At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone.
As pioneering innovators for over 100 years, we’re now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier, Longer, Better Lives.
To get there, we need people with tech/digital/analytics expertise and passion to help develop positive, sustainable change through digitally enhanced experiences that will impact the lives of millions of people and create a healthier future for everyone.
If you believe in developing a better tomorrow, read on.
About the Role
About the Role:
Responsible for ensuring the security and integrity of AIA's information systems and cyber environment.
Responsibilities:
- Consolidate Security Dashboard updates and ensure potential risk issues have remediation plan and addressed accordingly.
- Monitor and report on compliance with security policies, as well as the enforcement of policies within the IT department.
- Assist in performing on-going security risk assessment test and review targeting application/infrastructuresecurity matters; recommend methods for vulnerability detection and remediation; and coordinate activities on vulnerability testing by internal/external 3rd party security consultants.
- Propose changes to existing policies and procedures to ensure operating efficiency and regulatory compliance.
- Work with Security lead to develop security programs and security projects that address identified risks and business security requirements.
- Manage and coordinate cyber security assessments with vendor include vulnerability scanning, independent penetration test on IT infrastructure and applications.
- Work with Group Tech Risk and Security Operation Center to monitor and report suspicious activity.
- Support internal/external audit on compliance assessment and regulatory audit work.
- Manage and coordinate security incident response, handling and investigation process.
Requirements:
- Capability to develop a strong working relationship with the application and infrastructure teams to develop and implement controls and configurations aligned with security policies and legal, regulatory and audit requirements.
- Well versed with Group Technology Risk policies, processes and standards and external laws and regulations (e.g. BNM)
- Able to create information security policies, standards and guidelines. Oversee the approval, training, and dissemination of security policies and practices.
- Good stakeholders management skill.
Build a career with us as we help our customers and the community live Healthier, Longer, Better Lives.
You must provide all requested information, including Personal Data, to be considered for this career opportunity. Failure to provide such information may influence the processing and outcome of your application. You are responsible for ensuring that the information you submit is accurate and up-to-date.