Job title: Cyber & IT Risk Manager
Location: Malaysia
World-changing careers, enabled by Johnson Matthey. With more than 200 years history, join us and help to accelerate the transition to net-zero! As a Cyber & IT Risk Manager, you’ll contribute to JM’s mission as a world leader in sustainable technology, transforming energy and reducing carbon emissions for a cleaner, brighter future.
The role:
As a Cyber & IT Risk Manager , you will help drive our goals by:
Cyber and IT risk management
• Develop, implement, schedule and drive a cyber and IT risk management program which includes regular assessment, prioritisation, and review of remediation and mitigation activities, with clearly defined management ownership.
• Ensure that the risk management program is aligned with business priorities and risk appetite, assessing and clearly communicating those risks in a non-technical, easily digestible manner that ensures all stakeholders can make informed decisions on these risks.
Cyber and IT controls assurance
• Developing, maintaining and operating cyber and IT controls assurance processes, including being responsible for the JM ITGC framework and ensuring system owners understand their responsibilities.
• Conduct thorough assessments of control environments, systems, processes, and practices to identify control gaps, including those associated with audit actions, customer and stakeholder requirements. Ensure effective action is taken to resolve any issues and identify root causes and remediations that can be addressed through continual improvement.
Cyber and IT horizon scanning
• Keep up to date with regulatory and legislative developments relating to cyber and IT, identifying and assessing any changes that are relevant to JM and developing recommendations and action plans, communicating these as necessary to senior management.
• Keep up to date with best practices in risk and controls management, applying this knowledge where applicable to deliver improvements that benefit JM.
Key skills that will help you succeed in this role:
• Knowledge and experience of cyber and IT controls and supporting associated audits
• Ability to communicate with business stakeholders to articulate cyber and IT risks in business terms. Technical and/or practical experience of:
• Cyber security controls/capabilities and relevant standards e.g. ISO27001
• IT controls implementation and assurance, including but not limited to IT general controls
• Enterprise software capabilities and technologies, including but not limited to ERP, CRM, enterprise operating systems (e.g. Windows/Linux)
• Relevant legislation such as NIS2, GDPR and Computer Misuse Act
• Relevant industry standards such as MITRE and NIST
• Risk management best practices
Even if you only match some of the skills, we’d love to hear from you to discuss further!
What we offer:
We make sure salaries are fair, competitive and aligned to individual roles, experience and responsibilities. We are also supportive of hybrid and flexible working and where applicable, offer life, medical and other benefits that support our employees’ financial and physical wellbeing, such as:
• Retirement savings
• Life and disability insurance
• Commuter allowances and loans
• Medical plans / health assessments
Ready to make a meaningful impact on your career and the environment? Join us and help shape a sustainable future while advancing your career!
At JM, inclusivity is central to our values. We create an environment where everyone can thrive, embracing diverse perspectives to tackle challenges and ensure all colleagues feel valued and connected.
For any queries or accessibility requirements, please contact GlobalRecruit@matthey.com. We will work with you to make suitable adjustments at any stage of the recruitment process. All conversations are confidential, and your feedback is welcome to help us provide an accessible and positive recruitment experience.
Closing date for applications: This job advertisement will be posted for a minimum of 2 weeks, early application is advised.
#LI-JY1
To submit your application, please click the "Apply" button online.
All applications are carefully considered and your details will be stored on our secure Application Management System. This is used throughout Johnson Matthey for the selection of suitable candidates for our vacancies as they arise. Johnson Matthey respects your privacy and is committed to protecting your personal information.
For more information about how your personal data is used please view our privacy notice: Johnson Matthey Privacy Notice. By applying for this role and creating an account you are agreeing to the notice.
Johnson Matthey Plc is an equal opportunities employer and positively encourages applications from suitably qualified and eligible candidates regardless of sex, race, disability, age, sexual orientation, marriage or civil partnership, pregnancy or maternity, religion or belief.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Are you ready to make a difference in your career while contributing to a sustainable future? Johnson Matthey is on the lookout for a passionate Cyber & IT Risk Manager to join our team in Kuala Lumpur, Malaysia. With over 200 years of history, we are a leader in promoting technologies that accelerate the transition to net-zero carbon emissions. In this role, you'll be at the forefront of developing and implementing a robust cyber and IT risk management program that aligns with our business goals. Your expertise will help us identify and assess risks, ensuring that all stakeholders can understand and make informed decisions about these vital matters. You'll be responsible for maintaining our cyber and IT controls assurance processes and ensuring compliance with relevant regulations such as NIS2 and GDPR. Engaging with stakeholders in a clear and non-technical manner, you'll drive effective communication around our risk appetite and priorities. Besides, your knowledge of various industry standards will be invaluable as you conduct assessments to identify and resolve control gaps effectively. At Johnson Matthey, we believe that inclusivity lies at the core of our values, and we strive to create an environment where everyone can thrive. If you're looking for a place where your skills and expertise can truly shine while making an impact on the environment, we want to hear from you! Come and help us shape a cleaner, more sustainable future while advancing your career in a supportive and flexible working environment.
Join Johnson Matthey as an Associate Quality Systems Engineer to contribute to sustainable solutions while ensuring quality compliance.
We are in search of an experienced M365 Engineer to manage and optimize our Office 365 environments and Active Directory systems remotely.
Seeking a skilled MS Dynamics CRM Architect to design robust solutions using Microsoft Dynamics 365 Customer Engagement.
Join CACI as a SIGINT Analyst, where you'll leverage your expertise in digital network exploitation to support vital intelligence operations for the US Army.
Join Visa as a Sr. Site Reliability Engineer and make an impact in the payments technology industry.
Join ServiceNow as a Senior Problem Manager and help drive innovative solutions to enhance our cloud services.
As an Information Security Analyst at Cambium Assessment, you will play a critical role in advancing their Information Security program.
Join Avalon Healthcare Solutions as a Technical Integration Lead and play a pivotal role in enhancing healthcare delivery through innovative IT solutions.
Become a vital part of Dailymotion's team as a Senior Security Engineer, dedicated to safeguarding digital resources against cyber threats.
Together for a cleaner, healthier world. Motivated by our vision, united by our values, we do what’s right. Make a difference, to create a cleaner and healthier world, today and for future generations. At Johnson Matthey we are inspired by our...
7 jobsSubscribe to Rise newsletter