Information Security GRC Lead | Cloud security | NIST

6 days ago


Singapore Randstad Singapore Full time

Overview
Information Security GRC Lead | Cloud security | NIST
About the company
Our client is an established listed company with over 30 years of experience who is a market leader within their industry. As part of their plan to invest in technology, they are now hiring an experienced IT Governance Risk & Compliance (GRC) Lead to join their team.
About the job
Develop, implement, and maintain the ISMS based on ISO 27001, NIST CSF, and other leading frameworks.
Manage the GRC life-cycle: risk identification, assessment, control design, treatment, monitoring, and reporting.
Manage internal and external audits; oversee remediation plans and validate efficacy.
Define and refine security policies, standards, and procedures; lead ongoing compliance efforts with PDPA, PCI DSS, HIPAA, GDPR, SOC 2 (as applicable).
Deliver security training and awareness communication to enhance security culture.
Stay ahead of the curve - monitor industry changes, emerging threats, and regulatory updates; translate into policy and upfront risk management.
Skills and experience required
As a successful applicant, you will have at least 8 years of experience in Information Security. Exposure to cloud security will be of added advantage. Candidates with regional / global coverage will be highly preferred.
Whats on offer
This is an excellent opportunity to join an established company with strong support from business stakeholders to invest in information security.
To apply online please use the 'apply' function, alternatively you can reach me at (EA: 94C3609/ R )
Desired Skills and Experience
Information security, governance, risk management and Compliance (GRC), GRC, ISO 27001, NIST, Technology Risk, IT Risk Management, GDPR, IT Compliance, IT Governance, Risk Management, Security Awareness, Enterprise Risk Management, CISA, CISSP, Cloud Security
Seniority level
Mid-Senior level
Employment type
Full-time
Job function
Information Technology
Industries
Technology, Information and Internet
Technology, Information and Media
Referrals increase your chances of interviewing.
#J-18808-Ljbffr



  • Singapore Randstad Singapore Full time

    Information Security GRC Lead | Cloud security | NIST Join to apply for the Information Security GRC Lead | Cloud security | NIST role at Randstad Singapore 5 days ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. About the company Our client is an established listed company with over 30 years of experience...

  • Lead, Security Grc

    2 weeks ago


    Singapore COINBASE SINGAPORE PTE. LTD. Full time

    **GRC Security at Coinbase Coinbase stores more digital currency than any company in the world, making us a prime target on the internet. Security is core to our mission and has been a key competitive differentiator for us as we scale worldwide. Crucial to scaling is building and running a security compliance program that reflects how we protect the data and...


  • Singapore RANDSTAD PTE. LIMITED Full time

    Be a key driver in shaping our cybersecurity risk posture and influencing board-level security decisions. Work closely with CISO and senior leaders to embed security governance across all business units About the company Our client is an established listed company with over 30 years of experience who is a market leader within their industry. As part...

  • Grc

    1 week ago


    Singapore Good Job Creations Pte Ltd Full time

    1. Job Brief 1. Reporting - Head of Security **Responsibilities**: - Develop IT GRC management framework and processes that gel with Security Strategy. - Develop and maintain Security Policy. - Ensuring that requirements in IT Audit, Standard, Policy, Compliance and Risk controls are met. - Responsible for the maintaining the Risk Registries. - Define...


  • Singapore HORIZON COMPUTER MANAGEMENT PTE. LTD. Full time

    Roles & ResponsibilitiesKey ResponsibilitiesDevelop, implement, and manage the organization's information security strategy, policies, and procedures. Lead the design and enforcement of security controls to protect systems, networks, and data from cyber threats. Manage a team of security professionals, providing technical guidance, mentoring, and...


  • Singapore HORIZON SOFTWARE PTE. LTD. Full time

    Roles & ResponsibilitiesKey ResponsibilitiesDevelop, implement, and manage the organization's information security strategy, policies, and procedures.Lead the design and enforcement of security controls to protect systems, networks, and data from cyber threats.Manage a team of security professionals, providing technical guidance, mentoring, and performance...


  • Singapore Wise Full time

    Company Description Wise is a global technology company, building the best way to move and manage the world’s money. Min fees. Max ease. Full speed. Whether people and businesses are sending money to another country, spending abroad, or making and receiving international payments, Wise is on a mission to make their lives easier and save them money. As...

  • Security GRC Analyst

    4 weeks ago


    Singapore Wise Full time

    Company Description Wise is a global technology company, building the best way to move and manage the world's money.Min fees. Max ease. Full speed. Whether people and businesses are sending money to another country, spending abroad, or making and receiving international payments, Wise is on a mission to make their lives easier and save them money. As part...


  • Singapore HORIZON COMPUTER MANAGEMENT PTE. LTD. Full time

    Roles & ResponsibilitiesKey ResponsibilitiesConduct security assessments, audits, and gap analysis across infrastructure, applications, and processes. Advise clients on cybersecurity strategy, governance, and best practices. Perform risk assessments, threat modeling, and vulnerability management to identify and mitigate security risks. Develop and...


  • Singapore KNOWLEDGESG GLOBAL PTE. LTD. Full time

    Roles & ResponsibilitiesKey ResponsibilitiesExecute security reviews, audits, and gap assessments across applications, infrastructure, and business processes. Provide strategic advisory to clients on cybersecurity governance, risk posture, and security program development. Carry out risk evaluations, threat modeling exercises, and vulnerability analysis to...