Moomoo logo

Head of Information Security

moomoo

On-site
Kuala Lumpur, Federal Territory of Kuala Lumpur
Full-time
Manager
5+ yrs
Salary not listedPosted 12h ago

Real job — pulled straight from moomoo’s careers page · Verified August 19, 2026 · No reposts.

Job description

moomoo is hiring a Head of Information Security — a full-time, based in Kuala Lumpur, Federal Territory of Kuala Lumpur role. Apply directly on moomoo's careers page below.

Head of Information Security

Location: Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

Workplace: on_site

Employment Type: full

Description

About the Role

Moomoo Malaysia is looking for an independent and proactive Head of Information Security to lead the company's local information security governance and regulatory compliance initiatives.

This is a hands-on individual contributor, the ideal candidate should be familiar with Malaysia's regulatory landscape, particularly within the capital markets and financial services industry, and be comfortable working in a fast-paced startup environment.

Responsibilites

  • Act as the primary Information Security representative for Moomoo Malaysia.
  • Coordinate and collaborate closely with the Global Security Center to ensure local regulatory requirements are implemented effectively.
  • Serve as the main liaison with Malaysian regulators (e.g. Securities Commission Malaysia, Bursa Malaysia and other relevant authorities) on information security, cybersecurity, technology risk and other related matters.
  • Ensure compliance with local regulatory requirements on Cybersecurity Frameworks, IT Security Standards, Regulatory Outsourcing Guidelines etc and internal global security policies and etc, including mandatory breach notification obligations.
  • Support regulatory inspections, audits, thematic reviews, information security assessments and etc.
  • Review, localize and implement information security policies, standards, and procedures in alignment with both global security requirements and Malaysian regulations.
  • Coordinate internal stakeholders across Compliance, Legal, Risk, Technology, and Business teams on security-related matters.
  • Monitor regulatory developments and provide recommendations on cybersecurity and information security best practices.
  • Support incident response coordination and regulatory reporting for security incidents within prescribed timelines.
  • Support local cyber resilience, DR/BCP testing activities.
  • Deliver local security awareness training and programs required adapted from global materials etc

Requirements

  • Bachelor's Degree in Information Security, Computer Science, Information Technology, Cybersecurity, or a related field.
  • 5-8 years of relevant experience in Information Security, Cybersecurity, IT Risk, Technology Risk, or Information Security Governance.
  • Familiar with Malaysian regulatory requirements relating to cybersecurity and information security, particularly from the Securities Commission Malaysia (SC) or other financial regulators.
  • Experience within a brokerage firm, investment bank, capital markets, fintech, or financial services environment will be a strong advantage.
  • Able to work independently with minimal supervision and manage multiple stakeholders across regional and global teams.
  • Understanding of information security frameworks such as ISO 27001, NIST Cybersecurity Framework, or equivalent.
  • Experience supporting regulatory audits and examinations.
  • Comfortable working in a dynamic, fast-paced startup environment.
  • Strong communication and stakeholder management skills, with the ability to engage regulators, senior management, and regional teams effectively.
  • Professional certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Auditor, or equivalent will be an added advantage.
  • Language proficiency in English, Malay is a must; Chinese/Mandarin is highly advantageous given global team collaboration.
  • Bumiputera candidates are encouraged to apply.

Benefits

We offer a comprehensive and holistic work experience and package as follows:

  • 13 months contractual bonus
  • Competitive compensation & benefits.
  • Performance bonus
  • Convenient Access to Public Transport
  • Exam/Certification Sponsorship
  • Career Development Opportunities in the Financial Services Industry
  • Company Team Building & Bonding Activities
  • Free-Flow Pantry Snacks & Drinks
  • Dynamic, Multinational Working Environment

Please note that only short-listed candidates will be contacted. Thank you.

Get Head of Information Security jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Bridgephase logo

SAP Project Manager

Remote · US-eligible
✓ From careers page· 28m ago
Potomacwaveconsulting logo

Physical Security Specialist

$75k–$95kWashington, DC
✓ From careers page· 29m ago
Escape logo

Security Advocate, AI AppSec

Europe
✓ From careers page· 1h ago
Hovione logo

Cyber Defense Center Senior Analyst

Lisbon, PT
✓ From careers page· 1h ago

Frequently asked questions

What skills are required for Head of Information Security at moomoo?

The required skills for Head of Information Security at moomoo include: Cybersecurity, ISO 27001, CISSP, CISM.

What is the seniority level for Head of Information Security at moomoo?

Head of Information Security at moomoo is a Manager level position.

How do I apply for Head of Information Security at moomoo?

You can view the full description and apply for Head of Information Security at moomoo on EchoJobs: https://echojobs.io/job/moomoo-head-of-information-security-srw5f.