Apply Edge Start your job search

Senior Security Assurance Analyst

dentsu · Federal Territory of Kuala Lumpur, Malaysia

Apply & track with Apply Edge

Dentsu is a global leader in integrated growth and transformation, driving sustainable solutions and innovation for some of the world's most influential brands. Founded in 1901, dentsu operates in approximately 120 countries with a team of approximately 68,000 employees, and boasts a network of world-class brands, including Carat, Dentsu Creative, dentsu X, iProspect, Merkle, and more. These brands, each with deep expertise in media, creativity, and digital, collaborate to deliver integrated growth solutions that create lasting, meaningful impact.As we look toward the future, dentsu is focused on Innovating to impact—fostering collaboration, creativity, and cutting-edge technology to drive real, transformative change. What your typical day will look like:As a Senior Security Assurance Analyst, your role is to support the delivery of security assurance across our global technology functions, helping to evaluate and strengthen internal controls across cyber security, information security, and key IT control areas.You will play a key role in completing control testing to assess the design and operating effectiveness of in-scope controls, identifying control deficiencies and opportunities for improvement. You will work closely with technology stakeholders and control owners to support remediation planning and drive improvements across the control environment.You will also prepare clear and meaningful reporting on assurance activities, findings, and remediation progress to support governance and risk reporting, helping to provide management with greater visibility of key risks and control performance. In addition, you will contribute to improving the efficiency and effectiveness of our assurance processes and ways of working.Core responsibilities include:Security Controls Assurance & TestingSupport the delivery of internal controls assurance for in-scope controls, in line with established assurance plans, frameworks, and testing methodologies.Perform controls testing to assess the design and operating effectiveness of cyber security, information security, and key IT controls.Review relevant evidence and documentation to support control testing and assurance conclusions.Identify control deficiencies and opportunities for improvement, clearly documenting findings and supporting recommendations.Stakeholder Engagement & RemediationBuild strong relationships with technology stakeholders and supporting functions to facilitate effective assurance activities.Work closely with control owners to understand identified deficiencies and support proactive remediation planning.Maintain ongoing engagement with stakeholders to monitor remediation progress and drive the reduction of control deficiencies.Collaborate with stakeholders to strengthen the overall control environment and improve the effectiveness of security and IT controls.Reporting & GovernancePrepare clear and concise reports and presentations on assurance activities, testing results, control deficiencies, and remediation progress.Support governance and risk reporting, providing management with clear visibility of key risks and assurance findings.Communicate assurance findings and recommendations clearly to stakeholders, including senior audiences.Assurance Process ImprovementIdentify opportunities to improve the efficiency and effectiveness of assurance processes, testing methodologies, and ways of working.Contribute to the continuous improvement of the Security Assurance function and its approach to internal controls assurance.A bit about you:5–7 years of experience in Cyber Security, Information Security, IT Audit, IT Assurance, or a related field, preferably within a global organisation.Hands-on experience in controls testing and assurance, including assessing the design and operating effectiveness of cyber security, information security, and key IT controls.Strong communication and stakeholder management skills, with the ability to engage effectively with technology stakeholders and clearly communicate assurance findings.A collaborative approach to working with stakeholders to review, strengthen, and improve the control environment.Experience in developing assurance, risk, or control reporting for senior audiences.Familiarity with industry control frameworks such as ISO 27001, NIST-CSF, and ITIL.Hands-on experience with ServiceNow IRM capability would be beneficial.Professional qualifications such as CISA are desirable.What’s in it for you:Flexible hybrid working arrangement.The opportunity to give back with dedicated volunteer leave and our whole-company event, One Day for Change3 whole company Wellness days off per year for you to switch off and take your day, your wayCareer Development and Learning & Development opportunities, including access to our global online dentsu UniversityBe part of a global network that truly invests in recognising performance with via our Never Before Awards, and social impact, including having a clearly mapped path to becoming net zero.Dentsu ValuesWill live the dentsu 8 Ways at all times: We Dream Loud, We Inspire Change, We Team Without Limits, We All Lead, We Make It Real, We Climb High, We Choose Excitement, We Are A Force For Good.Inclusion and DiversityWe’re proud to be different and that starts with our people. We believe in equal opportunities for everyone. We won’t define people by their race, gender, sexual-orientation, age or disability. Individuality is what makes us great, we want everyone to bring their full self to work and create something amazing. That’s what we care about.So, whether you’re joining us, or looking to move to a different part of the business, we work hard to make sure we create equal opportunities for everyone.Keeping connectedPlease visit our website to find out more and connect with us on social.www.dentsu.com*Please include an updated CV in your application.**We regret that only short-listed candidates will be notified.