Business Information Security Lead

1 week ago


Singapore Eames Consulting Full time
Job Description

I am working with my client on an exclusive partnership to hire a BISO to join their dynamic Security team.

As the Business Information Security Officer (BISO), you will play a crucial role in safeguarding organization's sensitive information and ensuring compliance with relevant regulations and standards. You will oversee all aspects of information security within the company, including policy development, risk assessment, security awareness training, incident response, and regulatory compliance.

Key Responsibilities:
  1. Develop and Implement Information Security Policies: Design, implement, and maintain comprehensive information security policies, procedures, and guidelines to protect the organization's data assets.
  2. Risk Management: Conduct regular risk assessments to identify potential vulnerabilities and threats to the organization's information systems. Develop and implement strategies to mitigate identified risks effectively.
  3. Security Awareness Training: Design and deliver security awareness training programs to educate employees about their roles and responsibilities in maintaining information security. Foster a culture of security awareness throughout the organization.
  4. Incident Response: Establish and maintain an incident response plan to effectively respond to and manage security incidents and breaches. Lead incident response efforts, including investigation, containment, and recovery.
  5. Compliance Management: Ensure compliance with relevant information security regulations, standards, and frameworks, such as MAS TRM, and Cyber Hygiene notice. Monitor changes in regulations and update policies and procedures accordingly.
  6. Vendor Risk Management: Evaluate the security posture of third-party vendors and partners and ensure that appropriate security measures are in place to protect the organization's data when working with external parties.
  7. Security Audits and Assessments: Coordinate and oversee internal and external security audits and assessments. Collaborate with auditors to address any identified vulnerabilities or deficiencies.
  8. Security Incident Reporting: Prepare and present regular reports on the organization's information security posture, including incident trends, compliance status, and remediation efforts, to senior management and relevant stakeholders.
  9. Security Governance: Establish and chair a security governance committee to provide oversight and guidance on information security initiatives and ensure alignment with business objectives.
  10. Security Technology Evaluation: Evaluate new and emerging security technologies and tools to enhance the organization's security posture. Make recommendations for the adoption of appropriate technologies based on risk assessments and business needs.

Qualifications:
  • Bachelor's degree in computer science, information technology, or a related field. Advanced degree or relevant certifications (e.g., CISSP, CISM, CISA, GIAC) preferred.
  • At least 8 years of proven experience in information security management, including policy development, risk assessment, incident response, and compliance management within the Financial Services industry.
  • Strong understanding of information security principles, standards, and best practices.
  • Excellent communication and interpersonal skills, with the ability to effectively communicate complex technical concepts to non-technical stakeholders.
  • Strong leadership and project management skills, with the ability to lead cross-functional teams and drive initiatives to completion.
  • Knowledge of relevant regulations and compliance requirements, such as MAS TRM and Cyber Hygiene notice.
  • Experience with security technologies and tools, such as firewalls, intrusion detection systems, SIEM solutions, and vulnerability management tools.


If you are passionate about information security and have the skills and experience to excel in this role, we would love to hear from you

  • Regional Information Security Officer

    Found in: Talent SG 2A C2 - 21 hours ago


    Singapore LOCKTON COMPANIES (SINGAPORE) PRIVATE LIMITED Full time

    Roles & ResponsibilitiesJob Description Defining and implementing a Cybersecurity Strategic Plan at Lockton entities in-scope, aligned with the Global Cybersecurity Strategic Plan, business objectives, local and regional regulatory and compliance requirements Determining methods to implement, enforce and advise the Lockton entities in-scope on...

  • Information and Cyber Security Lead

    Found in: Talent SG 2A C2 - 3 days ago


    Singapore TRINITY CONSULTING SERVICES PTE. LTD. Full time

    Roles & Responsibilities• Years of experience: More than 15+ years• Ability to perform analysis of log files from a variety of sources within the Network Environment or DMZ (including host logs, network traffic logs, firewall logs and IDS system logs)• Strong program management background• Background in IT Security & Risk Management• Product...


  • Singapore Singapore Aerospace Manufacturing Pte Ltd Full time

    SAM is looking to fill the position of Information Security Manager. This is a regional role and is overall in-charge of all the entities under SAM. He/She will report to the CEO.ResponsibilitesTo develop and implement a long-term Information Security & Cyber Security strategies and roadmap to protect corporate information and IT assets.Set up Cyber Security...

  • Information Technology

    Found in: Talent SG 2A C2 - 1 week ago


    Singapore SINGAPORE AIRLINES LIMITED Full time

    Roles & ResponsibilitiesJob DescriptionYou will be a member of the Group Information Security Team responsible for responding to threats and incidents to the corporate networks, systems (on-prem and cloud) and digital assets.Key Responsibilities:• Lead and drive major incidents towards mitigation and resolution with multiple counterparts• Manage and...

  • Information Security Manager

    Found in: Talent SG 2A C2 - 2 weeks ago


    Singapore SINGAPORE AEROSPACE MANUFACTURING PTE LTD Full time

    Roles & ResponsibilitiesSAM is looking to fill the position of Information Security Manager. This is a regional role and is overall in-charge of all the entities under SAM. He/She will report to the CEO.Responsibilites To develop and implement a long-term Information Security & Cyber Security strategies and roadmap to protect corporate information and IT...


  • Singapore Sparrow Research Pte. Ltd. Full time

    Job SummaryImplement and oversee Sparrow's IT security operations framework, including security operations role definitions, monitoring, incident and event management, privileged access management, and overall security architecture. Ensure compliance with industry standards and regulatory requirements.Job Responsibilities. Define and implement IT security...

  • Information Security Manager

    Found in: Talent SG 2A C2 - 2 weeks ago


    Singapore SPARROW RESEARCH PTE. LTD. Full time

    Roles & ResponsibilitiesJob SummaryImplement and oversee Sparrow's IT security operations framework, including security operations role definitions, monitoring, incident and event management, privileged access management, and overall security architecture. Ensure compliance with industry standards and regulatory requirements.Job Responsibilities· Define and...


  • Singapore Commerzbank Aktiengesellschaft Full time

    Job purpose:This position is part of the Asia information Security and Data Protection function in Singapore with focus on information security and third-party risk management.Key activities:Assisting the Head of Information Security Asia in implementing and maintaining the Group's information security strategy, policies, and procedures to manage cyber and...

  • Information Security Specialist

    Found in: Talent SG 2A C2 - 2 weeks ago


    Singapore COMMERZBANK AKTIENGESELLSCHAFT Full time

    Roles & ResponsibilitiesJob purpose:This position is part of the Asia information Security and Data Protection function in Singapore with focus on information security and third-party risk management.Key activities: Assisting the Head of Information Security Asia in implementing and maintaining the Group's information security strategy, policies, and...

  • Information Technology Security

    Found in: Talent SG 2A C2 - 1 week ago


    Singapore KGI SECURITIES (SINGAPORE) PTE. LTD. Full time

    Roles & ResponsibilitiesAbout The CompanyKGI Securities is a leading multi asset brokerage firm with presence across several countries in Asia and a pioneer member of the Securities & Derivatives, Trading and Clearing Member of Singapore Exchange, ICE Futures Singapore and ICE Clear Singapore.We hold a Capital Markets Services License, is regulated by the...


  • Singapore Singapore Airlines Limited Full time

    Job Description You will be a member of the Group Information Security Team responsible for responding to threats and incidents to the corporate networks, systems (on-prem and cloud) and digital assets. Key Responsibilities:. Lead and drive major incidents towards mitigation and resolution with multiple counterparts . Manage and track incidents from opening...

  • Information Security Risk Specialist

    Found in: Talent SG 2A C2 - 2 weeks ago


    Singapore LICO RESOURCES PTE. LTD. Full time

    Roles & ResponsibilitiesLico Resources, the specialist executive search firm, is partnering with a leading financial institution in searching for an Information Technology Risk Management Professional. The institution is a key player in the finance sector and is dedicated to fostering a secure and technologically advanced environment for its clients. they...

  • Information Security

    Found in: beBee jobs SG - 1 week ago


    Singapore HQ Scoot Pte Ltd Full time

    On this page you can apply for Job vacancy: Information Security & Risk Management Intern


  • Singapore Kgi Securities (singapore) Pte. Ltd. Full time

    About The CompanyKGI Securities is a leading multi asset brokerage firm with presence across several countries in Asia and a pioneer member of the Securities & Derivatives, Trading and Clearing Member of Singapore Exchange, ICE Futures Singapore and ICE Clear Singapore.We hold a Capital Markets Services License, is regulated by the Monetary Authority of...


  • Singapore Lico Resources Pte. Ltd. Full time

    Lico Resources, the specialist executive search firm, is partnering with a leading financial institution in searching for an Information Technology Risk Management Professional. The institution is a key player in the finance sector and is dedicated to fostering a secure and technologically advanced environment for its clients. they are seeking a dynamic...


  • Singapore All Granted Security Technology Pte. Ltd. Full time

    Leadership Experience: Demonstrated leadership skills with at least 8 years of experience in information security, including substantial experience in a leadership or managerial role. This could involve leading security teams, overseeing security operations, or managing security research projects.Security Operations: Proven experience in security operations,...

  • Senior Manager, Information Security

    Found in: Talent SG 2A C2 - 1 week ago


    Singapore Razer Inc. Full time

    Job Responsibilities:Information Security Strategy and Planning:Contribute to the development the organisation's InfoSec strategy and roadmapStay updated on industry trends, security best practices, and regulatory requirementsPolicy and Procedure Development:Create, maintain, and update InfoSec Architecture, frameworks and policies, standardsEnsure alignment...

  • Information Security Awareness Specialist

    Found in: Talent SG 2A C2 - 1 week ago


    Singapore LUBRIZOL SOUTHEAST ASIA (PTE.) LTD Full time

    Roles & ResponsibilitiesRole AccountabilityThis role is responsible for supporting Lubrizol’s Information Security Training and Awareness initiatives to elevate the understanding and adoption of a security culture that reduces overall cyber risk to the organization. Participate in the development and delivery of training and educational materials,...


  • Singapore Pacific Prime Insurance Brokers Singapore Pte. Ltd. Full time

    SummaryWorking as part of the information security office within the IT department at Pacific Prime CXA, the GRC (Governance, Risk and Compliance) Manager will be responsible for leading the day-to-day IT compliance, data governance and IT risk management functions. Primary responsibility will include defining, creation, management and maintenance of IT and...

  • Information Security Governance, Risk

    Found in: Talent SG 2A C2 - 1 week ago


    Singapore PACIFIC PRIME INSURANCE BROKERS SINGAPORE PTE. LTD. Full time

    Roles & ResponsibilitiesSummaryWorking as part of the information security office within the IT department at Pacific Prime CXA, the GRC (Governance, Risk and Compliance) Manager will be responsible for leading the day-to-day IT compliance, data governance and IT risk management functions. Primary responsibility will include defining, creation, management...