Information Security

1 week ago


Singapore Bank of Singapore Full time
At Bank of Singapore, we are constantly on the lookout for exceptional individuals to join our team. We promote a culture of openness, teamwork and fairness. Most importantly, we invest in our people through our programmes that develop them on both professional and personal levels.

Besides attractive remuneration packages, we offer non-financial benefits and opportunities to develop your potential within OCBC Group's global network of subsidiaries and offices.

If you have passion, drive and the will to succeed, rise to the challenge today


Responsible for second line of defence related to governance and oversight of Information Security Risk and Digital Risks (Technology, Information and Cyber) within the organisation.


Responsibilities

  • Lead and support the risk governance and oversight of Information Security Risk and Digital Risks (Technology, Information and Cyber) in second line.
  • Lead second line Information Security initiatives and establish/rollout Local Information Security Office (LISO) program to each of global locations within the organisation.
  • Lead and represent second line in regulatory assessments in Information Security risk and Digital risks topics.
  • Lead and / or support internal / crossfunctional initiatives such as technology, information and cyber thematic and process reviews, as well as technology projects.
  • Lead and / or participate in risk committees and working groups that have been established to enhance governance and oversight over Information Security risk and Digital risks matters.
  • Develop, review and maintain Information Security and Digital risk framework, policies and departmental operating procedures to ensure that they are relevant, up to date and aligned to Group and regulatory standards.
  • Monitor Information Security and Digital risk exposures via dashboards and Key Risk Indicators (KRIs) and provide independent reporting on the effectiveness of risk posture or activities to management.
  • Provide risk advisory services to business units on the adoption of new and emerging technologies (e.g. cloud computing, Fintech etc), as well as third party arrangements.
  • As a second line of defence, provide an effective challenge on the adequacy, completeness and timeliness of risk assessments and / or action plans that have been put in place to address prevailing and emerging Information Security and Digital risks. This includes the review of system risk acceptances.
  • Plan and deliver a comprehensive Information Security and Digital risk awareness training and testing program for all staff. This includes the conduct of periodic social engineering tests to reinforce awareness.

Qualifications

  • Good understanding of banking processes, technology, operations, and regulations (in particular MAS Technology Risk Management Guidelines), as well as ISO 2700
  • Prior experience in managing projects / change initiatives would be an added advantage
Academic and professional qualifications

  • University degree preferred.
  • Professional certification in information security. E.g. CISA, CISM, CRISC, CISSP etc.
  • Proficient in Microsoft Office Applications (i.e. Excel, PowerPoint, Word).
Language skills

  • Fluent in English.
Personal attributes

  • Good communication, presentation and interpersonal skills to facilitate interactions with key stakeholders within and outside of the organisation.
  • Ability to collaborate well within the team, department and across different departments/locations.
  • Able to exercise sound judgment and establish plans to manage the execution of deliverables within the stipulated timelines.
  • Selfdriven with attitude and aptitude to learn and accomplish tasks that have been assigned.
  • Analytical mindset and good report writing skills.
  • Able to prioritise and multitask in a competitive environment
  • A team player.


  • Singapore NICOLL CURTIN TECHNOLOGY PTE. LTD. Full time

    Roles & ResponsibilitiesWe are looking for an Information/Cyber Security professional with a core discipline in either GRC or Tech Risk Management. This is an Information Security GRC Manager position with one of our clients within the financial services space. They have over 200 headcount in their SG and HK office respectively.This position reports directly...


  • Singapore NICOLL CURTIN TECHNOLOGY PTE. LTD. Full time

    We are looking for an Information/Cyber Security professional with a core discipline in either GRC or Tech Risk Management. This is an Information Security GRC Manager position with one of our clients within the financial services space. They have over 200 headcount in their SG and HK office respectively.This position reports directly into the Head of IT and...

  • Information Security

    2 months ago


    Singapore HQ Scoot Pte Ltd Full time

    On this page you can apply for Job vacancy: Information Security & Risk Management Intern


  • Singapore SINGAPORE AEROSPACE MANUFACTURING PTE LTD Full time

    SAM is looking to fill the position of Information Security Manager . This is a regional role and is overall in-charge of all the entities under SAM. He/She will report to the CEO.Responsibilites To develop and implement a longterm Information Security & Cyber Security strategies and roadmap to protect corporate information and IT assets. Set up Cyber...


  • Singapore Good Job Creations Pte Ltd Full time

    Provides security analysis of IT activities to ensure that appropriate security measures are in place and are enforced. Assists with the development and maintenance of corporate security policies and procedures, the remediation of identified risks, and the implementation of security measures to ensure information systems' reliability and to prevent and...


  • Singapore DCS CARD CENTRE PTE. LTD. Full time

    Roles & ResponsibilitiesKey Responsibilities: First Line of Defense (1LoD), reporting to Chief Technology Officer (CTO) and working with IT team leads to identify and manage the security risks exposed to the organization. Review and evaluate new security technologies and practices to protect the organisation in minimizing information security risks and...


  • Singapore Castlery Full time

    Castlery is looking for an Information Security Specialist to join our Information Security team, which is a newly created team that manages IT and Information Security for Castlery's global operations and technology infrastructure.In this newly created role, the Information Security Specialist would be one of the pioneer members that would help plan, drive,...


  • Singapore Repstor Full time

    Location: SingaporeIntapp is looking for an Information Security Analyst to join our Information security team. The Information Security Analyst plays a vital role in keeping an organization's proprietary and sensitive information secure. Also, the Information Security Analyst works inter-departmentally to identify and communicate security flaws in the...


  • Singapore MESH BIO PTE. LTD. Full time

    Roles & ResponsibilitiesAbout Us:Mesh Bio is fast growing health technology startup at the forefront of transforming healthcare through predictive analytics and digital twins technology.Our multidimensional health intelligence platform provides AI-powered clinical decision support, analytics, and automation solutions for healthcare providers to transform...


  • Singapore Refine Group Full time

    Security (Information & Communication Technology) Position: Information Security Manager - IT & OTTerms: Full-timeThe Role:As an Information Security Manager at the organization, you will be integral to our Security Operations Center, specializing in monitoring, detecting, investigating, analyzing, and responding to security events within our IT...


  • Singapore JOINTHIRE SINGAPORE PTE. LTD. Full time

    About usOur Client is a 100% subsidiary company of a Japanese information and Communications Company. They are one-stop service provider of all communication services . Their Singapore office is the regional HQ, providing comprehensive global and local communication services to companies developing their businesses in the region including Singapore, by...


  • Singapore ITCONNECTUS PTE. LTD. Full time

    Job ResponsibilitiesEnsure compliance controls are in place to determine security effectiveness and compliancetoward meeting regulatory and/or standards compliance.Regularly report progress on CVSS scores, identified risks in addition to coordinate effortswith the Security Lead or Project Manager as required.Ensure compliance controls are in place to...


  • Singapore GATEWAY SEARCH PTE. LTD. Full time

    Roles & ResponsibilitiesPosition: Information Security Manager - IT & OTLocation: Jurong East or Loyang, SingaporeTerms: Full-timeThe Role:As an Information Security Manager at the organization, you will be integral to our Security Operations Center, specializing in monitoring, detecting, investigating, analyzing, and responding to security events within our...


  • Singapore LUMEN TECHNOLOGIES SINGAPORE PTE. LTD. Full time

    Roles & ResponsibilitiesRoleTo provide world class support to an enterprise level client base responsible for incident resolution, processing of change requests, and contributions to problem management for customer network and infrastructure cases. The candidate will be qualified to a CCNA evel or a similar proven track record of experience.Review, approve...


  • Singapore MCONNECT CONSULTING PTE. LTD. Full time

    Job Description: Design and deliver innovative security solutions and initiatives and manageand support security technology platforms Vulnerability assessments and penetration testing to assess the residual risksand mitigation plans Assess and advise Technology Solution Delivery and Operations teams onmanagement and mitigation of security exceptions and...


  • Singapore Techfellow Full time

    APAC, SingaporePermanentJob ID: 2019[c. S$150k Comp Package, Hybrid Working]Seize an opportunity to join a prestigious high-frequency proprietary trading firm, seeking to bolster their Global Cybersecurity team in Singapore. As an Information Security Analyst, your role will transcend merely improving the firm's security stance. Through diligent monitoring,...


  • Singapore JONDAVIDSON PTE. LTD. Full time

    Roles & ResponsibilitiesLooking for skilled candidates with specialized technical expertise gained through industry experience. Depending on experience, candidates can apply for roles as Assistant/Manager, Senior, or Lead Professional Officer.The successful candidates will join the academic staff pool as part of the Professional Officers (PO) scheme. This...


  • Singapore Capital Group Companies Full time

    Role Summary: Reporting into the Regional Head of Information Security, APAC, the Information Security Specialist will be supporting the RISO in aligning control standards of the enterprise Information Security program with cyber regulatory requirements in APAC and other Capital Group operating locales.Partnering closely with regional L&C and the Office of...


  • Singapore NEW TONE CONSULTING PTE. LTD. Full time

    Roles & ResponsibilitiesWe are seeking a dynamic Information Security Engineer to join our client's team. The ideal candidate will possess a strong background in IT infrastructure and cybersecurity, with expertise in implementing and managing complex systems and security solutions.Responsibilities: Lead the delivery and implementation of security-focused...


  • Singapore NEW TONE CONSULTING PTE. LTD. Full time

    Roles & ResponsibilitiesWe are seeking a dynamic Information Security Engineer to join our client's team. The ideal candidate will possess a strong background in IT infrastructure and cybersecurity, with expertise in implementing and managing complex systems and security solutions.Responsibilities: Lead the delivery and implementation of security-focused...