
Lead Information Security Consultant
3 days ago
Overview
Lead Information Security Consultant (ISO 27001 / ISMS) role at Keyrus. Our client seeks an ISO/IEC 27001 Lead Consultant to drive the ISMS program across IBMS and FMS in an airport environment. The role focuses on updating documentation to the latest ISO/IEC 27001:2022 standards, creating processes and artefacts for previously unaudited areas, coordinating with internal and external partners, and leading risk activities while planning certification through the full three-year ISO cycle, including initial certification and surveillance audits.
Key Responsibilities
Review and streamline ISMS processes and documentation; align to ISO/IEC 27001:2022, ISO/IEC 27002:2022 and the Statement of Applicability for IBMS/FMS scope.
Lead comprehensive risk assessment of airport assets and OT systems (IBMS/FMS), develop risk treatment plans, update SoA and control evidence.
Develop missing policies, procedures, standards, data classification, supplier security, incident response, and OT/ICS-specific controls where gaps exist.
Design and deliver ISMS awareness and role-based training for Engineering, Facilities, OT and IT stakeholders.
Plan and execute internal audits; track non-conformities and corrective actions to closure.
Prepare and support management reviews (inputs, metrics, KPIs, effectiveness evaluation).
Coordinate the certification body engagement: certification readiness, audit logistics, on-site support, responses to findings; build the surveillance audit calendar and handover plan.
Orchestrate partners (systems integrators, OEMs, managed service providers) to deliver controls and evidence needed for certification.
Establish interfaces with airport governance (safety, operations, physical security) and change management to ensure enduring compliance.
Produce clear deliverables: current-state gap report, risk register and RTP, updated ISMS library, audit pack, auditor playbook, training records, and a year-by-year surveillance roadmap.
Requirements
Must-haves
Industry-recognised ISO/IEC 27001 certifications (Lead Auditor and/or Lead Implementer) from IRCA, PECB or an equivalent body.
5+ years of proven ISO/IEC 27001 ISMS implementation and internal audit experience, including successful certification programs.
Demonstrable experience across OT/industrial or campus-scale environments; able to translate ISO controls for IBMS/FMS (e.g., BMS, access control, CCTV, fire, PA/VA, energy, elevators).
Strong risk management, policy development, audit execution, supplier governance, and evidence management.
Eligibility to work on-site in Singapore and to pass airport background/security clearance.
Nice-to-haves
Previous experience in airport or airline programs; exposure to aviation operational technology and critical infrastructure.
Complementary certifications (e.g., ISO 22301, ISO 20000-1, CISSP/CISM/CISA) and familiarity with NIST CSF/800-82.
Experience engaging with accredited certification bodies operating in Singapore.
What We Offer
Keyrus offers a working environment and projects that attract the best people working in business intelligence, data analytics, and digital transformation. Working on diverse and challenging projects, you will have the opportunity to develop multi-disciplinary IT/business skills to help you build a strong career path. You will be part of a young and ever-learning enterprise with an established international network of thought-leading professionals driven by bridging the gap between innovation and business. You get the opportunity to meet specialised and professional consultants in a multicultural ecosystem.
Who We Are
Keyrus, creator of value in the era of Data and Digital. Keyrus is dedicated to helping enterprises take advantage of the Data and Digital paradigm to enhance their performance, facilitating and accelerating their transformation, and generating new drivers of growth, competitiveness, and sustainability. Keyrus in APAC employs more than 220 highly skilled consultants and is part of the international Keyrus Group, an international player in consulting and technologies and a specialist in Data and Digital. Created in 1996, listed on Euronext's Eurolist, with consolidated revenues of US$400m in 2023 and with more than 3,500 employees in 27 countries, the Keyrus Group offers the performance, solidity and know-how of a large professional services organisation, whilst preserving the agility of a young company.
Seniority level
Mid-Senior level
Employment type
Full-time
Job function
Information Technology
Referrals increase your chances of interviewing at Keyrus by 2x
Get notified about new Information Security Consultant jobs in Singapore.
#J-18808-Ljbffr
-
Information Security Consultant
23 hours ago
Singapore PayPal Full timeOverview Information Security Consultant at PayPal. You’ll partner with product teams to understand proposed new products and changes to PayPal products to ensure security is part of the design, development, and release to deliver secure solutions to our customers. Responsibilities Leverage specialized security expertise to identify and resolve complex...
-
Information Security Consultant
2 weeks ago
Singapore beBeeCybersecurity Full time $90,000 - $120,000Job Summary:We are seeking a highly skilled Information Security Consultant to join our team. As an Information Security Consultant, you will be responsible for planning and executing IT / OT security assessment engagements and red / purple teaming operations.Responsibilities:Support Consultants with remote / onsite assessments, such as red teaming and/or...
-
Information Security Analyst/consultant
3 days ago
Singapore IMAGENZ PTE. LTD. Full time**Job Summary**: We are seeking a skilled and dedicated Information Security Analyst/Consultant to join our team. In this role, you will be responsible for advising, assisting, and implementing information security programs for our clients using frameworks such as ISO/IEC 27001:2022 and Cyber Trust Mark, in addition you will also be involve in overseeing the...
-
Information Security Consultant
2 weeks ago
Singapore beBeeInformationSecurity Full time $100,000 - $140,000Job Opportunity:Cybersecurity professionals with a passion for audit and consulting are invited to apply for this exciting role. Our team assists clients in planning and executing IT audits, risk assessments, data privacy protection, and GRC advisory engagements.About the Role:This position involves assisting senior consultants with onsite assessments,...
-
Information Security Consultant
3 days ago
Singapore PayPal Full time $60,000 - $180,000 per yearThe CompanyPayPal has been revolutionizing commerce globally for more than 25 years. Creating innovative experiences that make moving money, selling, and shopping simple, personalized, and secure, PayPal empowers consumers and businesses in approximately 200 markets to join and thrive in the global economy. We operate a global, two-sided network at scale...
-
Information Security Consultant
2 weeks ago
Singapore beBeeSecurity Full timeJob Title: Third Party Cyber Security Assessor "> Description: ">"> Evaluate the information security and business continuity programs of third-party service providers to ensure they meet our requirements. "> "> Responsibilities: ">"> Conduct assessments of third parties providing services to a global financial institution. "> Evaluate the design and...
-
Information Security Consultant
1 week ago
Singapore Turner & Townsend Full time**Company Description**: **Why it’s great to work for Turner & Townsend** At Turner & Townsend we’re passionate about making the difference. That means delivering better outcomes for our clients, helping our people to realize their potential, and doing our part to create a prosperous society. Every day we help our major global clients deliver ambitious...
-
Information Security Consultant
2 weeks ago
Singapore Rapsys Technologies Full time**_Job Responsibilities_** 1. Ensure compliance controls are in place to determine security effectiveness and compliance toward meeting regulatory and/or standards compliance. 2. Regularly report progress on CVSS scores, identified risks in addition to coordinate efforts with the Security Lead or Project Manager as required. 3. Ensure compliance controls...
-
Security Consultant
2 weeks ago
Singapore SAMSUNG SDS ASIA PACIFIC PTE. LTD. Full time**RESPONSIBILITIES**: - Responsible for IT Security Management on IT infra (Mobile/Web Applications, Server, Database, Network Security) - Responsible for managing IT Security OperationEndpoint Security, Network Security, App Security and other Security System - Responsible for IT Security AssessmentSecurity Governance, Policy, Server/DB/Network/PC,...
-
Junior Cyber Security Consultant
4 weeks ago
Singapore PLAN B SECURITY PTE. LTD. Full timeRoles & ResponsibilitiesJob Description:As a next-gen Cyber Security Consultant. The candidates will be involve in project planning, rolling out of security solution to secure customers environment. Having an open heart and open mind, to learn the sophisticated Cyber Security technology. Join us and onboard to the next-gen journey.Product Coverage* Next-Gen...