Cybersecurity Governance and Risk Manager

2 weeks ago


Singapore Temasek International Pte Ltd Full time

At Temasek International Pte Ltd, we are seeking a seasoned cybersecurity professional to join our team as a Cybersecurity Governance and Risk Manager. This role will be a key member of the Governance, Risk, and Compliance unit, reporting directly to the CISO.

About Us

Temasek International Pte Ltd is a global investment company headquartered in Singapore. Our Purpose So Every Generation Prospers guides us to make a difference for today's and future generations. We operate on commercial principles, seeking to deliver sustainable returns over the long term. With 13 offices in 9 countries around the world, we have a presence in Asia and beyond.

About the Role

The increasing reliance of businesses on technology means that cybersecurity and IT risk management is a strategically important function within our organization. As a Cybersecurity Governance and Risk Manager, you will play a critical role in enhancing and implementing an effective governance and risk management framework to manage technology, data security, and cyber risks across the enterprise. Your efforts will enable us to better prepare to mitigate and manage these risks in the face of evolving cybersecurity threats.

Key Responsibilities
  • Operationalize the IT risk management framework, policies, and standards, as well as conduct compliance assurance activities, which include identifying and hunting for gaps and non-compliances in systems and other suppliers/vendors we use for IT operations.
  • Maintain cybersecurity and IT risk management policies and standards, third-party vendor management as well as system criticality frameworks for the firm to ensure effective IT risk compliance and cyber defence.
  • Modernize and optimize the conduct of governance and oversight role through adoption of new/emerging technology and application to enable real-time update and maintenance of risk register, third-party vendor assessment, leveraging on advanced analytics for trending and compliance monitoring.
  • Ensure the conduct of risks assessment and implementation of secure System Development Life cycle (SDLC) by Technology and Business units in their development and maintenance of IT infrastructure and applications.
  • Conduct periodic and ad-hoc assessments to monitor compliance with cybersecurity and technology policies and security controls design and operating effectiveness; review cybersecurity and technology risks; audit and operational risk issues to identify root causes and trends, and recommend appropriate remediation.
  • Provide independent IT and cyber risk management advice to the business, technical & operations groups to contribute towards secure implementation of technology initiatives.
  • Support the review and enhancement of third-party vendor risk management and establish a holistic framework and structure to manage this risk. Contribute to assessment of vendor risks via pre-contract due diligence processes and ensure development of mitigation plans by Business units.
  • Identify and assess the impact of technology risks on projects and ensure effective controls are established by business/technology units to mitigate technology risks arising from change requests, new initiatives and processes.
  • Proactively partner risk owners and manage risks to minimize impact from incidents, breaches or non-compliance. Conduct regular communication and refresher trainings to maintain a good level of cybersecurity and information risk awareness.
  • Support incident response and carry out any other tasks as assigned.
Requirements
  • At least 7 years of relevant experience in the field of cybersecurity and IT risk management, policy formulation, governance oversight, audits, and risk management.
  • Bachelor degree (and higher) in information security, engineering, cybersecurity, and related field. Professional information security certifications such as CISA, CRISC, CISSP, CCSK/CCSP, CGEIT, CDPSE, an advantage.
  • Possess strong prior experience and knowledge in cyber and IT standards and policy review, oversight, and governance, risk management, and audit. Experience in cyber strategy and policy formulation and cyber programme execution will be an advantage.
  • Strong technical background is important, with proven ability in technical security design and implementation.
  • Possess cyber domain knowledge across areas such as AI, cybersecurity technology architecture and solutioning, SOC/MSS, application & infrastructure security, data & information protection, supply chain security, cyber architecture, quantum, cloud computing security, and has knowledge of cyber regulations and compliance.
  • Good knowledge in industry security practices, frameworks, and standards such as MAS TRM, ISO27001, Cybersecurity Code of Practice, and NIST Cybersecurity Framework including emerging AI-related requirements and standards.
  • Strong communication, interpersonal, and leadership skills, with proven ability to manage multiple priorities, drive project teams, and collaborate across business units and partners to achieve desired end-goals.


  • Singapore The Cyber Security Agency of Singapore Full time

    Job TitleWe are seeking a Cybersecurity Governance and Risk Manager to join our team in the Regulations Division. The successful candidate will be responsible for supporting the processing of licence applications, managing public facing email mailboxes, handling queries from internal and external stakeholders, and providing administrative and logistic...


  • Singapore National Gallery Singapore Full time

    COMPANY DESCRIPTION National Gallery Singapore is a leading visual arts institution which oversees the world's largest public collection of Singapore and Southeast Asian modern art. Situated at the birthplace of modern Singapore, in the heart of the Civic District, the Gallery is housed in two national monuments - City Hall and former Supreme Court - that...

  • Cybersecurity Engineer

    10 hours ago


    Singapore SEATRIUM (SG) PTE. LTD. Full time

    **Responsibilities**: - Develops and delivers user training and awareness programs to promote cybersecurity best practices across the organization. - Assists in the implementation and management of Governance, Risk, and Compliance (GRC) frameworks. - Conducts regular security awareness campaigns and training sessions for employees. - Monitors and report on...


  • Singapore SINGAPORE AIRLINES LIMITED Full time

    Job Title: Cybersecurity Risk ManagerAbout the Role:We are seeking a highly experienced Cybersecurity Risk Manager to join our Internal Audit Division. The successful candidate will play a key role in identifying, assessing, and measuring cybersecurity risks associated with SIA's IT systems and processes.Main Responsibilities:Provide independent assurance on...

  • Senior Manager

    4 days ago


    Singapore BENCHMARK STAFFING SOLUTIONS Full time

    **About our client** Our client is a leading port group and trusted partner to cargo stakeholders. Their global network encompasses 160 locations in 42 countries around the world. The Group’s portfolio comprises over 60 deep-sea, rail and inland terminals, as well as affiliated businesses in supply chain management, logistics, marine and digital...


  • Singapore Temasek International Pte Ltd Full time

    Company OverviewTemasek International Pte Ltd is a global investment company with a strong presence in Asia and beyond. Our mission is to create value for our stakeholders through responsible investing and risk management.Job DescriptionWe are seeking an experienced Cybersecurity Governance Specialist to join our team. In this role, you will be responsible...


  • Singapore RANDSTAD PTE. LIMITED Full time

    About the Company: Our client is a prominent player in the industry, renowned for its commitment to quality and dedication to sustainability and social responsibility. With an extensive brand portfolio, we are a multinational company that values adaptability and expertise.About the Job: As our Information Security & Risk Governance Lead (GRC), you will be...


  • Central Singapore l'Oréal Full time

    We're not just building brands at L’Oreal, we're shaping how the world experiences beauty (and it takes a lot of cool jobs to do it). Intrigued? Keep reading, this might be the opportunity you've been searching for. **A Day in the Life**: As a Cybersecurity Risk Manager, reporting to the North Asia & SAPMENA GRC Lead, you will be crucial in safeguarding...


  • Singapore AMBITION GROUP SINGAPORE PTE. LTD. Full time

    Roles & ResponsibilitiesCyber Governance, Risk & CompliancePolicy & Standards Development: Assist in creating and improving cybersecurity policies, standards, and procedures. Risk & Compliance Assessments: Perform risk and compliance assessments and support the annual Risk & Controls Self-Assessment for the cyber domain. Addressing Gaps: Work with IT and...


  • Singapore Secur Full time

    Job OverviewAbout Secur We're seeking a skilled Cybersecurity Governance and Risk Specialist to collaborate with our cross-functional teams in driving impactful improvements in cybersecurity governance and risk management.

  • Governance, Risk

    3 weeks ago


    Singapore MENRVA PTE. LTD. Full time

    Roles & ResponsibilitiesMenrva Group are looking for an experienced Security Consultant, with specialism in Governance, Risk & Compliance, to work with one of our prestigious Clients in Singapore. If you have gained any exposure in the Asset Management space this would also be highly beneficial. In order to be considered for this, please ensure you have...


  • Singapore US Cybersecurity and Infrastructure Security Agency Full time

    **Duties**: **This position is remote work (long distance remote) and telework eligible consistent with the Agency's telework and remote work program policy. Applicants who live within the local commuting area (i.e., a 50-mile or less radius from Glebe Road, Arlington VA (not driving distance)) are ineligible for local remote work and are expected to perform...


  • Singapore INFOSYS COMPAZ PTE. LTD. Full time

    Roles & ResponsibilitiesCyber Governance, Risk & Compliance (GRC) Principle ConsultantKey Responsibilities and Key performance indicators• Maintain/Develop cybersecurity policies, standards, and frameworks.• Ensure alignment with industry standards (e.g., CSA Cyber Trust Mark, ISO 27001, NIST, CIS, SOC 2).• Collaborate with business units to integrate...


  • Singapore Temasek International Pte Ltd Full time

    Temasek International Pte Ltd is a global investment company that operates on commercial principles, seeking to deliver sustainable returns over the long term. Our Purpose So Every Generation Prospers guides us to make a difference for today's and future generations.Our team is working in the Cybersecurity Department under the Governance, Risk, and...

  • Risk Governance Lead

    2 weeks ago


    Singapore Temasek International Pte Ltd Full time

    Our team works closely with business units and partners to achieve desired end-goals. As a key member of the Cybersecurity Department under the Governance, Risk, and Compliance unit, you will be responsible for implementing and maintaining cybersecurity and IT risk management policies and standards, as well as conduct of compliance assurance activities.Key...


  • Singapore Temasek International Pte Ltd Full time

    Company OverviewTemasek International Pte Ltd is a global investment company headquartered in Singapore, with a significant presence in the Asian and international markets. With a strong commitment to sustainable returns over the long term, Temasek seeks to make a difference for today's and future generations.The company operates on commercial principles,...


  • Singapore STONE CYBERSECURITY PTE. LTD. Full time

    We are looking for a strategic, detail-oriented individual to join our team as a security consultant. Your responsibilities will include developing and reviewing activities across the entire scope of our client's Security Governance, Risk and Compliance programs. (E.g. NIST, ISO27001, MAS-TRM etc.) To be successful as a security consultant, you should have...


  • Singapore WILLMARK ADVISORY PTE. LTD. Full time

    We are seeking a highly skilled and experienced Head of Cybersecurity Governance to join our team at Willmark Advisory PTE. LTD.The ideal candidate will have a strong background in cybersecurity governance, with experience in developing and implementing effective cybersecurity policies and procedures to mitigate risks associated with IT infrastructure,...


  • Singapore Charterhouse Pte Ltd Full time

    At Charterhouse Pte Ltd, we are seeking a highly skilled Cybersecurity Governance Specialist to join our team. In this role, you will be responsible for managing and overseeing the organization's IT risk management and compliance processes.This position requires a strong understanding of IT governance frameworks and regulatory requirements, including MAS...


  • Singapore SINGAPORE AIRLINES LIMITED Full time

    Job OverviewSINGAPORE AIRLINES LIMITED seeks a highly skilled Cybersecurity Risk Management Specialist to join its Internal Audit Division. This role is critical in providing independent assurance on the Group's IT governance, technology risk management, and control processes.