Head, Authorisation Security

3 weeks ago


Singapore STANDARD CHARTERED BANK Full time
Roles & Responsibilities

JOB SUMMARY

This role could be based in Singapore and Malaysia. When you start the application process you will be presented with a drop down menu showing all countries, Please ensure that you select a country where the role is based.

Role Overview:

Identity and Access Management (IAM) is a critical function within Standard Chartered Bank operating under the overall purview of Group CISO. We are seeking a technically experienced and strategically minded leader to serve as Head of Authorisation Security. The successful candidate will be responsible for driving the enterprise-wide strategy, design, implementation, and governance of authorisation policies, capabilities, and controls to safeguard access to critical systems, applications, and data. This role is pivotal in maturing our Zero Trust and least privilege posture, partnering with technology and business stakeholders to embed strong access governance across the organisation.

RESPONSIBILITIES

Strategy

• Lead the end-to-end strategy and execution of the IAM Authorisation Security function, with a strong emphasis on access policy enforcement, privilege elevation, and role-based access control (RBAC).

• Operationalise authorisation security frameworks aligned with Zero Trust principles, ensuring scalable and consistent policy enforcement across hybrid and multi-cloud environments.

• Oversee the design, implementation, and continuous improvement of fine-grained access controls, including ABAC (Attribute-Based Access Control), PBAC (Policy-Based Access Control), and JIT (Just in Time) access.

Business


• Partner with all business units, Business CISOs, application owners, and engineering teams to establish and operationalise enterprise-wide role modelling, segregation of duties (SoD), and entitlements governance.

• Lead a team to design and operate products and workflows with user experience and service excellence in mind.

• Execute centralised controls and maintain oversight of decentralised controls across authorization security, and access governance.

Processes

• Own, execute and operate centralised controls for all IAM Authorisation Security Global Process Owner (GPO) responsibilities.

• Own the oversight and providing control effectiveness SME recommendations on solutions of decentralised controls for all IAM Authorisation Security Global Process Owner (GPO) responsibilities.

• Define and continuously improve end-to-end processes for:

• Access governance and lifecycle management

• Privileged Identities lifecycle management

• Standardise authorisation security onboarding playbooks across cloud, on-prem, and hybrid workloads.

• Implement ABAC (Attribute-Based Access Control), PBAC (Policy-Based Access Control), and JIT access

• Build reusable workflow templates and automation libraries for provisioning, deprovisioning, access requests, and recertifications into pipelines or workloads.

• Partner with Cyber Ops to define and operationalise incident management processes for authorisation bypass, or privileged escalation events

• Establish clear RACI models and documentation for authorisation security ownership, ensuring accountability across technology domains.

Technology

• Operate centralised Authorisation security solutions and technologies (e.g., SailPoint, ForgeRock, Ping Identity, Azure AD, AWS IAM, etc.).

• Lead a team of SMEs to drive the implementation of access control principles, including RBAC, ABAC, SoD, Just-In-Time (JIT) access, and policy enforcement points (PEPs).

• Lead the implementation of Authorisation security requirements in the following areas: Edge devices / ORB (Routers, Switches, FW, etc.), Platforms (Windows, Unix, VM), DB, APIs, AI agents, Applications, Endpoints, Devices, IoT, IaaS, PaaS, SaaS

• Implement access governance and provisioning solutions across enterprise, cloud, and hybrid infrastructures.

• Operate and drive the implementation of security principles in Access governance solutions, and Privileged Identity Access Management solutions.

• Ensure service resilience and SLA for centralised products are adhered to

• Ensure relevant KPIs and metrics are managed pro-actively and prompt actions are taken to correct course where downward trends are observed.

People & Talent

• Manage requirements and SLAs across senior technology leaders, business leaders, auditors, and risk functions to align IAM strategies with enterprise risk appetite.

• Translate complex IAM concepts into business-friendly language for non-technical stakeholders.

• Collaborate across multiple domains – IT infrastructure, cloud, enterprise architecture, application teams, and compliance to deliver.

• Provide strong project and delivery leadership, with ability to prioritise and deliver IAM initiatives in alignment with cybersecurity roadmap and regulatory timelines.

• Lead, mentor, and grow a team of IAM security product owners and engineers, fostering a culture of technical excellence and continuous improvement.

• Foster a collaborative and high-performance team culture.

• Manage key vendor relationships related to IAM platforms, security tools, and managed services.

• Lead through example and build the appropriate conduct, culture and values. Set appropriate tone and expectations from their team and work in collaboration with risk and control partners.

• Employ, engage and retain high quality people, with succession planning for critical roles.

Risk Management

• Define KPIs and reporting metrics to measure control effectiveness for IAM Authorisation Security, maturity, and compliance with regulatory requirements (e.g., PRA, HKMA, MAS TRM, ISO 27001, NIST).

• Provide SME lead during internal and external audits from IAM Authorisation Security perspective and ensure resolution of Authorisation security related findings or control gaps.

Governance

• Implement, and maintain IAM authorisation security controls based on industry standards (NIST 800-63, NIST CSF, ISO 27001, CIS Controls, MITRE, etc.) and regulatory requirements (MAS, PRA, HKMA, GDPR, SOX, etc.).

• Ensure effective IAM Authorisation Security inputs into Governance Boards by providing evidence of high-level and low-level security technical standards being met, stakeholder requirements being met and transparency of critical service metrics.

Regulatory & Business Conduct


• Display exemplary conduct and live by the Group's Values and Code of Conduct.

• Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across the Bank. This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct.

• Lead the Team to achieve the outcomes set out in the Bank's Conduct Principles

• Effectively and collaboratively identify, escalate, mitigate and resolve risk, conduct and compliance matters.

• Display exemplary conduct and live by the Group's Values and Code of Conduct.

• Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank. This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct.

• Effectively and collaboratively identify, escalate, mitigate and resolve risk, conduct and compliance matters.

• Lead to achieve the outcomes set out in the Bank's Conduct Principles

Key Stakeholders


• Group CISO, TTO Group CISO MT

• CIO, Technology & Architecture, TTO CIA TSA

• CCO, TTO & Global Head Group Transformation, TTO COO

• Global Head, IAM, TTO Group CISO MT

• Global Head, Cyber Security Services, TTO Group CISO MT

• Global Head, Group Threat Management, TTO Group CISO MT

• CISO, WRB & Markets, TTO Group CISO MT

• CISO, CIB, Core Technology & Functions, TTO Group CISO MT

• Global Head, ICS Risk & Governance

• Global Head Cyber Operations, TTO Group CISO MT

• Global Head Audit, GSF Internal Audit

• Key Business Stakeholders including: All Business and Function COOs

Other Responsibilities

• Firm leadership, team-building, and cross-functional communication skills.

• Experience operating in large, complex, and regulated environments.

Our Ideal Candidate

• 10+ years of experience in cybersecurity with at least 5+ years leading IAM functions.

• Expertise in Access Governance, Identity Provider and Privileged Identity Access Management solutions

• Expertise in managing Security Product and Engineering teams

• In-depth understanding of RBAC, ABAC, SoD, Just-In-Time (JIT) access, and policy enforcement points (PEPs).

• Certifications: CISSP, CCSP, CISM, GIAC GDSA, or equivalent

Role Specific Technical Competencies

• Manage Vendors

• Information Security Policy and Strategy

• Manage Change

• Management of Front-Line Risk

• Strategy & Business Model

• Manage Vendors

About Standard Chartered

We're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.

Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.

Together we:

  • Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
  • Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
  • Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term

What we offer

In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.

  • Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
  • Time-off including annual leave, parental/maternity (20 weeks), sabbatical (12 months maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum.
  • Flexible working options based around home and office locations, with flexible working patterns.
  • Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits
  • A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
  • Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.

Recruitment Assessments

Some of our roles use assessments to help us understand how suitable you are for the role you've applied to. If you are invited to take an assessment, this is great news. It means your application has progressed to an important stage of our recruitment process.

Visit our careers website www.sc.com/careers

Tell employers what skills you have

Change Management
Cyber Security
Data Management
Governance
Business Modeling
Risk Management
Strategy
Business Change Management
Identity & Access Management
Project Management
Authorization
Enterprise Architecture
Process Management
Banking
Policy Management
Cloud
Stakeholder Management
Manage Change
Business Process Management
Technology
  • Security Architect

    2 weeks ago


    Singapore beBeeCybersecurity Full time $250,000 - $350,000

    Head of Authorisation SecurityWe are seeking a technically experienced and strategically minded leader to serve as the Head of Authorisation Security. The successful candidate will be responsible for driving the enterprise-wide strategy, design, implementation, and governance of authorisation policies, capabilities, and controls to safeguard access to...


  • Singapore Standard Chartered Singapore Full time

    Join to apply for the Head, Authorisation Security(Singapore, Malaysia) role at Standard Chartered Singapore 3 days ago Be among the first 25 applicants Join to apply for the Head, Authorisation Security(Singapore, Malaysia) role at Standard Chartered Singapore Job Summary This role could be based in Singapore and Malaysia. When you start the...


  • Singapore Standard Chartered Singapore Full time

    Join to apply for the Head, Authorisation Security(Singapore, Malaysia) role at Standard Chartered Singapore3 days ago Be among the first 25 applicantsJoin to apply for the Head, Authorisation Security(Singapore, Malaysia) role at Standard Chartered SingaporeJob SummaryThis role could be based in Singapore and Malaysia. When you start the application process...


  • Singapore Standard Chartered Full time

    Press Tab to Move to Skip to Content LinkSelect how often (in days) to receive an alert:Select how often (in days) to receive an alert:36810TechnologyRegular EmployeeOffice - Full Time7 Aug 2025JOB SUMMARYThis role could be based in Singapore and Malaysia. When you start the application process you will be presented with a drop down menu showing all...


  • Singapore beBeeSecurity Full time $150,000 - $250,000

    Role OverviewThis position involves driving enterprise-wide strategy, design, implementation, and governance of authorisation policies, capabilities, and controls to safeguard access to critical systems, applications, and data. The role requires a technically experienced and strategically minded leader to mature our Zero Trust and least privilege posture by...


  • Singapore Security Xchange LLP Full time

    **Job Title** - Inhouse Security Supervisor- **Job Type** - Full time**Required Position** - SS**Location** - Central**Nearest MRT** - Outram Park**Job Site Type** - In-House**Shift** - Rotating**Start Time** - 08:00**End Time** - 20:00**Salary** - 1900 - 2500**Pay** - Basic**Payment Rate** - Monthly**Preferred Nationality** - Singaporean...

  • Security Supervisor

    5 days ago


    Singapore JEWISH WELFARE BOARD, SINGAPORE, THE Full time

    1. Check and screen visitors. Record their personal particulars for clearance before they are authorised to enter our premises. 2. Only authorised persons are allow to enter our building including their authorised vehicles 3. Access control duty in guard house. Monitor the CCTV for any suspicious characters or objects. 4. Respond to all emergencies and...


  • Singapore ZENITH INFOTECH (S) PTE LTD. Full time

    Authorisation Team Member This is a 12 months contract assigned to our client Work Location: To be confirmed Salary Range : $4,500-$5,500 **Job Description**: 1. Application Security Assessment 2. Focus on SI/Unit Test/Pre UAT testing of Authorization Roles. 3. Support any missing Authorization role build. 4. Support Authorization defect resolution,...


  • Central Singapore Emprego SG Full time

    **Location** - Singapore, Central Singapore**Job Type** - Permanent**Date Posted** - 3 hours agoAdditional Details **Job ID** - 89226**Job Views** - 6- Job Responsibilities - Provide approval code to merchants and assist merchant on credit/debit card payment issuesAssist merchant on issues such as faulty terminal, code cancellation, contact issuer bank and...

  • Head of Cyber Defence

    2 weeks ago


    Central Singapore Emprego SG Full time

    **Location** - Singapore, Central Singapore**Job Type** - Full Time**Salary** - $9,000 - $15,000 Per Month**Date Posted** - 2 minutes agoAdditional Details **Job ID** - 89187**Job Views** - 1Roles & Responsibilities Bukalapak is a tech unicorn with over 100 million users, 13.5 million business partners, 2 thousand plus employees, and big plans for...