en
Candidates

Together, we’ll map out career-defining, life-changing pathways to achieve your career ambitions. Browse our range of services, advice, and resources.

Learn more
About Robert Walters Malaysia

Since our establishment in 2006, our belief remains the same: Building strong relationships with people is vital in a successful partnership.

Learn more

Work for us

Our people are the difference. Hear stories from our people to learn more about a career at Robert Walters Malaysia.

Learn more

Lead IT Audit & Compliance Consultant

Save job

We operate in a fast-moving, highly regulated technology environment, supporting enterprise customers across multiple regions.

About the Role

Security, compliance, and business outcomes are closely intertwined here — and this role plays a key part in making sure they stay aligned.

We’re looking for a Senior IT Audit & Security Consultant to strengthen our regional security capability. This is a client-facing role where you’ll work directly with customers, regulators, and internal stakeholders, acting as a trusted security advisor. You’ll be expected to confidently guide discussions, provide clear direction, and stand firm when security or regulatory requirements must be followed.

The Opportunity

In this role, you’ll be responsible for shaping and maintaining a strong information security posture that protects sensitive data and meets international and regional standards. You’ll be involved in more than just audits — you’ll help embed security and compliance into everyday business processes.

You will:

  • Support and lead security audits, including customer and regulatory engagements

  • Act as a key point of contact for security-related customer discussions

  • Provide regular security insights and updates to senior management

  • Work closely with business teams to ensure security measures both protect assets and support operational efficiency

What You’ll Be Responsible For

Security & Customer Engagement

  • Lead and support customer-facing security assessments, audits, and due diligence activities

  • Communicate security requirements clearly to customers and internal stakeholders

  • Confidently advise and challenge stakeholders when requests fall outside policy or regulatory expectations

  • Build trusted relationships while ensuring security standards are consistently upheld

Compliance & Regulatory Management

  • Manage compliance across frameworks such as PCI DSS, ISO/IEC 27001, and relevant regional regulations

  • Coordinate regulatory and customer audits, ensuring risks and findings are appropriately addressed

  • Partner with regional and global security teams to maintain an effective Information Security Management System (ISMS)

  • Interpret regulatory, legal, and card-scheme requirements and translate them into practical controls and processes

Risk & Security Operations

  • Ensure security risks and issues are captured within the enterprise risk management framework

  • Work with internal teams to implement effective risk treatment strategies

  • Support security incident response activities in coordination with global SOC teams

  • Provide clear and structured security reporting to senior leadership

What We’re Looking For

Experience & Qualifications

  • QSA (Qualified Security Assessor) certification — essential

  • 5–10 years of experience in cybersecurity, preferably within regulated or enterprise environments

  • Experience in security governance, audit, or advisory roles with direct customer interaction

  • Bachelor’s or Master’s degree in Cybersecurity, IT, Information Systems, or a related discipline

Certifications

  • Professional security certifications such as CISSP, CISM, ISO 27001 Lead Auditor / Implementer

  • Additional technical certifications (cloud, infrastructure, or security platforms) are a strong advantage

Skills & Attributes

  • Strong understanding of payment security and regulatory compliance requirements

  • Ability to clearly explain complex security concepts to both technical and non-technical audiences

  • Sound judgment and confidence to uphold security standards, even in challenging discussions

  • Strong collaboration skills across business, legal, risk, and technical teams

  • Experience working across multiple regions and regulatory environments

If this sounds like you — or someone in your network — feel free to reach out or share this post. Happy to chat confidentially (Kim.Chan@robertwalters.com).

Do note that we will only be in touch if your application is shortlisted.

Agensi Pekerjaan Robert Walters Sdn Bhd
Business Registration Number : 729828-T
Licence Number : JTKSM 423C

Contract Type: Perm

Specialism: Tech & Transformation

Focus: Cyber Security & Information Security

Industry: IT

Salary: Negotiable

Workplace Type: Hybrid

Experience Level: Mid Management

Location: Kuala Lumpur

Job Reference: V6QA99-C3BF8103

Date posted: 30 January 2026

Consultant: Kimberly Chan