job description
Join FWD Life Insurance Corporation as a Senior Manager of Group Information Security and lead the charge in safeguarding our digital assets in the dynamic insurance landscape. Based in the vibrant hub of Kuta, Bali, this role offers a unique opportunity to shape cybersecurity strategies while enjoying the island’s unparalleled work-life balance.
In this high-impact position, you will oversee the development and implementation of enterprise-wide security policies, ensuring compliance with global standards (ISO 27001, NIST, GDPR) and mitigating risks across our digital infrastructure. Collaborate with cross-functional teams to embed a culture of security awareness, drive incident response initiatives, and innovate solutions to stay ahead of emerging threats.
FWD Life Insurance is committed to fostering a diverse, inclusive, and forward-thinking environment. If you’re a strategic leader with a passion for cybersecurity and a vision to protect what matters most, we invite you to apply and be part of our mission to redefine insurance through technology and trust.
Responsibility
- Develop, implement, and maintain a comprehensive Group Information Security Framework aligned with industry best practices and regulatory requirements.
- Lead risk assessments and vulnerability audits, providing actionable insights to senior leadership and stakeholders.
- Oversee incident response planning, including detection, containment, and recovery from cyber threats.
- Drive security awareness programs to educate employees on cybersecurity risks and best practices.
- Collaborate with IT and business units to integrate security controls into systems, applications, and processes.
- Monitor and evaluate third-party vendor risks, ensuring compliance with security policies and contractual obligations.
- Stay abreast of emerging threats and technological advancements, recommending proactive measures to enhance security posture.
- Manage and mentor a team of security professionals, fostering a culture of excellence and continuous improvement.
Qualifications
- Bachelor’s or Master’s degree in Computer Science, Information Security, Cybersecurity, or a related field.
- Minimum 10 years of experience in information security, with at least 5 years in a managerial role.
- Professional certifications such as CISSP, CISM, CISA, or GIAC are highly preferred.
- Proven expertise in enterprise security architectures, including firewalls, IDS/IPS, SIEM, and endpoint protection.
- Deep understanding of compliance frameworks (ISO 27001, NIST, GDPR, PCI-DSS) and risk management methodologies.
- Strong leadership and stakeholder management skills, with the ability to influence at all levels of the organization.
- Excellent communication and presentation skills, capable of translating technical concepts for non-technical audiences.
- Experience in the insurance or financial services sector is a significant advantage.