Senior Manager, Group Information Security Engineering (Endpoint)
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
Prepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About FWD Group FWD Group (1828.HK) is a pan-Asian life and health insurance business that serves approximately 34 million customers across 10 markets, including BRI Life in Indonesia. FWD's customer-led and tech-enabled approach aims to deliver innovative propositions, easy-to-understand products and a simpler insurance experience. Established in 2013, the company operates in some of the fastest-growing insurance markets in the world with a vision of changing the way people feel about insurance. FWD Group is listed on the main board of the Hong Kong Stock Exchange under the stock code 1828. For more information, please visit www.fwd.com FWD Technology and Innovation Malaysia Sdn. Bhd., known as FWD TIM, was established in late 2019. Strategically located in Kuala Lumpur, FWD TIM serves as a pivotal shared service location within FWD Group, providing services to multiple markets across the Group. FWD TIM houses a diverse and talented workforce focused on essential business and technology services such as information security, cloud operations, IT solutions delivery, digital and data, actuarial, finance, investments, and customer service, among many others. FWD TIM is dedicated to drive and deliver operational excellence and efficiency, foster innovation and ensure regulatory compliance across all business functions as well as maintain a competitive edge in the market. PURPOSE Drive FWD IT Security Engineering function as a SME for FWD Group and all Business Units (10 Business Units) in Asia Pacific. Define and partner with stakeholders in a multi-disciplined team structure, designing and implementing cloud security solutions to provide coverage across a variety of projects Lead stakeholders' and vendors engagements and providing subject matter expertise to Business Units and engagement teams Develop deep working relationships with senior executives across engagement teams. Responsible and execute large-scale project deliveries Manage teams and mentor junior resources Oversee infrastructure and microservices security architecture (inclusive of: container security architecture, data security architecture, network security architecture and operational security architecture). Review the infrastructure & microservices design against different security regulatory, industry and internal standards such as PCI DSS and CSA Containers' security guidelines and identifying the necessary security architecture requirements for the same. Review the infrastructure & microservices network and data architecture and identifying the necessary security architecture requirements for the same. Ensure that final design addresses identified threats and countermeasures during threat modelling Build knowledge capital through research and development and leveraging industry insights to deliver best of breed expertise to stakeholders. Lead the growth of cloud security practice across business units, project team and other stakeholders Drive IT Security Engineering Initiatives and Projects definition and implementation, selection of solutions and architecture, as well as define operations framework and its continuous improvement. KEY ACCOUNTABILITIES Managing and engineering endpoint protection solutions such as Microsoft Defender for Endpoint and CrowdStrike Falcon Develop and enforce endpoint hardening standards, ensuring secure configurations are rolled out and maintained throughout the asset lifecycle. Align endpoint security initiatives with the broader Information Security strategic roadmap. Automate security operations using scripting languages (e.g., PowerShell, Python, KQL) to improve efficiency and consistency. Manage and maintain configuration scanning policies to ensure endpoints and servers adhere to security baselines (e.g., CIS Benchmarks, internal hardening standards). Collaborate with cross-functional teams to deliver endpoint security programs on time and within budget. Manage device control policies and ensure compliance with regulatory and internal standards. Support integration and policy enforcement through platforms like Microsoft Intune. Drive the successful delivery of network security projects, ensuring alignment with the Group Information Security strategies and business objectives. Drive awareness and support to Group IT Security, Group IT and Business Units IT, to understand the IT Security Solutions and Processes, as well as their implications across the organization. Drive IT Security Engineering Initiatives and Projects definition and implementation, selection of solutions and architecture, as well as define operations framework and its continuous improvement. Collaborate with cross-functional teams across Business Units to ensure consistent execution of security initiatives. Partner with the Head of IT Security Engineering and Group CISO, through tracking and reporting function, to ensure regular updates to management on the IT Security Engineering Program and risks. Provide te
How well this role fits your profile.
Worked at fwd? Share your experience