IT Cybersecurity Analyst, Grc
1 week ago
We’re not like most. We don’t just overcome obstacles - we don’t see them. Instead, we see the potential in every person, and every situation. We don’t wait for opportunity to appear - we create it. Meet ASM. A company that has been searching for people just like you._
**Who is ASM?**
ASM is a leading, global supplier of semiconductor wafer processing equipment. Our ambitious team is dedicated to delivering innovative technology solutions to the world’s leading semiconductor manufacturers. We have over 2,600 employees based in 14 countries, including Belgium, Japan, Netherlands, South Korea, Singapore, Taiwan and United States. Together we work to develop Epitaxy, ALD, PEALD, Vertical Furnaces and PECVD thin-film deposition technologies for our customers. Our goal is to remain an industry leader by being ahead of what’s next. We accomplish this by focusing on finding collaborative solutions to make integrated circuits, or chips, smaller, faster and even more powerful.
**ASM, an inclusive workplace**
We at ASM are a truly global organization that works diligently with an open-mind in all areas of our business. We strive for a culture and work style that fosters trust and transparency. We put our people first, and that is how we will continue to succeed. We are an equal opportunity employer and value diversity. We recognize and value the differences between individuals, including gender, ethnicity, religious beliefs, sexual orientation, knowledge and experience, work background, age, skills, amongst others. Recruiting and developing a diverse workforce provides a wide range of perspectives. This enables a culture of continuously exploring and adopting new technological ideas and innovations, and it also enables us to deliver excellent products and service to our clients.
**Position Specification**
Job title: IT Cybersecurity Analyst, GRC
Reporting line: Reporting to the Senior Manager, IT Security and GRC.
This role will be based in: Singapore
Position summary: The GRC Security Analyst will plan and implement policies, procedures, standards, and controls to govern the protection of corporate information systems, networks, and data. The GRC security analysts will stay up-to-date on the latest cybersecurity intelligence, including hackers' methodologies, in order to modify standards and controls that govern cybersecurity across the corporation.
**Key Responsibilities**:
- Perform cybersecurity and compliance assessments on new and existing systems, processes, technology.
- Support vendor due-diligence process and help to lead and define overall vendor risk management efforts.
- Work with various business units to ensure controls are adequate, appropriate, and effective.
- Support internal and external audit process for relevant compliance concerns including IT General, Application and Process Controls.
- Participate in disaster recovery and business continuity planning.
- Perform business impact analysis and assist with development of IT/InfoSec risk register.
- Interface with Global IT and business partners to provide guidance and support.
- Perform periodic gap assessments to validate compliance on an ongoing basis.
- Stay up to date and informed on developing regulatory concerns and changing IT and information security trends.
- Ready to take on addition responsibilities and roles such as cybersecurity project implementation, Security Operation, Purple Team and etc.
- Security certifications such as CIPP, CISA, CSIR or ISO27001 Lead Auditor
- Experience in Implementing security controls, risk assessment framework, and program that align to regulatory requirements
- At least 5 years of IT and operation experience
- Bachelor’s degree relevant to Information Technology, Computer Science/Engineering (or equivalent)
- Experience on various technologies such as Microsoft, Azure and SAP
- 2 years Working experience in cybersecurity solutions such as Security Configuration Management, GRC, DLP and etc.
- Deep domain knowledge, ideally with experience with global exposure and strong understanding knowledge of cloud computing.
- Cloud solution provider certification such as Azure will be a bonus.
**Technical Skills & Knowledge**:
- Implements processes, such as GRC (governance, risk and compliance), to automate and continuously monitor information security controls, exceptions, risks, testing. Develops reporting metrics, dashboards, and evidence artifacts.
- Defines and documents business process responsibilities and ownership of the controls in GRC tool. Schedules regular assessments and testing of effectiveness and efficiency of controls and creates GRC reports.
- Knowledge on industry standards such as ISO27001, COBIT, NIST, CIS, CSA, OSWAP, GDPR and etc.
- Performs and investigates internal and external cybersecurity risk and exceptions assessments. Assess incidents, vulnerability management, scans, patching status, secure baselines, penetration test result, phishing, and social engineer
-
Policy Analyst
2 weeks ago
Singapore TikTok Full timeResponsibilities TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. TikTok has global offices including Los Angeles, New York, London, Paris, Berlin, Dubai, Singapore, Jakarta, Seoul and Tokyo. Why Join Us At TikTok, our people are humble, intelligent, compassionate and creative. We create to...
-
Ciso As a Service Cybersecurity Consultant
3 hours ago
Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time**Duties and Responsibilities: This individual will play a crucial role in developing and managing information cybersecurity for our clients. As a Cybersecurity Consultant, you will be responsible for developing, evaluating, and reviewing information security policies in accordance with relevant standards and frameworks such as ISO27001, NIST. We are...
-
Security Consultant
6 days ago
Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time**Responsibilities** - Engage clients to identify requirements relating to cyber security solutions for GRC, VMS, DLP or Data Protection - Proposal, scope and size technical solutions for clients - Deploy competency’s related projects and provide consultation to clients with regard to the deployment as a Subject Matter Expert (SME) - Create technical...
-
cybersecurity analyst
1 week ago
Singapore Government Technology Agency (GovTech) Full timeCYBERSECURITY ANALYST - DIGITAL SERVICES & TECHNOLOGY OFFICE CYBERSECURITY ANALYST - DIGITAL SERVICES & TECHNOLOGY OFFICE Apply locations: Ngee Ann Polytechnic, Clementi Campus Time type: Full time Posted on: Posted Yesterday Job requisition id: JR (What the role is)This is a 2-year contract position as a Cybersecurity Analyst in the Digital Services &...
-
Senior/consultant, Cybersecurity
1 week ago
Singapore NodeFlair Full time**Job Summary**: **Salary** S$5,944 - S$11,889 / Monthly EST **Job Type** Permanent **Seniority** Senior **Years of Experience** 10-15 years **Tech Stacks** Strategy - We’re searching for a - ** Senior/Consultant, Cybersecurity (GRC) **to be part of our diverse team of talent here at NCS! - If you believe in going above and beyond, want to exemplify...
-
Cybersecurity Analyst
1 week ago
Singapore Cyber Crime Full timeCybersecurity Analyst - Digital Services & Technology Office (What the role is)This is a 2-year contract position as a Cybersecurity Analyst in the Digital Services & Technology Office. (What you will be working on)The Cybersecurity Analyst is responsible for managing daily cybersecurity operations, responding to incidents, analyzing security alerts, and...
-
cybersecurity analyst
7 days ago
Singapore NPO Ngee Ann Polytechnic Full time(What the role is)This is a 2-year contract position as a Cybersecurity Analyst in the Digital Services & Technology Office. (What you will be working on)The Cybersecurity Analyst is responsible for managing daily cybersecurity operations, responding to incidents, analyzing security alerts, and enhancing cyber hygiene awareness. This role includes security...
-
Cybersecurity Engineer
7 days ago
Singapore SEATRIUM (SG) PTE. LTD. Full time**Responsibilities**: - Develops and delivers user training and awareness programs to promote cybersecurity best practices across the organization. - Assists in the implementation and management of Governance, Risk, and Compliance (GRC) frameworks. - Conducts regular security awareness campaigns and training sessions for employees. - Monitors and report on...
-
cybersecurity analyst
1 week ago
Singapore Ngee Ann Polytechnic Full timeWhat the role is: This is a 2-year contract position as a Cybersecurity Analyst in the Digital Services & Technology Office. What you will be working on: The Cybersecurity Analyst is responsible for managing daily cybersecurity operations, responding to incidents, analyzing security alerts, and enhancing cyber hygiene awareness. This role includes security...
-
Cybersecurity Risk Analyst
2 weeks ago
Singapore Manpower Singapore Full timeWe are seeking a diligent Cybersecurity Risk Analyst to identify, analyse, and mitigate cybersecurity risks in our systems and networks. This role involves the execution of risk assessments, vulnerability analyses and the development of risk management strategies. You should be well-versed in cybersecurity risk assessment methodologies and familiar with a...
-
Senior Consultant Cybersecurity
3 hours ago
Singapore ANTER RECRUITMENT PTE. LTD. Full time**Role Overview**: This is a hybrid role based in Singapore with some remote work flexibility. As a Senior/Lead Consultant in IT Governance, Risk & Compliance, you will oversee IT governance, conduct risk assessments, develop policies, and implement risk mitigation strategies. You’ll also guide regulatory compliance to ensure industry standards are...
-
Governance, Risk, and Compliance
2 weeks ago
Singapore Logicalis Full time**Descripción del puesto de trabajo**: **Why choose Logicalis?** As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting their vision with their technology expertise and industry insights. The company, through its deep understanding of key IT industry drivers such as security, cloud, data...
-
Cybersecurity Risk Analyst
2 weeks ago
Singapore MANPOWER STAFFING SERVICES (SINGAPORE) PTE LTD Full timeRoles & ResponsibilitiesWe are seeking a diligent Cybersecurity Risk Analyst to identify, analyse, and mitigate cybersecurity risks in our systems and networks.This role involves the execution of risk assessments, vulnerability analyses and the development of risk management strategies.You should be well-versed in cybersecurity risk assessment methodologies...
-
Cybersecurity Risk Analyst
1 week ago
Singapore MANPOWER STAFFING SERVICES (SINGAPORE) PTE LTD Full timeRoles & ResponsibilitiesWe are seeking a diligent Cybersecurity Risk Analyst to identify, analyse, and mitigate cybersecurity risks in our systems and networks.This role involves the execution of risk assessments, vulnerability analyses and the development of risk management strategies.You should be well-versed in cybersecurity risk assessment methodologies...
-
Vulnerability Analyst, IT Cybersecurity
23 hours ago
Singapore SEARCH STAFFING SERVICES PTE. LTD. Full timeWe are currently working with a German MNC client; looking for a Vulnerability Analyst, IT with cybersecurity work experience to join them. **Vulnerability Analyst, IT **Responsibilities**: - As part of the vulnerability management team you will help to identify, prioritize, and track findings - Work closely with many different departments in order to...
-
Information Technology
1 week ago
Singapore Singapore Airlines Full timeYou will be an integral member of the SIA Group Information Security team, reporting directly to the Chief Information Security Officer (CISO). In this strategic role, you will support the CISO in developing, implementing, and maintaining a comprehensive Information Security program ensuring Governance, Risk, and Compliance (GRC). You will lead a lean, agile...
-
Cybersecurity Analyst
2 weeks ago
Singapore Visa Full timeCompany Description Visa is a world leader in digital payments, facilitating more than 215 billion payments transactions between consumers, merchants, financial institutions and government entities across more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable and secure...
-
Cybersecurity Risk Analyst
7 days ago
Singapore RYSENSE LTD. Full timeABOUT RYSENSE LTD RySense is a homegrown research organisation dedicated to understanding what Singaporeans think, feel and do. Harnessing our passion for research excellence, we take pride in delivering quality data and in-depth insights that empower decision-making and shape a better Singapore. Our commitment to robust methodologies, timely information,...
-
Principal, Irm
1 week ago
Singapore Johnson & Johnson Full timeJohnson & Johnson is recruiting for a **Principal, Governance, Risk, and Compliance (GRC) Solutions **to join the Information Security & Risk Management (ISRM) team. This role may be based at J&J locations in **Singapore **;** Warsaw, Poland **; or **Sao Jose dos Campos, Brazil **. Are you ready to use your technical knowledge to change the trajectory of...
-
Cybersecurity Professional
1 week ago
Singapore Ngee Ann Polytechnic Full timeJob OverviewAbout the RoleWe are seeking a highly motivated and detail-oriented Cybersecurity Analyst to join our team. As a Cybersecurity Analyst, you will play a critical role in managing daily cybersecurity operations, responding to incidents, analyzing security alerts, and enhancing cyber hygiene awareness.This is a 2-year contract position as a...