Cybersecurity Consultant managing IT security incidents and compliance with government agencies in Singapore. Driving security operations and training while collaborating with internal and external teams.
Responsibilities
Support IT security incident management, responses and reporting till closure.
Develop, review, and maintain operational SOPs and playbooks on IT security incidents management.
Coordinate and work with both internal and external teams to investigate and resolve IT security incidents (including identifying the source of infection, impact).
Review and submit IT security incident reports including documenting the calendar of event for the incidents.
Recommend improvements to prevent the recurrence of the IT security incidents.
Review, monitor and respond to security alerts and notifications and ensure that they are attended to and addressed in a timely manner.
Coordinate and work with both internal and external teams to conduct reviews (which includes but is not limited to security reviews, assessments, tests, and remediation).
Plan, schedule, conduct and ensure information required for the reviews are provided by the relevant teams.
Ensure reviews conducted are supported with documentary evidence and submitted timely to the agency’s IT security team for closure.
Provide support for audit activities and security testing (Vulnerability Assessment Scans Penetration Testing and Source Code Reviews).
Ensure all findings and remediations are followed up within the time frames stipulated by relevant policies.
Verify system components such as operating system, database, web servers, network devices are configured and set up according to the agency’s security standards and requirement.
On top of monthly reporting, also includes providing and conducting IT security awareness, training and guidance to the users and vendors including recommending security practices and configurations.
Vendor management includes evaluating vendor performance and conduct regular assessments to ensure compliance with contractual agreements and service level expectations.
Requirements
Proven experience in IT security management with a focus on governance, risk, and compliance.
In-depth knowledge of security governance frameworks, risk management methodologies, and compliance requirements.
Familiar with relevant standards and regulations such as ISO 27001, GDPR, NIST, etc.
Strong analytical and problem-solving skills with the ability to communicate complex security and compliance issues effectively.
Experience in securing SaaS Products and cloud security is preferred
Relevant certifications such as CISSP, CISM, CRISC, or CGEIT are a plus.
Benefits
A wholly-owned subsidiary of GovTech.
We promote a learning culture and encourage you to grow and learn.
Security Officer responsible for maintaining safety and security at Hilton in Harrisburg, PA. Conducting patrols, responding to emergencies, and supervising housekeeping staff.
Information Security Engineer managing incident detection and response for Safe - Guard Products. Involves vulnerability management, data protection, and security engineering activities.
Work Student, Product Security at TeamViewer supporting security initiatives for product safety. Opportunity to gain hands - on experience in an international environment with a focus on cybersecurity.
Cyber Security Detection Engineer focusing on threat detection capabilities and security telemetry within complex environments. Collaborating across Security Operations, Cloud Engineering, and Compliance disciplines.
Security Specialist managing mainframe security operations at PNC. Collaborating with teams on compliance and security risks while mentoring junior analysts.
Security Assurance Specialist coordinating security assessments within cybersecurity risk management at Vanguard. Ensuring effective risk and vulnerability management across applications and infrastructures.
Summer Intern supporting CIO PMO and Security teams at Sprinklr. Gaining hands - on experience in technology and security areas while assisting key initiatives.
Sicherheitsingenieur managing safety and integrated management systems for CRONIMET. Supporting the development of safety practices and conducting audits on various health and safety topics.
Senior Cloud Security Engineer securing public cloud platforms and services in the financial industry. Collaborating with teams to enhance security posture and ensure compliance in cloud environments.
Cybersecurity Metrics and Reporting Lead overseeing development of security metrics and dashboards. Collaborating with teams to improve cybersecurity program effectiveness and compliance tracking.