
Information Security Risk
7 days ago
A great opportunity exists as APAC Information Security Risk & Compliance Consultant, reporting to APAC Information Security Risk & Compliance Lead.
The APAC Information Security Risk & Compliance Consultant collaborates with compliance, security, and general IT risks to ensure that IT supports the business objectives of the group, while enforcing policy, standards, and ensuring project implementations are consistent with local, regional, and global strategy. As part of the APAC Information Security team, will collaborate closely with other team members in providing support to APAC Business Units in the risk identification, assessment, and advice to the various stakeholders.
**Key responsibilities**:
- Support APAC Business Information Security Officers (BISOs) in performing the following assessments using the global standard risk-based approach:
- Cloud security assessments-
- Third party vendor assessments-
- Business / IT Application assessments (incl. pre & post implementation reviews)-
- Regulatory assessments (local regulations, ISO27001, PCI DSS, SOC2 etc.)-
- Remediation action review, analysis, and management-
- Themed security reviews-
- Maintain Information Security, Risk and Compliance frameworks, policies, and standards for the APAC region.- Provide governance over, and support BISOs in the coordination of, regional and local information security gap remediation.- Perform analysis to identify common themes and drive regional remediation activities.- Advise APAC Business Information Security Officers (BISOs) and stakeholders in information security policy compliance requirements.- Provide advice, governance and support in information security policy exception and risk acceptance processes.- Work closely with the Information Security Governance (ISG) team in Global Information Security (GIS) to ensure global requirements are communicated to APAC stakeholders, and APAC requirements are considered in global Information security compliance projects.- Drive or support global information security governance initiatives in the APAC region.- Ensure the wellbeing of team members and proactively work to identify and manage workplace exposures which may precipitate workplace stress, bullying, harassment, and discrimination.
**Experience / Qualification Required**:
- University degree (primarily in computer science or comparable technical education),- Minimum 5 years professional experience in Information Security related fields and/ or IT Risk Management- One or more of the following information security related certifications is desirable: CISA, CRISC, CISSP and/or CISM.- PCI ISA and/or ISO27001 experience / certification is a plus.- Ability to operate using highly developed consulting and influencing skills, and able to communicate security-related concepts to a broad range of technical and non-technical staff.- Strong risk management and information security skills.- Big4 information security consulting and/or IT audit experience is a plus.- Insurance industry understanding would be highly beneficial.
**Knowledge**:
- Good working understanding of IT security, architectures, and compliance controls-
- Effective communication, presentation, and relationship management skills at different levels in a multicultural environment- Excellent co-ordination and time management skills for hands on assessment management- Strong report writing skills.- Eye for detail and inquisitive nature- Strong integrity and highly ethical- Innovative ability to contribute to development of processes.- Ethic of continuous improvement in their role- Effective in influencing and persuasion.- Understanding and experience in PowerBI is preferable.- Proficient in English (written and spoken). Cantonese is a plus.
If you’re interested in being part of our adventure that will build a brighter future together, and feel a sense of togetherness, then we look forward to you starting your adventure with us
**Why Zurich**
At Zurich, we like to think outside the box and challenge the status quo. We take an optimistic approach by focusing on the positives and constantly asking What can go right?
We are an equal opportunity employer who knows that each employee is unique - that’s what makes our team so great
Join us as we constantly explore new ways to protect our customers and the planet.
- Location(s): SG - Singapore
- Remote working:
- Schedule: Full Time
- Recruiter name: Ahona Adhikary
- Closing date:
-
Manager, Information Security
2 weeks ago
Singapore Marriott International, Inc Full time**Job Number** 24076260 **Job Category** Information Technology **Location** Singapore Regional Office, 2 Harbourfront Place #06-08, Singapore, Singapore, Singapore VIEW ON MAP **Schedule** Full-Time **Located Remotely?** N **Relocation?** N **Position Type** Management **JOB SUMMARY** Excellent communication skills are required to effectively...
-
Information Security Risk Manager
2 weeks ago
Singapore The Edge Asia Full timeThe role is a permanent position based in Singapore. EA Licence Number: 16S8131 Recruiter Licence Number: R22104669 **Some of the key responsibilities will include**: - Develop and maintain organization framework, rulesets, policies and procedures on information security and data protection. - Maintain inventory of Availability, Integrity, and...
-
Information Security
2 weeks ago
Singapore Bank of Singapore Full timeBank of Singapore SingaporePosted 2 hours ago Permanent Competitive - Information Security & Digital Risk (Associate Director) - At Bank of Singapore, we are constantly on the lookout for exceptional individuals to join our team. We promote a culture of openness, teamwork and fairness. Most importantly, we invest in our people through our programmes that...
-
Information Security
2 weeks ago
Singapore Bank of Singapore Full timeAt Bank of Singapore, we are constantly on the lookout for exceptional individuals to join our team. We promote a culture of openness, teamwork and fairness. Most importantly, we invest in our people through our programmes that develop them on both professional and personal levels. Besides attractive remuneration packages, we offer non-financial benefits and...
-
Information Technology Security Specialist
6 days ago
Singapore SMART INFORMATION MANAGEMENT SYSTEMS PRIVATE LIMITED Full time**Key Responsibilities**: **Cybersecurity Risk Assessment & Mitigation**: - **Cyber Risk Assessment**:Conduct comprehensive cyber risk assessments in support of technology initiatives, identifying IT-related risks and recommending appropriate security controls to mitigate those risks. - **Risk Monitoring & Management**:Continuously track and manage risk...
-
Information Security Governance, Risk
16 hours ago
Singapore PACIFIC PRIME INSURANCE BROKERS SINGAPORE PTE. LTD. Full time**Summary** Working as part of the information security office within the IT department at Pacific Prime CXA, the GRC (Governance, Risk and Compliance) Manager will be responsible for leading the day-to-day IT compliance, data governance and IT risk management functions. Primary responsibility will include defining, creation, management and maintenance of...
-
Chief Information Security Risk Officer
1 day ago
Singapore beBeeSecurity Full timeInformation Security Risk Director Job DescriptionWe are looking for a seasoned Information Security Risk Director to join our team. This is an exciting opportunity to lead the security strategy and risk management efforts across our organization.
-
Technology Risk, Information Security
2 weeks ago
Singapore Hays Full timeCyber / Information Security Roles in Singapore Hi Everyone, An established international bank is looking for a Technology Risk Officer to build up their Technology Risk Management Team as part of their growth and expansion plan. This is a new headcount and this individual spearhead and build up their second line of defence from scratch. This individual...
-
Senior Information Security Risk Manager
2 weeks ago
Singapore Sygnum Full time**About Us** Sygnum is the world’s first regulated Digital Asset Bank, founded on Swiss and Singapore dual heritage, headquartered in Switzerland and operating globally. We make digital assets bankable, secure and convenient, empowering our clients to invest in the digital asset economy with complete trust. For the first time with Sygnum, major currencies...
-
Senior Information Security Risk Manager
6 days ago
Singapore Sygnum Full time**About the team** Our CISO team’s mission is to be in the vanguard of digital banking security, fostering a safe and prosperous financial future for our stakeholders while setting pioneering new industry standards for security and trust in the digital age. **About You** You are a dedicated and seasoned Information Security Risk Manager, passionate...