Director, Group Information Security – Cyber Fusion Centre (CFC)
FWD
APAC/Oceania, Malaysia, Kuala Lumpur
Oops! You need to have an account to use this feature
Sign up to access features including all filters, job matching, dashboard, apply service, etc.
Compatibility Score
Compatibility Score / Job Matching
This unique feature shows a score indicating how closely this job matches the preferences you set in your profile.
Access to this feature requires signing up.
Salary
Rank
Director
Responsibility
Design/Transform
Scope
Regional
Workplace
100% in office
Functions
IT
Reports to
Group Head of GIS
Level
N-2
Travel Max:
0%
Posting Date
11-27-2025
Description
This role will be instrumental in shaping the strategic direction and execution of the Group’s wide cyber defense, threat intelligence, and incident response capabilities across all markets. Reporting directly to the Group Head of GIS, this role ensures that FWD maintains a resilient, intelligence-driven cybersecurity posture aligned with regulatory requirements, industry best practices, and enterprise risk frameworks.
Constantly establish and maintain an up-to-date, broad and comprehensive understanding of the evolving threat landscape, with the right strategy, tools, people, and culture in place; ensuring adherence to regulatory demands and protecting group-wide critical data assets and systems against vulnerabilities and failures to mitigate reputational and cybersecurity risks, demonstrating that it is safe and secure to do business with FWD.
Serve in a senior leadership role with full management responsibility across diverse cyber defense functions—including Threat Intelligence, Threat Hunting, Security Operations, Incident Response, Digital Forensics, Vulnerability Management, Insider Risk Management, Data Protection —providing strategic direction and consultation to C-suite senior stakeholders across all FWD markets, with a critical impact on business continuity, operational resilience, and the Group’s overall cybersecurity maturity.
Key Responsibilities
Threat Detection & Response Efficiency
- Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR) for critical incidents.
- Percentage of incidents contained within defined SLA timelines.
- Reduction in false positives through improved detection tuning and automation.
Threat Intelligence & Hunting Maturity
- Number of validated threat intelligence reports disseminated to stakeholders.
- Frequency and effectiveness of threat-hunting exercises conducted across markets.
- Integration rate of external threat feeds and intelligence platforms into operations.
Incident Management & Forensics
- Percentage of incidents with completed forensic investigations and root cause analysis.
- Timeliness of incident reporting and escalation across all markets.
- Quality and completeness of post-incident reports and lessons learned documentation.
Vulnerability & Penetration Testing Coverage
- Percentage of critical assets covered by regular vulnerability scans and penetration tests.
- Time to remediate high-risk vulnerabilities across business units.
- Reduction in recurring vulnerabilities through improved remediation tracking.
Security Operations & Monitoring
- Uptime and performance of SIEM, SOAR, and XDR platforms.
- Coverage of continuous monitoring across cloud, on-prem, and third-party environments.
- Number of anomalies detected and investigated per reporting cycle.
Data Protection & Insider Risk Metrics
- Number of insider risk alerts investigated and resolved.
- Coverage of data loss prevention (DLP) controls across sensitive data flows.
- Reduction in unauthorized access incidents and data handling violations.
Global Event & Risk Readiness
- Number of global threat scenarios simulated and tested annually.
- Timeliness and effectiveness of response to geopolitical or global cyber events.
- Engagement level of local teams in global cyber drills and tabletop exercises.
Stakeholder Engagement & Satisfaction
- Feedback score from internal stakeholders on Cyber Fusion Centre support and responsiveness.
- Number of cross-functional engagements and collaborative threat response initiatives.
- Quality of executive reporting and decision-making support provided.
Cyber Fusion Centre Maturity & Transformation
- Achievement of maturity milestones aligned with frameworks (e.g., MITRE ATT&CK, NIST CSF).
- Successful integration of Cyber Fusion capabilities into digital and cloud transformation programs.
- Increase in automation and orchestration coverage across incident response workflows.
- Implementation of secure-by-design principles in threat detection and response architecture.
External and Internal Contacts
- Group CISO
- Group CTOO
- Group CRO and 2LOD
- Market CTOs, CTOOs and CROs
- Market BISOs
- Group and Business Units Internal Audit
- External Auditors
- Vendors and/or Service Providers
- Group Head of Infrastructure & Cloud
- Group Head of Application
- Head of Enterprise Architecture
- Group Head of Shared Services – TIM, VTC, CTC
- Head of Application Delivery
- Head of IT Strategy
Qualification & Requirements
Qualifications / Experience
-
Master or Degree from Information Technology, Engineering or equivalent discipline.
-
More than 15 years’ experience in Information Technology, Information Security Engineering and/or Identity
-
Demonstrated experience in leading multiple stakeholders focusing on critical problem resolution in pressured situations.
-
Experience supporting cyber security incident management in a large corporation.
-
Demonstrated people leadership and stakeholder management skills in a multi-cultural environment.
-
Strong communication and presentation skills with ability to influence and negotiate with senior stakeholders across different markets and cultures to achieve desired outcome for the benefits of the organization.
-
CISSP, CISM, CISA, CRISC or ISO27001 Certifications required.
Knowledge & Technical Skills
-
Broad and comprehensive understanding of Financial Services industry (insurance in particular).
-
Strong knowledge on Security Strategy, Architecture, Threat Analysis & Defence, Threat Intelligence & Detection, Cyber Forensics, Cyber Risk Management and Emerging Technology Synthesis.
-
Prior experience in crowd strike, Splunk or equivalent SIEM/ EDR/XDR technologies and associated service providers.
-
Strong verbal and written communication skills, including the ability to provide technical thought leadership on security incident investigation calls with other technology teams, and the ability to translate and simplify complex technical concepts for consumption by non-technical audiences.
-
Demonstrated experience working globally and building multi-national teams is key, as well as the ability to lead through both organizational structures and positive influence.
-
Comprehensive and relevant KRIs and metrics for Technology Assurance and Information Security Teams.
Competencies
-
Leadership and coaching skills
-
Senior Stakeholder Management skills
-
Strategic Planning
-
Change Management
-
Business and Financial Acumen
-
Strong and Effective Communication, Influencing and Negotiation skill
-
Advisory and Consultative skills
-
Global Mindset and Transdisciplinary Thinking
-
Conflict management
-
Negotiation Skills
-
Strategic Problem Solving and Decision Making
Benefits
No information available.
Company Profile
FWD
Industry
Insurance
Revenue
$372M
Employees
6,100
Fortune 500 Rank
NA
Global 500 Rank
NA
Clicking the link below will open a new window in your browser where you can apply directly to this role. Please check out our Pricing Plans if you’d like us to apply to jobs on your behalf.
