Overview
Security Operations Lead (East Asia) Jobs in Petaling Jaya, Selangor, Malaysia at Europ Assistance East Asia
Title: Security Operations Lead (East Asia)
Company: Europ Assistance East Asia
Location: Petaling Jaya, Selangor, Malaysia
Role Summary:
The Security Operations Lead will play a pivotal role in strengthening the cybersecurity posture across East Asia region. This regional role is responsible for leading security operations, incident response, vulnerability management, and control oversight in alignment with global standards and regulatory frameworks.
The individual will work closely with the Central Security Operations (SecOps) team, IT/security teams, and external vendors to ensure seamless execution of security strategies and continuous improvement of operational resilience.
Key Responsibilities:
Security Operations & Incident Response
- Act as the first responder for security incidents across East Asia, ensuring timely triage, escalation, and resolution.
- Collaborate with the central SecOps team to coordinate threat detection, incident response, and post-incident reviews.
- Develop and maintain incident response playbooks and ensure integration between SOC, CSIRT, and regional teams.
- Monitor and optimize security tools (e.g., SIEM, EDR, DLP, VPN, MFA) and ensure alignment with regional standards.
Vulnerability Management
- Lead vulnerability identification, assessment, and remediation across internal and external perimeters.
- Manage deployment and maintenance of vulnerability management tools.
- Coordinate penetration testing and follow up on remediation activities.
- Maintain documentation and produce regular reports on vulnerability KPIs.
Cyber Risk & Control Oversight
- Support implementation & management of ISO27001, TISAX, NIST CSF, CVSS, and other frameworks.
- Conduct second-level control assessments and validate effectiveness of first-level controls.
- Develop and monitor KPIs/KRIs to measure control performance and risk exposure.
- Prepare risk and control reports for senior management and governance committees.
Governance & Stakeholder Engagement
- Liaise with IT teams, business units, vendors, and HQ to ensure cohesive execution of security initiatives.
- Translate global security policies into region-specific operational processes.
- Support business continuity and disaster recovery planning & testing (BCP/DR).
- Promote security awareness and capability-building across regional teams.
Qualifications & Experience:
- Bachelor’s or Master’s degree in Cybersecurity, Information Security, or related field.
- 8-10 years of experience in Security Operations, Incident Management, or Vulnerability Management.
- Hands-on experience with Microsoft Defender, Intune, Splunk, Meraki, Fortinet, and other security tools.
- Strong understanding of cloud security (Azure, AWS, GCP) and Zero Trust Architecture.
- Familiarity with ISO27001, TISAX, NIST, CVSS, and other regulatory frameworks.
- Experience with scripting (Python, PowerShell) and automation of security processes.
- Fluent in English; regional language skills are a plus.
Preferred Certifications:
- CISSP, CISM, or equivalent
- Microsoft Certified: Security Operations Analyst Associate
- Splunk Certified Power User or Admin
- ISO27001 Lead Implementer or Auditor