Product Owner – Identity Security & Authentication

  • Malaysia
  • Negotiable
  • Permanent
  • Discipline: Cyber Security
  • Ref: 50261

Product Owner – Authentication & Secrets Security (IAM)
Job Summary
An experienced and delivery-focused Product Owner – Authentication & Secrets Security is required to lead the strategy, roadmap, and delivery of enterprise secrets management and authentication capabilities within a global organization.
This role sits within the Information & Cyber Security / Identity & Access Management (IAM) function and is responsible for advancing secure authentication practices and secrets lifecycle management across enterprise platforms, applications, and infrastructure.
The position focuses on securing human and non-human identities, ensuring proper governance of secrets, API keys, certificates, credentials, and vault technologies across hybrid cloud and on-premises environments.
The Product Owner will work closely with engineering teams, cybersecurity leaders, architects, compliance teams, and business stakeholders to deliver secure, scalable authentication services and modern secrets management solutions aligned with regulatory and enterprise security standards.

Key Responsibilities
Product Strategy & Roadmap
  • Define and drive the product vision, roadmap, and strategy for enterprise secrets management and authentication platforms.
  • Own the lifecycle management of application and infrastructure secrets, including credentials, API keys, and certificates.
  • Manage the product backlog for secrets security platforms such as vault technologies.
  • Develop long-term roadmap initiatives to:
    • Improve enterprise security posture
    • Reduce manual credential handling
    • Eliminate static secrets
    • Enforce automated rotation and least-privilege access
  • Align product initiatives with Zero Trust security principles and regulatory requirements.
  • Evaluate emerging technologies such as:
    • Passwordless authentication
    • Passkeys
    • Adaptive authentication
    • Behavioral biometrics
    • Bot authentication
    • AI and digital asset security
  • Track and monitor key metrics including reliability, adoption, latency, and credential exposure reduction.

Product Delivery & Execution
  • Own and manage the Agile product backlog, prioritizing features and improvements.
  • Facilitate backlog grooming, sprint planning, and delivery planning sessions.
  • Collaborate with engineering teams to deliver features aligned with roadmap commitments.
  • Identify and mitigate delivery risks, dependencies, and operational issues.
  • Ensure consistent delivery, health and achievement of defined OKRs.

Business & Stakeholder Management
  • Translate complex technical requirements into business value propositions for leadership stakeholders.
  • Align technology initiatives with broader business priorities and digital transformation goals.
  • Partner with business owners to validate product outcomes and ensure benefits realization.
  • Work with third-party vendors where applicable.

Process Improvement
  • Analyse and optimize end-to-end authentication and secrets management processes.
  • Identify automation opportunities such as:
    • Self-service capabilities
    • Workflow automation
    • Platform integrations
  • Ensure transparency, accountability, and continuous improvement across delivery processes.

Leadership & Collaboration
  • Act as the primary liaison between business teams, cybersecurity teams, and engineering teams.
  • Communicate product strategy, roadmap, and performance to senior leadership and governance forums.
  • Foster cross-functional collaboration across product, architecture, engineering, and security teams.
  • Support development teams by providing technical security direction in collaboration with security architects.

Risk & Governance
  • Establish strong governance across delivery tracking, reporting, and escalation processes.
  • Ensure compliance with enterprise cybersecurity standards, risk management practices, and regulatory expectations.
  • Maintain audit readiness through centralized tracking of secrets access and rotation.
  • Identify risks proactively and ensure mitigation plans are implemented.

Key Stakeholders
  • Identity & Access Management leadership
  • Cybersecurity architecture and engineering teams
  • Technology and platform engineering teams
  • Product owners, program managers, and delivery leads
  • Infrastructure, SRE, testing, and production support teams
  • Risk, compliance, and internal audit teams

Skills & Experience
Required Experience
  • 15+ years of overall experience in technology, cybersecurity, or enterprise platforms.
  • 5+ years experience as a Product Owner, Technical Security Manager, or similar leadership role.
  • Experience delivering both strategic initiatives and operational services.
Technical Expertise
  • Strong understanding of Identity & Access Management (IAM) concepts:
    • Authentication
    • Authorization
    • Identity lifecycle management
    • Access control models
  • Experience with secrets management and vault technologies such as:
    • HashiCorp Vault
    • Azure Key Vault
    • CyberArk
  • Familiarity with:
    • Active Directory and enterprise identity platforms
    • Cloud platforms (Azure / AWS)
    • CI/CD pipelines and DevSecOps
    • API-based authentication frameworks
  • Knowledge of authentication technologies including Passwordless authentication and modern identity frameworks.
Delivery & Leadership
  • Strong experience with Agile, Scrum, Waterfall, or hybrid delivery methodologies.
  • Proven ability to manage complex enterprise programs and cross-functional teams.
  • Experience interacting with senior leadership and technology executives.
Other Skills
  • Excellent communication and stakeholder management skills
  • Strong analytical and problem-solving capabilities
  • Ability to influence without authority in large organizations
  • Strong focus on governance, compliance, and risk management

Qualifications
  • Bachelor’s or master’s degree in engineering, Computer Science, Information Security, or related field.
  • Professional certifications preferred:
    • CISSP
    • CISM
    • GIAC
    • Certified Scrum Product Owner (CSPO)

 

Apply for this job

We are an inclusive organisation and actively promote equality of opportunity for all with the right mix of talent, skills, and potential. We welcome all applications from a wide range of candidates. Selection for roles will be based on individual merit alone.

Latest Jobs

Compliance Specialist

  • Switzerland
  • Negotiable
  • Contract
Are you an experienced compliance officer/specialist?

Do you have experience in the banking/finance environment?

If that is the case, then the role of Compliance Specialist might be suitable for you!

We are looking for an AML Compliance Specialist for one of our banking clients,  in Zurich, Switzerland, for a 12‑month contract role.

In this position, you will play a key role in safeguarding the organisation’s integrity by ensuring strict adherence to anti‑money laundering regulations and internal compliance standards.

You will monitor transactions, conduct due‑diligence checks, investigate unusual activities, and support internal teams in interpreting AML requirements.

Together with the compliance department, you will help implement effective controls, support audits, and contribute to regulatory reporting as part of the company’s risk‑based approach.

If you bring hands‑on experience in AML monitoring, KYC/CTF processes, and a solid understanding of Swiss and international regulatory frameworks, along with strong analytical and communication skills, then this is the right next step for you!

You will join a collaborative environment, benefit from a structured onboarding, modern tools, flexible working hours, hybrid working, and continuous learning opportunities throughout the duration of the contract.

Workload: 100%

Language: English and German

If you want to hear more about this role, apply directly to:

vuk.susa-stupar@nicollcurtin.com

Phone:+41 43 508 26 71
Apply Now

Advertising Account Manager (ANZ E-commerce Clients)

  • Singapore
  • Negotiable
  • Contract

The hiring company is a Global Internet MNC which is well known for their Advertising Platforms, Social Platforms, E-commerce Marketplace and many other platforms. They're looking for an Advertising Account Manager to build relationships and help APAC based clients drive business results on their Advertising platform through consultation, education, and support.

 

This is an initial contract position for 6-months

 

Ideal candidates will drive client marketing strategy and support execution of tactics. The role requires exceptional consultative and client service skills to help the client achieve results.

 

Responsibilities:

 

  • Become an expert in the company's advertising solutions for businesses of all sizes and adapt recommendations quickly to suit varying client needs
  • Grow revenue, educate and deliver consultative support to strategic clients and partners
  • Work directly with advertisers to achieve greater business results across our family of apps through best practice adoption and advertising campaigns performance improvement
  • Troubleshoot and resolve account issues in a timely manner
  • Gather advertiser feedback to enhance current and future advertising products
  • Work cross-functionally within sales and other organizations to drive revenue and increase customer satisfaction across portfolio of accounts
  • Represent the client at conferences, events or through webinars

 

Minimum Requirements:

 

  • 5+ years in advertising account management and digital marketing (Paid media)
  • Strong hands on experience in performance marketing and paid media mechanics across platforms such as Meta/Facebook and TikTok to drive measurable client outcomes.
  • Ability to communicate, present and influence all levels of the client organization and build lasting relationships with clients
  • Strong problem solving and quantitative analytical skills. Able to effectively prioritize and manage tasks within a fast-paced environment while maintaining strict attention to details
Apply Now

DevOps Engineer , StackOps Platform

  • Singapore
  • Negotiable
  • Contract

DevOps Engineer (12-Month Contract) - StackOps Platform

We are looking for a talented DevOps Engineer to join our team and play a key role in the development, enhancement, and support of the StackOps platform.

Contract: 12 months (renewable based on performance and project needs)

 

Key Responsibilities

  • Design, develop, deploy, and maintain new features and functionalities for the StackOps platform
  • Collaborate with teams to manage configurations and integrations across monitoring solutions (e.g., Elastic Cloud, AWS, Azure, GCP)
  • Implement best practices for security, scalability, and performance
  • Proactively identify and drive improvements to enhance platform reliability and efficiency
  • Provide technical support, including onboarding, troubleshooting, and configuration guidance
  • Stay updated on the latest cloud technologies and monitoring best practices
  • Develop and enhance documentation and training materials for users

Requirements

  • Proven experience in platform engineering, cloud operations, or related fields
  • Strong knowledge of monitoring tools, methodologies, and configuration management
  • Hands-on experience with automation tools (e.g., Ansible, Terraform)
  • Solid understanding of DevOps principles and practices
  • Excellent analytical, troubleshooting, and problem-solving skills
  • Strong communication skills and ability to work independently and in a team


Nice to Have

  • Experience with OpenTelemetry implementations
  • Familiarity with StackOps or similar monitoring platforms
  • Programming experience in Node.js, Python, or Go
 
  • Opportunity to work on a cutting-edge monitoring platform
  • Exposure to multi-cloud environments (AWS, Azure, GCP)
  • Collaborative and innovative engineering culture
Apply Now

Business Analyst NonFinancial Risk Management

  • Hong Kong
  • HKD 3,019 Daily
  • Contract

My client is a global financial institution currently seeking a highly experienced Senior Business Analyst to support a strategic Non-Financial Risk transformation initiative. In this role, you will lead requirements analysis and data-driven insights across risk, technology, and business teams, helping to strengthen risk prevention capabilities and enhance control frameworks.

This is a high-impact opportunity to work at the intersection of risk, data, and technology within a complex financial services environment.

Responsibilities

  • Lead end-to-end requirements gathering, ensuring alignment with project objectives and business outcomes
  • Analyze business processes, systems, and data to identify opportunities for improvement, automation, and control enhancement
  • Translate requirements into functional specifications, user stories, and acceptance criteria
  • Define data requirements and support seamless ingestion from multiple sources into a centralized repository
  • Assess and improve data ingestion processes in partnership with technology teams, ensuring robustness and scalability
  • Ensure data quality, integrity, lineage, and security standards are upheld
  • Collaborate with Data Science and Analytics teams to analyze complex datasets and identify patterns, trends, and anomalies related to NFR
  • Support the development of predictive models and algorithms to assess and mitigate non-financial risks
  • Define use cases and scope for machine learning applications within NFR management
  • Translate analytical outputs into actionable recommendations and process improvements
  • Review existing NFR controls, identify gaps, and drive enhancements with relevant stakeholders
  • Monitor control effectiveness and provide continuous improvement insights
  • Partner with Risk, Technology, Data & Analytics, and Business teams to ensure alignment and effective delivery


Requirements 

  • Bachelor’s degree in Business, Finance, Economics, Computer Science, or a related field (advanced degree preferred)
  • Proven experience as a Business Analyst within financial services; consulting and/or risk management experience is advantageous
  • Strong understanding of Non-Financial Risk management, particularly within wholesale banking
  • Proficiency in data analysis and visualization tools (e.g., SQL, Python, Tableau)
  • Strong analytical thinking with the ability to interpret complex datasets and translate insights into business actions
  • Excellent communication and stakeholder management skills, with the ability to engage both technical and non-technical audiences
  • Detail-oriented with a strong focus on accuracy and quality
  • Ability to work independently and collaboratively in cross-functional environments
  • Knowledge of regulatory requirements and industry best practices in NFR is highly desirable
Apply Now

Project Manager NonFinancial Risk Management

  • Hong Kong
  • HKD 3,019 Daily
  • Contract

My client is looking for an experienced Project Manager to lead the end-to-end delivery of Non-Financial Risk initiatives within a dynamic, Agile environment. This role will partner closely with Risk, Technology, Data & Analytics, and Business teams to deliver critical enhancements to risk controls, data capabilities, and operational processes.

Responsibilities

  • Establish and maintain delivery approaches aligned with governance standards
  • Coordinate cross-functional teams, ensuring clear ownership, sequencing, and dependency management
  • Drive delivery momentum by removing blockers, resolving conflicts, and enabling team success
  • Coordinate delivery of data ingestion from multiple sources into consolidated repositories, ensuring quality and ownership
  • Ensure data quality, integrity, lineage, and security requirements are met in collaboration with Technology and Data teams
  • Oversee implementation of NFR control enhancements, ensuring proper assessment, approval, and monitoring
  • Support delivery of analytics and machine learning initiatives, aligning with Data Science and Model Risk governance
  • Own RAID, proactively escalating with clear recommendations and provide transparent reporting on progress, delivery confidence, key decisions, and risks/issues
  • Maintain audit-ready project artefacts, including plans, approvals, and delivery evidence
  • Partner with Product Owners, Risk SMEs, Technology leads, Data & Analytics teams, and business stakeholders

Requirements

  • Bachelor’s degree in Business, Finance, Economics, Computer Science, or a related field (advanced degree preferred)
  • Proven project management experience in financial services, ideally within risk, data, or technology transformation
  • Strong understanding of Non-Financial Risk management, particularly within wholesale banking or similar environments
  • Strong governance, RAID management, and delivery discipline in regulated environments
  • Excellent communication and stakeholder management skills, including senior-level reporting
  • Familiarity with data and analytics tools (e.g., SQL, Python, Tableau) is an advantage
  • Knowledge of regulatory expectations and industry best practices in NFR is highly desirable
Apply Now