Lead IT Audit & Compliance Consultant
We operate in a fast-moving, highly regulated technology environment, supporting enterprise customers across multiple regions.
About the Role
Security, compliance, and business outcomes are closely intertwined here — and this role plays a key part in making sure they stay aligned.
We’re looking for a Senior IT Audit & Security Consultant to strengthen our regional security capability. This is a client-facing role where you’ll work directly with customers, regulators, and internal stakeholders, acting as a trusted security advisor. You’ll be expected to confidently guide discussions, provide clear direction, and stand firm when security or regulatory requirements must be followed.
The Opportunity
In this role, you’ll be responsible for shaping and maintaining a strong information security posture that protects sensitive data and meets international and regional standards. You’ll be involved in more than just audits — you’ll help embed security and compliance into everyday business processes.
You will:
-
Support and lead security audits, including customer and regulatory engagements
-
Act as a key point of contact for security-related customer discussions
-
Provide regular security insights and updates to senior management
-
Work closely with business teams to ensure security measures both protect assets and support operational efficiency
What You’ll Be Responsible For
Security & Customer Engagement
-
Lead and support customer-facing security assessments, audits, and due diligence activities
-
Communicate security requirements clearly to customers and internal stakeholders
-
Confidently advise and challenge stakeholders when requests fall outside policy or regulatory expectations
-
Build trusted relationships while ensuring security standards are consistently upheld
Compliance & Regulatory Management
-
Manage compliance across frameworks such as PCI DSS, ISO/IEC 27001, and relevant regional regulations
-
Coordinate regulatory and customer audits, ensuring risks and findings are appropriately addressed
-
Partner with regional and global security teams to maintain an effective Information Security Management System (ISMS)
-
Interpret regulatory, legal, and card-scheme requirements and translate them into practical controls and processes
Risk & Security Operations
-
Ensure security risks and issues are captured within the enterprise risk management framework
-
Work with internal teams to implement effective risk treatment strategies
-
Support security incident response activities in coordination with global SOC teams
-
Provide clear and structured security reporting to senior leadership
What We’re Looking For
Experience & Qualifications
-
QSA (Qualified Security Assessor) certification — essential
-
5–10 years of experience in cybersecurity, preferably within regulated or enterprise environments
-
Experience in security governance, audit, or advisory roles with direct customer interaction
-
Bachelor’s or Master’s degree in Cybersecurity, IT, Information Systems, or a related discipline
Certifications
-
Professional security certifications such as CISSP, CISM, ISO 27001 Lead Auditor / Implementer
-
Additional technical certifications (cloud, infrastructure, or security platforms) are a strong advantage
Skills & Attributes
-
Strong understanding of payment security and regulatory compliance requirements
-
Ability to clearly explain complex security concepts to both technical and non-technical audiences
-
Sound judgment and confidence to uphold security standards, even in challenging discussions
-
Strong collaboration skills across business, legal, risk, and technical teams
-
Experience working across multiple regions and regulatory environments
If this sounds like you — or someone in your network — feel free to reach out or share this post. Happy to chat confidentially (Kim.Chan@robertwalters.com).
Do note that we will only be in touch if your application is shortlisted.
Agensi Pekerjaan Robert Walters Sdn Bhd
Business Registration Number : 729828-T
Licence Number : JTKSM 423C
About the job
Contract Type: Perm
Specialism: Tech & Transformation
Focus: Cyber Security & Information Security
Industry: IT
Salary: Negotiable
Workplace Type: Hybrid
Experience Level: Mid Management
Location: Kuala Lumpur
FULL_TIMEJob Reference: V6QA99-C3BF8103
Date posted: 30 January 2026
Consultant: Kimberly Chan
kuala-lumpur tech-transformation/it-security 2026-01-30 2026-03-31 it Kuala Lumpur MY Robert Walters https://www.robertwalters.com.my https://www.robertwalters.com.my/content/dam/robert-walters/global/images/logos/web-logos/square-logo.png true