GoKardz
Network Operation
Petaling Jaya, Selangor, Malaysia
Full Time/Permanent
Onsite
Aug 20, 2025
Contract
Remote
Aug 06, 2025
IT Security
Kuala Lumpur, Kuala Lumpur, Malaysia
Full Time/Permanent
Onsite
Jul 30, 2025
Software & Web Development
Kuala Lumpur, Kuala Lumpur, Malaysia
Full Time/Permanent
Onsite
Jul 16, 2025
Software Engineer
Seberang Perai, Penang, Malaysia
Full Time/Permanent
Onsite
May 12, 2025
Software Engineer
Kuala Lumpur, Kuala Lumpur, Malaysia
Contract
Onsite
Apr 09, 2025
Investment Operations
Kuala Lumpur, Kuala Lumpur, Malaysia
Full Time/Permanent
Onsite
Jan 28, 2025
Human Resources
Kuala Lumpur, Kuala Lumpur, Malaysia
Contract
Onsite
Nov 20, 2024
Human Resources
Kuala Lumpur, Kuala Lumpur, Malaysia
Full Time/Permanent
Onsite
Nov 18, 2024
IT Security
Kuala Lumpur, Kuala Lumpur, Malaysia
Full Time/Permanent
Onsite
Sep 30, 2024
IT Security
Kuala Lumpur, Kuala Lumpur, Malaysia
Full Time/Permanent
Onsite
Aug 13, 2024
Accounts, Finance & Financial Services
Kuala Lumpur, Kuala Lumpur, Malaysia
Full Time/Permanent
Onsite
Aug 22, 2025
Accounts, Finance & Financial Services
Kuala Lumpur, Kuala Lumpur, Malaysia
Full Time/Permanent
Onsite
Aug 22, 2025
Software & Web Development
Kuala Lumpur, Kuala Lumpur, Malaysia
Contract
Onsite
Aug 11, 2025
Software & Web Development
Kuala Lumpur, Kuala Lumpur, Malaysia
Contract
Onsite
Aug 11, 2025
Software & Web Development
Kuala Lumpur, Kuala Lumpur, Malaysia
Contract
Onsite
Aug 05, 2025
Software & Web Development
Kuala Lumpur, Kuala Lumpur, Malaysia
Contract
Onsite
Jul 21, 2025
Software & Web Development
Kuala Lumpur, Kuala Lumpur, Malaysia
Contract
Onsite
Jul 21, 2025
Lead/Manager Cloud Security Operations
IT Security (3)
Kuala Lumpur, Kuala Lumpur, Malaysia
Full Time/Permanent
First Shift (morning)
Onsite
Posted on Jul 30, 2025
Qualifications Required
Graduate
Experience Required
7 - 15 years
Description


Job Responsibilities
1. Cloud Security Management
ï‚· Administer and manage cloud-native network security controls such as Azure Network Security
Groups (NSGs), AWS Security Groups, and cloud firewall policies.
ï‚· Oversee secure network connectivity between cloud and on-premise environments, including
VPN configurations, VNet peering, ExpressRoute, and Direct Connect.
ï‚· Ensure cloud network configurations adhere to best practices for traffic segmentation, least
privilege access, and encrypted communications.


2. Threat Detection & Response
ï‚· Investigate cloud-based and network-related security alerts using tools such as Microsoft
Defender for Cloud, AWS GuardDuty, and Azure Sentinel.
ï‚· Ensure comprehensive log forwarding from cloud environments to central SIEM platforms (e.g.
Splunk, Sentinel) to enable real-time threat correlation and effective incident response.


3. Access Control & Perimeter Security
ï‚· Support Zero Trust Architecture implementation through Just-in-Time (JIT) access, Privileged
Identity Management (PIM), and conditional access policies.
ï‚· Implement network segmentation, micro-segmentation, and edge security measures using
Web Application Firewalls (WAFs), DDoS protection, and Content Delivery Networks (CDNs).


4. Secure Remote Access & ZTNA Project Support
ï‚· Lead the evaluation, implementation, and operations of Zero Trust Network Access (ZTNA) and
SASE solutions to deliver secure, policy-enforced remote access.
ï‚· Manage VPN gateway configurations across multiple platforms, including Azure, AWS, and
hybrid infrastructures.


5. Microsoft 365 Security (M365 Project)
ï‚· Support the M365 rollout by implementing network and endpoint security controls across
Exchange Online, SharePoint, OneDrive, and Microsoft Teams.
ï‚· Ensure secure access, Data Loss Prevention (DLP), and integration with Defender for Office 365,
Microsoft Purview, and cloud app security tools.
ï‚· Collaborate with identity and endpoint teams to ensure secure hybrid deployments, with a
focus on identity protection, conditional access, and endpoint hardening.


6. Endpoint Security Controls
ï‚· Implement and monitor endpoint protection on cloud-hosted and hybrid workloads using
tools such as Defender for Endpoint, CrowdStrike, or equivalent EDR/XDR solutions.
ï‚· Ensure all virtual machines and containers are onboarded to endpoint security platforms, with
anti-malware, exploit protection, and device compliance policies enforced.
ï‚· Collaborate with infrastructure and operations teams to ensure patching and vulnerability
remediation processes are consistently applied to cloud workloads.


7. Logging, Monitoring & Compliance
ï‚· Maintain full visibility of cloud network activity through flow logs (e.g. NSG Flow Logs, VPC Flow
Logs, Azure Monitor).
ï‚· Generate audit-ready reports aligned with regulatory and industry frameworks such as PCI
DSS, BNM-RMiT, and MAS TRM.
ï‚· Continuously improve monitoring and detection use cases relevant to cloud network and
endpoint activity.


8. Cloud Project Support
ï‚· Provide expert security input during cloud adoption, migration, and hybrid cloud initiatives.
ï‚· Validate secure configuration and deployment of cloud components including transit
gateways, NAT gateways, bastion hosts, and proxy servers.


9. Knowledge Sharing & Upskilling
ï‚· Stay current with evolving cloud security technologies and frameworks such as the Microsoft
Cloud Adoption Framework (CAF) and AWS Well-Architected – Security Pillar.
ï‚· Mentor junior staff and contribute to the development of internal SOPs, incident playbooks, and
operational runbooks.


Job Requirements
ï‚· Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field.
ï‚· 7+ years of experience managing cloud network security and related cloud security
operations.
ï‚· Experience implementing cloud security controls and frameworks (e.g., CIS, NIST, ISO 27001).
ï‚· Proven experience with Azure, AWS, or hybrid cloud environments with hands-on work in cloud
network security controls.
ï‚· Experience supporting Microsoft 365 security projects, especially related to secure network
access and data protection.

Required Skills
AWS
Azure
Cloud computing
Cloud Computing (AWS, Azure, Google Cloud)
English
Malay
Salary Range
Upto RM 12,000.00 Per Month
*GoKardz is recruiting on behalf of our client in the Banking sector. Powered by our cutting-edge digital identity platform, this opportunity is part of our platform-driven services that streamline and optimise talent acquisition for leading companies.
Back to Company
One card, Infinite Opportunities
Internet
4.33