsibilities
Lead the IT Security team in developing, executing, and maintaining robust information security policies, risk assessment methodologies, and mitigation plans
Manage and investigate cyber security alerts, threat intelligence, and incidents to determine root causes, drive containment, and implement long-term improvements
Oversee vulnerability assessments, penetration testing, and security reviews of existing systems to ensure defense against modern threats
Act as the Subject Matter Expert (SME) to define security configuration standards and guide project teams on integrating security controls throughout the SDLC
Drive organization-wide security awareness programs, including phishing simulations, security talks, and incident response exercises
Research emerging security technologies and evaluate AI-driven security tools alongside modern frameworks (e.g., EDR/XDR, DAM, MDM, CASB, PAM, IAM, MFA)
Deliver detailed security and incident reports for executive management and relevant statutory governing bodies
About you
Bachelor's degree in Computer Science, IT, or equivalent, with 8–10 years of experience in Information and Cyber Security
Strong hands-on experience with AWS, Microsoft Azure, and SaaS security
Deep knowledge of NIST, ISO27001, MTCS, CSA Security-by-Design (SBD), and PDPA
Familiarity with AI concepts, AI-powered security solutions, or managing security risks associated with enterprise AI adoption
CISSP, CISA, CISM, CREST, CEH, or CHFI certification is a strong advantage
Proven leadership, adaptability, and excellent stakeholder management skills with the ability to present complex technical risks to C-Level and Board executives