Deputy Manager, Cyber Resilience Testing at bankislammP2
, , Malaysia -
Full Time


Start Date

Immediate

Expiry Date

06 Jan, 26

Salary

0.0

Posted On

08 Oct, 25

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Cyber Resilience Testing, Red Teaming, Adversary Simulation, Penetration Testing, Threat Modeling, Vulnerability Assessments, Ethical Hacking, Network Security, Web Application Security, Cloud Security, Active Directory Exploitation, Threat Hunting, MITRE ATT&CK, Analytical Skills, Communication Skills, Leadership Skills

Industry

Banking

Description
Duties and Responsibilities As the Deputy Manager, Cyber Resilience Testing (CRT) Operations, you will play a critical role in supporting the execution of advanced cyber resilience testing, real-time attack simulations, and threat emulation exercises. Working closely with the Cyber Resilience Testing (CRT) team and reporting to the Cyber Resilience Testing Lead, you will be responsible for operating tools and infrastructure that support red teaming, adversary simulations, and cyber drills. This role combines deep hands-on technical expertise with situational awareness, allowing you to operate and adjust real-time simulations that assess the organization’s cyber defenses. You will also assist in refining cyberattack scenarios, monitoring blue team responses, and capturing operational data for post exercise analysis.   Key Performance Areas   Red Team Program Execute red teaming engagements, including adversary emulation, penetration testing, and attack simulations against the bank’s infrastructure, applications, and personnel. Conduct threat modeling, attack surface analysis, and vulnerability assessments to identify security gaps and recommend mitigations. Prepare draft reports and executive summaries for senior management, outlining findings, risks, and recommended remediation strategies. Stay updated on the latest cyber threats, attack techniques, and security trends to continuously evolve the red teaming strategy. Ensure compliance with Bank Negara Malaysia (BNM) RMiT, TIBER-MY, and other relevant regulatory and security frameworks. Information & Cyber Security Program To support information/cyber security programs such as Compromised assessment, threat hunting and Cyber Drill exercise To support a bank wide information security education and awareness campaign. Provide information /cyber security training and education to stakeholders. To provide tracking to the current cyber security programs that have been conducted   Qualification - Degree in Information Technology or any related fields.   Years of Experience Minimum 5+ years of experience in offensive security, penetration testing, or red teaming, with at least 3+ years in a leadership role 3 years job experience in Financial and Banking sector   Specific Skills/Knowledge and Certification Required Experience in IT / Information Security industry is preferred Experience in Banking operation with deep knowledge of banking system integration Strong expertise in ethical hacking, adversary simulation, and advanced penetration testing techniques.Experience with threat modeling and web application security assessments. Hands-on experience with tools such as Cobalt Strike, Metasploit, Empire, Mimikatz, Burp Suite, BloodHound, and custom-built scripts.1+ years experience using common application security testing tools (ie: Gophish, Metasploit, Burp, Owasp ZAP, WPscan, Wifi Auditing Tools, Hak5 tools.) In-depth understanding of network security, Active Directory exploitation, web application security, cloud security (AWS/Azure), and mobile security. Familiarity with threat hunting, purple teaming, and advanced attack methodologies. Strong knowledge of MITRE ATT&CK, TTPs (Tactics, Techniques, and Procedures), and modern attack frameworks. Industry certifications such as OSCP, OSCE, OSEP, CRTO, CISSP, GIAC (GCPN, GXPN, GCIH), or equivalent are highly preferred. Strong analytical and problem-solving skills, with the ability to think like an attacker and adapt strategies accordingly. Excellent communication and leadership skills, with the ability to articulate technical findings to both technical and non technical stakeholders.
Responsibilities
The Deputy Manager will support advanced cyber resilience testing and real-time attack simulations. Responsibilities include executing red teaming engagements and refining cyberattack scenarios while monitoring blue team responses.
Loading...