Highly accomplished and results-oriented IT professional with extensive experience in cybersecurity, technology risk management, and IT project management within the financial services and other industries. Proven ability to develop and implement robust security strategies, manage technology risks, ensure regulatory compliance, and lead complex IT projects. Adept at collaborating with stakeholders at all levels to achieve organizational objectives.
Overview
27
27
years of professional experience
2029
2029
years of post-secondary education
4
4
Languages
Work History
Group Chief Information Security Officer
Maybank Berhad
08.2020 - Current
Oversee and manage the bank's overall information security strategy and operations
Develop and implement cybersecurity policies and procedures to protect sensitive information and assets
Lead the response to cybersecurity incidents and breaches to minimize impact and ensure quick recovery
Conduct risk assessments and security audits to identify potential vulnerabilities and mitigate risks
Collaborate with other departments to integrate security best practices into business processes and technologies
Keep abreast of the latest threats, regulations, and security technologies to continuously improve the organization's security posture
Provide regular reports and updates to senior management and the board of directors on the bank's cybersecurity status and initiatives
Head, Risk Management, Group Technology
Maybank Berhad
05.2013 - 08.2020
Managed technology risk within IT and ensured regulatory compliance with technology aspects
Developed cyber risk management frameworks and assessments
Developed and implemented technology risk frameworks and toolkits
Developed datacenter assessment checklists
Established technology risk officer roles across the group
Established a Group Technology Risk Committee to oversee IT incidents and initiatives undertaken by Risk Management
Established a project quality assessment toolkit to ensure adherence of projects with the Bank's policies and processes
Ensured compliance with group IT frameworks, policies, guidelines/procedures, and methodologies
Oversaw the functions of surveillance of IT risk and business continuity management controls and to ensure effective reporting of non-compliance to respective management stakeholders
Collaborated and managed inter-dependency deliverable and governing bodies
Facilitated periodic formal discussions with the Business to raise IT Risk awareness and ensure alignment between IT Risk and business objectives
Oversaw the development of IT Risk Training and Knowledge Management initiatives
Conducted IT Risk presentations to internal and external parties
Senior Manager, IT Advisory Services
Ernst & Young
03.2010 - 05.2013
Provided consulting on IT Project Management and oversaw Programs
PETRONAS - Volumetric Pricing Method Program: Led the Project Management Office initiative for the program; provided consulting and guidance to Project Managers on IT initiatives; provided regular updates to Project Directors, Steering Committee Members and CEO on program progress, investment, and savings; tracked utilization and maintained program revenue; and involved with IT budgeting
Ramunia - ERP Implementation: Led the Project Management Office initiative for the implementation and managed 3rd party vendors on behalf of the client; provided regular updates to Project Directors, Steering Committee Members, CFO and CEO on program progress, issues, required direction, and risks; and involved with change management for the ERP implementation
Malaysia Airline Systems Sdn Bhd (MAS): Led initiatives to transform and recover the business, including the Game Changers plan and Recovery plan; project-managed the launch of the new premium Short Haul; engaged extensively with Strategic Procurement on contract renegotiation and vendor rationalization; and implemented new policies for revenue generation for Operations and implemented incentives and right sizing of manpower to reduce costs
Project Manager
Electronic Data Systems IT Services (Malaysia) Sdn Bhd (EDS an HP Company)
10.2006 - 03.2010
Managed new system implementation projects, including planning, organizing, controlling, and managing day-to-day project activities, and coordinated with the project team for successful project execution with effective cost savings
CIMB Transformation Project: Provided cost savings for CIMB in terms of operational cost and increased EDS ROI by managing consolidation of Firewalls within the CIMB environment, and Implementation of Network Intrusion Detection System (IDS) with 24x7 monitoring
CIMB Post Contract Verification Asset Audit: Managed Post Contract Verification Asset Audit project for Billing of services of IT equipment supported by EDS for CIMB
Server Virtualization at CIMB, Bangi Data Center: Implemented virtualization of Windows Servers & Midrange Servers
VCC 24x7 monitoring for Wintel & Midrange Servers for CIMB: Implemented VCC project for Unix & Midrange server 24x7 monitoring
Automation of Task Schedulers for Wintel Servers
Cron Jobs and End of Day Batch for Midrange Servers for CIMB: Implementation of CA AutoSys
VCC 24x7 monitoring for Wintel & Midrange Servers for AEON Jusco: Implemented VCC project
Automation of Task Schedulers for Wintel Servers
Cron Jobs and End of Day Batch for Midrange Servers for AEON - Jusco: Implemented CA AutoSys
Delivery Improvement Plan for RHB: Identified 5 Initiatives for the service delivery improvement for RHB
Planned, implemented and managed the successful implementation of the Delivery Improvement plans
RHB Transformation: Identified areas that would be able to transform to the ideal work process in order to increase HP ROI and improve delivery service to RHB
ING Deployment Project: Coordinated with the Sales team and managed the deployment team to deploy new Desktops, Servers, and Notebooks for ING according to the agreed SOW
AEON-Jusco Service Improvement Project: Managed all PM's and SPG group on the project deliverables and project costing for the Service Improvement Plan
Senior Technical Consultant
Formis Computer Services Sdn Bhd
04.2006 - 10.2006
Provided technical consulting to financial institutions, proposing new solutions to ease operations and further enhance their current systems
Provided professional services for solutions to be effective for both operations and cost, as well as preparing proposals for customers
Negotiated with 3rd Party Vendors for the Proposals
Projects included proposing an Anti-Money Laundering Solution for AmBank and a new Loan Processing System for Hong Leong Bank
Project Manager
Symphony Global Sdn Bhd
05.2000 - 04.2006
Managed banking software and hardware system integration and implementation projects
Held roles including Project Manager, Technical Team Lead, System Engineer, System Analyst, and Product Specialist
Worked with various software and platforms, including Windows NT 4.0/2000, Windows 98/95, Microsoft SQL 7.0, HP-UX, and IBM AS/400
Managed 3rd party interfaces to banking retail systems
Involved in project implementation of new Banking Software due to bank mergers for Bumiputra Commerce Bank (BCB), Bank Muamalat, Alliance Bank Berhad (ABB), Eon Bank Berhad (EBB)
Led teams of 10-15 members
Installed and maintained network equipment
Key projects included: BUMIPUTRA COMMERCE BANK MERGER BANKING SOFTWARE - 2000, MUAMALAT BANK BANKING SOFTWARE - 2000, MUAMALAT BANK BANKING SOFTWARE - 2000/2001, MEPS IMPLEMENTATION - 2001, EON BANK BANKING MERGER BANKING SOFTWARE - 2002, ALLIANCE BANK BANKING MERGER - 2003
System Support Engineer
QSM Systems (M) Sdn Bhd
01.1998 - 03.2000
Involved in construction software implementation and system integration
Worked as a System Engineer
Worked with Windows NT Server & Workstation, Novell Server, Windows 98 & 95, Microsoft SQL 7.0, and Visioner Paperport
Education
Masters - Information, Communication and Technology Management
Asia e University
MCP, MCSE - Microsoft Certified Professional, Microsoft Certified Software Engineer
NotaAsia (M) Sdn Bhd
01.2002 - 01.2003
Higher Diploma - Computer Systems
Asia Pacific Institute of Information Technology
01.1997 - 01.1998
Diploma - Computing and Information Technology
Asia Pacific Institute of Information Technology
01.1996 - 01.1997
Skills
Cybersecurity Strategy development & implementation
undefined
Timeline
Group Chief Information Security Officer
Maybank Berhad
08.2020 - Current
Head, Risk Management, Group Technology
Maybank Berhad
05.2013 - 08.2020
Senior Manager, IT Advisory Services
Ernst & Young
03.2010 - 05.2013
Project Manager
Electronic Data Systems IT Services (Malaysia) Sdn Bhd (EDS an HP Company)
10.2006 - 03.2010
Senior Technical Consultant
Formis Computer Services Sdn Bhd
04.2006 - 10.2006
MCP, MCSE - Microsoft Certified Professional, Microsoft Certified Software Engineer
NotaAsia (M) Sdn Bhd
01.2002 - 01.2003
Project Manager
Symphony Global Sdn Bhd
05.2000 - 04.2006
System Support Engineer
QSM Systems (M) Sdn Bhd
01.1998 - 03.2000
Higher Diploma - Computer Systems
Asia Pacific Institute of Information Technology
01.1997 - 01.1998
Diploma - Computing and Information Technology
Asia Pacific Institute of Information Technology
01.1996 - 01.1997
Masters - Information, Communication and Technology Management
Asia e University
Similar Profiles
Julian TanJulian Tan
Campaign Executive at Maybank BerhadCampaign Executive at Maybank Berhad