Develop and review prudential policies, standards, guidelines and best practices on cyber security risk management to ensure pragmatic implementation of regulatory policies
Provide technical input on cyber risk management in new-to-market product and technology approval applications to ensure early detection of potential disruption to financial markets, technology and operations of financial industry
Facilitate knowledge sharing on cyber risk management to strengthen capacity of supervisors in cyber risk management
...
Drive enterprise-wide assessment and governance of security risks across Artificial Intelligence and emerging technologies, including GenAI misuse, adversarial machine learning, and Large Language Model (LLM) vulnerabilities.
Provide strategic oversight and advisory on compliance with Act 854, National Cyber Security Agency (NACSA) directives, Bank Negara Malaysia Risk Management in Technology (RMiT), and PDPA, ensuring the organisation maintains a robust and effective compliance posture.
Collaborate with legal and regulatory requirements, such as General Data Protection Regulation (GDPR), PDPA, Network and Information Security Directive 2 (NIS2), System and Organisation Controls 2 (SOC 2), Payment Card Industry Data Security Standard (PCI-DSS), and other applicable laws. Conduct internal security audits, gap assessments, and compliance reviews.
...