AVP/VP (12 months contract), Cybersecurity (Governance, Risk & Compliance)

5 days ago


Singapore Temasek Holdings Full time

AVP/VP (12 months contract), Cybersecurity (Governance, Risk & Compliance) Location: Singapore, SG, Group: Corporate Group Department: Cybersecurity Section: Cybersecurity Job Type: Contract Temasek is a global investment company headquartered in Singapore, with a net portfolio value of S$389 billion (US$288b, €267b, £228b, RMB2.08t) as at 31 March 2024. Our Purpose “So Every Generation Prospers ” guides us to make a difference for today’s and future generations. You'll be working in the Cybersecurity Department under the Governance, Risk, and Compliance unit, which reports directly to the CISO. The increasing reliance of businesses on technology means that cybersecurity and IT risk management is a strategically important function within Temasek. Responsibilities Operationalizing the IT risk management framework, policies and standards, as well as conduct of compliance assurance activities, which include identifying and hunting for gaps and non-compliances in systems and other suppliers/vendors we use for IT operations. Maintain cybersecurity and IT risk management policies and standards, third-party vendor management as well as system criticality frameworks for the firm to ensure effective IT risk compliance and cyber defence. Modernise and optimize conduct of governance and oversight role through adoption of new/emerging technology and application to enable real-time update and maintenance of risk register, third party vendor assessment, leveraging on advanced analytics for trending and compliance monitoring. Ensure the conduct of risks assessment and implementation of secure System Development Life cycle (SDLC) by Technology and Business units in their development and maintenance of IT infrastructure and applications. Conduct periodic and ad-hoc assessments to monitor compliance with cybersecurity and technology policies and security controls design and operating effectiveness; review cybersecurity and technology risks; audit and operational risk issues to identify root causes and trends, and recommend appropriate remediation. Provide independent IT and cyber risk management advice to the business, technical & operations groups to contribute towards secure implementation of technology initiatives. Support the review and enhancement of third-party vendor risk management and establish a holistic framework and structure to manage this risk. Contribute to assessment of vendor risks via pre-contract due diligence processes and ensure development of mitigation plans by Business units. Identify and assess the impact of technology risks on projects and ensure effective controls are established by business/technology units to mitigate technology risks arising from change requests, new initiatives and processes. Proactively partner risk owners and manage risks to minimize impact from incidents, breaches or non-compliance. Conduct regular communication and refresher trainings to maintain a good level of cybersecurity and information risk awareness. Support incident response and carry out any other tasks as assigned. Requirements At least 7 years of relevant experience in the field of cybersecurity and IT risk management, policy formulation, governance oversight, audits and risk management. Bachelor degree (and higher) in information security, engineering, cybersecurity and related field. Professional information security certifications such as CISA, CRISC, CISSP, CCSK/CCSP, CGEIT, CDPSE, are an advantage. Possess strong prior experience and knowledge in cyber and IT standards and policy review, oversight and governance, risk management and audit. Experience in cyber strategy and policy formulation and cyber programme execution will be an advantage. Strong technical background is important, with proven ability in technical security design and implementation. Possess cyber domain knowledge across areas such as AI, cybersecurity technology architecture and solutioning, SOC/MSS, application & infrastructure security, data & information protection, supply chain security, cyber architecture, quantum, cloud computing security and has knowledge of cyber regulations and compliance. Good knowledge in industry security practices, frameworks, and standards such as MAS TRM, ISO27001, Cybersecurity Code of Practice, and NIST Cybersecurity Framework including emerging AI related requirements and standards. Strong communication, interpersonal and leadership skills, with proven ability to manage multiple priorities, drive project teams and collaborate across business units and partners to achieve desired end-goals. #J-18808-Ljbffr



  • Singapore Temasek Holdings Full time

    AVP/VP (12 months contract), Cybersecurity (Governance, Risk & Compliance) Location: Singapore, SG, Group: Corporate Group Department: Cybersecurity Section: Cybersecurity Job Type: Contract Temasek is a global investment company headquartered in Singapore, with a net portfolio value of S$389 billion (US$288b, €267b, £228b, RMB2.08t) as at 31 March...


  • Singapore Sea Full time

    Join to apply for the Cybersecurity Manager, Corporate IT role at Sea Join to apply for the Cybersecurity Manager, Corporate IT role at Sea Design and execute a modern cybersecurity strategy aligned with both immediate needs and long-term business objectives. Build the security function from the ground up, including setting vision, defining org structure,...

  • Technology Risk

    2 weeks ago


    Singapore NTT SINGAPORE PTE. LTD. Full time

    **Technology Risk & Cybersecurity Manager (Mid-Level) - Contract** **Location**:Tanjong Pagar (Onsite at Client’s Office) **Employment Type**:12 Months Contract (renewable) **Industry**:Global Investment Management / Financial Services **Employer**:NTT DATA Singapore Pte. Ltd. **Monthly Salary Range**: Based on experience **About the Role**: We are...


  • Singapore SEKURO OPERATIONS PTE. LTD. Full time

    **About the Role** As a GRC Analyst, you’ll be at the forefront of our cybersecurity initiatives, working closely with business and tech teams to: Conduct cybersecurity risk assessments using leading global frameworks Help shape cybersecurity roadmaps and policies aligned with real-world business risks Identify and analyse IT and business operational...


  • Singapore SEKURO OPERATIONS PTE. LTD. Full time

    About the Role As a GRC Analyst, you’ll be at the forefront of our cybersecurity initiatives, working closely with business and tech teams to: Conduct cybersecurity risk assessments using leading global frameworks Help shape cybersecurity roadmaps and policies aligned with real-world business risks Identify and analyse IT and business operational risks...


  • Singapore GIC Full time

    Join to apply for the VP/SVP, Operational Risk Management (contract)role at GIC Join to apply for the VP/SVP, Operational Risk Management (contract)role at GIC Get AI-powered advice on this job and more exclusive features. GIC is one of the world’s largest sovereign wealth funds. With over 2,000 employees across 11 locations around the world, we invest in...


  • Singapore GIC Full time

    Join to apply for the VP/SVP, Operational Risk Management (contract) role at GIC Join to apply for the VP/SVP, Operational Risk Management (contract) role at GIC Get AI-powered advice on this job and more exclusive features. GIC is one of the world’s largest sovereign wealth funds. With over 2,000 employees across 11 locations around the world, we invest...


  • Singapore Attila Cybertech Pte. Ltd. Full time

    1 day ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Responsibilities Being a specialist in the areas of Operational Technology Cyber Security, including Risk Assessment, Vulnerability Assessment and Penetration Testing; Contribute to business development by providing technical support during presales...


  • Singapore GIC Full time

    AVP/VP, IAM Engineer (Development Lead), Cybersecurity Resilience Join to apply for the AVP/VP, IAM Engineer (Development Lead), Cybersecurity Resilience role at GIC AVP/VP, IAM Engineer (Development Lead), Cybersecurity Resilience 3 days ago Be among the first 25 applicants Join to apply for the AVP/VP, IAM Engineer (Development Lead), Cybersecurity...


  • DBS Asia Hub, Singapore at DBS Full time $120,000 - $200,000 per year

    VP / AVP, Specialist, Technology Risk (Cybersecurity), Risk Management Group - (WD Business Function Risk Management Group works closely with our business partners to manage the bank's risk exposure by balancing its objective to maximise returns against an acceptable risk profile. We partner with origination teams to provide financing, investments and...