IT Security Analyst, Governance, Risk and Compliance

1 month ago


Singapore NTU (Nanyang Technology University- Main Office-HR) Full time
ABOUT THE NATIONAL INSTITUTE OF EDUCATION (NIE)

The National Institute of Education (NIE), Singapore, is Singapore's national teacher education institute and we are proud to be an integral part of the nation's education service. We play a key role in the preparation of teachers and in the provision of teacher professional and school leadership development programmes. We are committed to our vision of being An Institute of Distinction: Leading the Future of Education and our mission to Inspire Learning, Transform Teaching and Advance Research. Read more about NIE here.

NIE invites suitable candidates to join the Division of Academic Computing & Information Services (ACIS) as a Security Analyst for Governance, Risk, and Compliance (GRC). This is a 3-year contract position.

Key Responsibilities:

Governance
  • Coordinate with internal and external audit teams and assist in audit planning.
  • Help deliver security awareness programs for staff and manage security governance efforts.
  • Stay updated on IT trends and recommend best practices to align with governance policies.
  • Support cybersecurity projects to ensure alignment with security objectives.


Risk Management
  • Assist in identifying and assessing IT risks and managing vulnerabilities and threats.
  • Support risk management in cybersecurity projects by focusing on threats and vulnerabilities.
  • Track and monitor audit remediation actions related to risk management.
  • Measure the effectiveness of security awareness programs to minimize risks from human error.


Compliance
  • Ensure compliance with internal standards (ISO 27001, ISO 22301) and external regulations.
  • Facilitate responses to internal and external IT audits.
  • Participate in audit engagements and report on audit issues and remediation.
  • Provide ongoing compliance reporting to ensure timely remediation of audit findings.


Requirements:

Educational Qualification(s)
  • A University Degree in Information Technology, Cybersecurity, Risk Management, or Compliance, or an equivalent qualification.
  • Desirable Certifications: CISSP, CISM, CISA, CRISC, or other relevant certifications.


Relevant Experience
  • 3-5 years of experience in Information Security, IT Risk Management, or Compliance, preferably in a higher education or similar environment.
  • Experience with IT security audits and compliance reviews in regulated industries.
  • Experience with vendor security assessments and managing third-party security risks.
  • Experience in security awareness training and working in cross-functional teams.


Knowledge Required
  • Security Frameworks: ISO 27001, CTM, NIST, CIS controls, and their application in operational environments.
  • Regulatory Standards: Understanding of the Cybersecurity Bill, PDPA, and related security laws.
  • Risk Management: Knowledge of risk assessments, mitigation strategies, and identifying threats to information systems.
  • Audit Processes: Understanding security audit processes, compliance, and remediation.
  • IT System: Good knowledge of IT infrastructure, application management, and cybersecurity practices.
  • GRC Tools: Experience with Governance, Risk, and Compliance platforms and software is advantageous.


Skills and Competencies
  • Analytical Skills: Ability to analyze security risks and make data-driven decisions.
  • Communication Skills: Ability to convey technical security concepts to non-technical audiences and document findings.
  • Problem-Solving: Strong problem-solving capabilities, particularly during security incidents.
  • Attention to Detail: High focus on detail in audits and risk assessments.
  • Project Management: Ability to manage multiple projects, prioritize tasks, and meet deadlines.
  • Team Collaboration: Proven ability to work with cross-functional teams (IT, legal, compliance, vendors).


Other Personal Attributes
  • Integrity and Confidentiality: High ethical standards and the ability to handle sensitive information.
  • Proactivity: Ability to act independently and proactively address security challenges.
  • Adaptability: Capable of adjusting to evolving security threats and changes in regulations.
  • Resilience under Pressure: Ability to make sound decisions under pressure, particularly during audits or security incidents.


Closing Date
The closing date of the advertisement is 13 November 2024. We regret that only shortlisted candidates will be notified.

Other Information

NIE staff can take chartered buses at their own expense from or near their home to the NIE campus. This is subject to the availability of bus routes and seats.

Hiring Institution: NIE

  • Singapore NTU (Nanyang Technology University- MainOffice-HR) Full time

    Job Summary:The National Institute of Education (NIE) is seeking an experienced IT Security Analyst to join its Division of Academic Computing & Information Services (ACIS) as a Security Analyst for Governance, Risk, and Compliance (GRC). This is a 3-year contract position.About the Job:In this role, you will be responsible for coordinating with internal and...


  • Singapore MDIS Pte Ltd Full time

    ABOUT THE NATIONAL INSTITUTE OF EDUCATION (NIE) The National Institute of Education (NIE), Singapore , is Singapore’s national teacher education institute and we are proud to be an integral part of the nation’s education service. We play a key role in the preparation of teachers and in the provision of teacher professional and school leadership...


  • Singapore NANYANG TECHNOLOGICAL UNIVERSITY Full time

    Job DescriptionWe are seeking a highly skilled Security Analyst to join our team at Nanyang Technological University. As a key member of our Division of Academic Computing & Information Services (ACIS), you will play a critical role in ensuring the security and integrity of our IT systems.About the RoleThe successful candidate will be responsible for...


  • Singapore NANYANG TECHNOLOGICAL UNIVERSITY Full time

    Roles & ResponsibilitiesABOUT THE NATIONAL INSTITUTE OF EDUCATION (NIE)The National Institute of Education (NIE), Singapore, is Singapore’s national teacher education institute and we are proud to be an integral part of the nation’s education service. We play a key role in the preparation of teachers and in the provision of teacher professional and...


  • Singapore NTU (Nanyang Technology University- Main Office-HR) Full time

    ABOUT THE NATIONAL INSTITUTE OF EDUCATION (NIE)The National Institute of Education (NIE), Singapore, is Singapore's national teacher education institute and we are proud to be an integral part of the nation's education service. We play a key role in the preparation of teachers and in the provision of teacher professional and school leadership development...

  • Global Risk Analyst

    4 days ago


    Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    Company Overview:SERVICES & RISK SOLUTIONS PTE. LTD., a leading provider of intelligence solutions, is seeking a highly skilled and motivated APAC Regional Intelligence Analyst to join its prestigious contract in Singapore. The successful candidate will play a crucial role in identifying and assessing risks that may impact business operations across the...


  • Singapore United Overseas Bank Full time

    About the RoleWe are seeking a skilled Risk Governance and Compliance Analyst to join our team in Singapore.Job SummaryThe successful candidate will be responsible for developing a tool using MS Access and VBA to support monitoring of policy change, test program, credit portfolio management, including tracking of risk appetite metrics for overall PFS...


  • Singapore TECH AALTO PTE. LTD. Full time

    Roles & ResponsibilitiesJob Title: Governance, Risk and Compliance SpecialistPosition Type:ContractJob Description:We are looking for experienced Governance, Risk, and Compliance (GRC) Specialists to join our team. This role is focused on enhancing and operationalizing security policies, conducting risk assessments, and managing compliance with cybersecurity...


  • Singapore User Experience Researchers Pte Ltd Full time

    As a Governance, Risk and Compliance Specialist, you will be a subject matter expert advising internal stakeholders on cybersecurity compliance requirements. You will be working closely with application teams and line 2. Your scope of work includes: Writing internal cybersecurity policies and processes Ascertain security compliance Support IT / cyber...

  • Business Analyst

    4 days ago


    Singapore SYNAPXE PTE. LTD. Full time

    About SYNAPXE PTE. LTD.SYNAPXE PTE. LTD. is a leading company in the industry, committed to excellence and innovation. We are seeking a highly skilled Business Analyst to join our team as a Governance, Risk and Compliance Specialist.


  • Singapore NTU (Nanyang Technology University- MainOffice-HR) Full time

    ABOUT THE NATIONAL INSTITUTE OF EDUCATION(NIE)The National Instituteof Education (NIE), Singapore, is Singapore's nationalteacher education institute and we are proud to be an integral partof the nation's education service. We play a key role in thepreparation of teachers and in the provision of teacherprofessional and school leadership development...


  • Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    About Security & Risk Solutions PTE. LTD.SECURITY & RISK SOLUTIONS PTE. LTD. is a reputable organization seeking a highly skilled APAC Regional Intelligence Analyst to join its team in Singapore.Salary Range: SGD 80,000 - SGD 120,000 per annumAbout the Role:We are looking for an enthusiastic and highly motivated analyst to work in a fast-paced environment...


  • Singapore USER EXPERIENCE RESEARCHERS PTE. LTD. Full time

    Roles & ResponsibilitiesJob SummaryAs a Governance Risk and Compliance Specialist to join our team, this role is crucial in developing and maintaining a robust culture of technology and cybersecurity risk governance across our organization.The ideal candidate will have at least 5 years of relevant experience in ICT cybersecurity, data security, audit...


  • Singapore INFINITE COMPUTER SOLUTIONS PTE LTD Full time

    Roles & ResponsibilitiesKey Responsibilities Develop the culture of Tech risk governance and management across the organisation, and ensure proper accountability in the management, tracking and reporting of tech and cyber risks. Provide subject matter advice to internal stakeholders on cyber security requirements that the Authority is required to comply...


  • Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    Job OverviewSafety and Security is a top priority for businesses operating in the Asia-Pacific region. To stay ahead of emerging risks, companies need insightful analysis that can inform strategic decisions.We are seeking an experienced APAC Regional Intelligence Analyst to join our team in Singapore. This is an exciting opportunity to contribute your skills...


  • Singapore Marina Bay Sands Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Governance Risk Analyst to join our team at Marina Bay Sands. As a key member of our cybersecurity team, you will play a crucial role in ensuring the security and integrity of our systems and data.Our ideal candidate will have a strong background in cybersecurity, with experience in vulnerability...


  • Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    About UsSECURITY & RISK SOLUTIONS PTE. LTD.SalaryThe estimated annual salary for this role is SGD $60,000 - $80,000 based on the industry standards and location.Job Description**Roles and Responsibilities**Supervise the security team onsite as part of the manpower strength, ensuring seamless operations and effective incident management.Assist in managing...


  • Singapore USER EXPERIENCE RESEARCHERS PTE. LTD. Full time

    Job DescriptionEstimated Salary: $120,000 - $180,000 per annumWe are seeking a highly skilled Tech Risk Governance and Compliance Specialist to join our team at USER EXPERIENCE RESEARCHERS PTE. LTD.About the RoleThis is a key position that requires an individual with strong expertise in developing a culture of tech risk governance and management. The...


  • Singapore Best Careers and Opportunities Full time

    Job Description Cybersecurity Consultant (Onshore) Experience at least 3 years of experience as a Cybersecurity Consultant or equivalent The scope of Services a) Provide cybersecurity support in system operations to ensure the compliance with Government policies, which include review, design and implementing security measure, process, controls for the...


  • Singapore JOBSTER PRIVATE LTD. Full time

    Job DescriptionWe are seeking a highly skilled Cyber Security Specialist to join our team at JOBSTER PRIVATE LTD. in Singapore. This is a challenging role that requires strong technical knowledge, excellent analytical skills, and the ability to work independently.Key Responsibilities:Develop and implement a culture of tech risk governance and management...