Back to jobs Featured

ISMS Specialist (Information and Compliance)

Job description

About our client:

We are partnering with a Global manufacturing company that is looking for a ISMS Specialist to oversee the implementation and continous improvement of their Information Security Management System (ISMS).

This role is vital to ensure compliance with international standards, lead audits and risk assessments, and drive awareness across the company.

Key Responsibilities:

  1. ISMS Execution & Governance
  • Lead the rollout, enforcement, and continual strengthening of ISMS practices across all business units and subsidiaries.
  • Act as the central authority for all matters related to IT policies, governance frameworks, and procedural guidelines.
  1. Policy Development & Regulatory Alignment
  • Create, refine, and manage IT-related policies, standards, and operating procedures that reflect current industry benchmarks.
  • Oversee compliance programs, including the achievement and ongoing upkeep of ISO/IEC 27001 certification.
  • Ensure organizational alignment with GDPR, PDPA, and global IT governance requirements established by the company.
  1. Audit Coordination & Risk Management
  • Organize and support internal audit cycles, risk evaluations, and incident response processes across the group.
  • Maintain comprehensive documentation, audit evidence, and reports, while providing direct assistance to legal and audit stakeholders.
  1. Security Awareness & Training
  • Deliver impactful training sessions and awareness initiatives to cultivate strong security and compliance culture throughout the organization.

Skills & Experiences required:

  • Education: Bachelor's degree in Information Technology, Cybersecurity, or an equivalent discipline.
  • Experience: At least five years of hands-on involvement in ISMS operations, compliance management, or IT auditing.
  • Preferred Certifications: CISM, CISSP, CCSP.
  • Mobility: Ability to travel domestically and within the region to support subsidiary operations.
  • Key Competencies:
    • Deep knowledge of ISO 27001, GDPR, and PDPA frameworks.
    • Strong communication, documentation, and cross-team coordination capabilities.
    • Collaborative working style with the ability to engage with teams across multiple locations and cultures.

To apply, please click "APPLY NOW" or email Bryan Victor at bryan.victor@ambition.com.my. Data provided is for recruitment purposes only.

Due to the volume of applications received, we regret to inform you that only shortlisted candidates will be notified.

JTK Number: JTKSM 995| Company Registration Number: 201301019088 (1048918-T)