Apac Information Security Consultant

6 days ago


Singapore Zurich Insurance Full time

**Job Title: APAC Information Security Consultant**

**Location: Singapore, Malaysia**

**The Opportunity**:
We are looking for an APAC Information Security Consultant, who is primarily responsible for supporting information security governance initiatives and activities across APAC business units.

**Key Responsibility**:
**Information Security governance**
- Maintain APAC’s regional Information Security, Risk and Compliance framework, and support Group in revising old or establishing new policies and standards
- Provide governance over and support APAC BISOs in the coordination of regional and local information security gap remediation
- Perform analysis to identify common themes and drive regional remediation activities
- Advise APAC BISOs and stakeholders in information security policy compliance requirements
- Provide advice, governance and support in information security policy exception and risk acceptance processes
- Work closely with the Group’s Information Security Governance (ISG) team and APAC BISOs to ensure global requirements are communicated to APAC stakeholders and APAC requirements are considered in global information security compliance projects
- Support Group’s ISG initiatives in the APAC region
- Provide support in APAC’s Information Security control assurance processes
- Work closely with the APAC Information Security Analytics & Reporting team in ensuring visibility via accurate security compliance metrics
- Identify and support opportunities for process simplification and automation initiatives.

**Information Security, Risk and Compliance Assessments**
- Support APAC BISOs in performing the following assessments using the Global standard approach:

- Cloud security assessments
- Third party vendor assessments
- Business / IT Application assessments (incl. pre & post implementation reviews, major changes)
- Regulatory assessments (e.g. local regulations, ISO27001, PCI DSS, SOC2, etc)
- Remediation action review, analysis and management and themed security reviews.
- Exception management and support continuous improvement of Global and Regional ISG processes

**Qualification, Skills & Experience**:

- University graduate of computer science, information technology/security or any other related disciplines.
- Minimum 6 years professional experience in information security or IT risk management, preferably in MNC environment or insurance industry.
- Certification of CISA, CRISC, CISSP or CISM is a must
- Experience or certification of PCI IA, ISO27001 is a plus.
- Big4 information security consulting and/or IT audit experience is an advantage.
- Excellent communication skills in English and ability to communicate security-related concepts to all levels of stakeholders
- Strong integrity and highly ethical
- Effective in influencing and persuasion
- Background in security/risk related topics and technologies
- Working knowledge of regulatory compliance drivers
- Good understanding of security concepts and architectures
- Good understanding of IT security and compliance controls
- General knowledge of regulatory requirements is a plus
- General knowledge of common security tools

**You are the heart & soul of Zurich**

At Zurich, we like to think outside the box and challenge the status quo. We take an optimistic approach by focusing on the positives and constantly asking What can go right?

People are Zurich’s most important asset. Their varied skills, perspectives and experiences drive innovation. And they reflect the breadth and diversity of our customers, suppliers, communities and investors around the world. We are committed to attracting and retaining talented individuals from a variety of backgrounds and experiences.

Let’s continue to grow together
- Location(s): Singapore or Malaysia
- Remote working: Hybrid Working Model
- Closing date:



  • Singapore VANTAGE POINT SECURITY PTE. LTD. Full time

    Job ResponsibilitiesThe Security Consultant is accountable for:Designing and executing penetration testing projects that meet client requirements.Developing and maintaining strong relationships with clients, establishing trust and credibility.Ensuring clients are adequately prepared for project commencement, minimizing delays and ensuring smooth...


  • Singapore UPS ASIA GROUP PTE. LTD. Full time

    The Information Security Analyst will be reporting to the APAC Information Security Manager and will work as part of the UPS AsiaPac Information Security Assurance and Risk Management Team in our corporate office in Singapore, playing a major role in managing risk and security vulnerabilities across the APAC region. As the Lead Information Security Analyst,...

  • Security Engineer

    7 days ago


    Singapore EvaBssi APAC Full time

    **Context**: EvaBssi APAC is an IT Consulting and Technical Expertise company, part of Sopra Steria Group, with expertise in IT Infrastructure, Cloud, Cybersecurity and Smart Data (Business Process Digital Transformation). Its growth has accelerated these last few years, due to heighten customers' needs in Cloud/Digital Transformation, seamless connectivity...


  • Singapore UPS ASIA GROUP PTE. LTD. Full time

    Roles & ResponsibilitiesThe Information Security Analyst will be reporting to the APAC Information Security Manager and will work as part of the UPS AsiaPac Information Security Assurance and Risk Management Team in our corporate office in Singapore playing major role in management risk and security vulnerabilities across the APAC region.As the Lead...


  • Singapore abrdn plc Full time

    Information Security & Resilience Analyst APAC **Information Security & Resilience Analyst APAC** **Security, Resilience & Protection (SRP) APAC** **Location: Singapore** **About the Role** - To support the regional SRP function in all matters relating to Information Security, Data Privacy, Operational Resilience and Third Party Risk Management working...


  • Singapore abrdn Full time

    Job Description Information Security & Resilience Analyst APAC Security, Resilience & Protection (SRP) APAC Location: Singapore About the Role- To support the regional SRP function in all matters relating to Information Security, Data Privacy, Operational Resilience and Third Party Risk Management working closely with regional and in country teams, as well...


  • Singapore ISO CONSULTANTS PTE. LTD. Full time

    **Summary - Reporting to the Director this position will be responsible for managing all Information security projects of our clients, and this includes implementation of ISO 27001, Cybersecurity, Cloud Security, HIPPA, Privacy, and other security standards and frameworks. **Major Responsibilities - Provide leadership to Information security projects at...

  • Security Consultant

    2 weeks ago


    Singapore VANTAGE POINT SECURITY PTE. LTD. Full time

    Roles & ResponsibilitiesRole Purpose:The Security Consultant delivers penetration testing & offensive security projects to ensure a successfuloutcome that at least meets or exceeds the expectations of our clients.Role Outcomes:The customer recognises you as a subject matter expert and they have confidence in the comprehensiveness of the testing methodology...


  • Singapore MTC CONSULTING PTE. LTD. Full time

    We are seeking an experienced Information Security Consultant to join our team at MTC Consulting PTE. LTD.About the Role:In this role, you will be responsible for leading pre-sales activities, including proof-of-concepts (POC), security solution design, proposal writing, product presentations, and training.You will support sales teams, partners, and...


  • Singapore LSA CONSULTANTS PTE. LTD. Full time

    Roles & ResponsibilitiesThis is a full time role for a Senior Information Security Consultant at LSA Consultants Pte Ltd. The consultant will be responsible to provide consultancy related to ISO 27001:2022 Information Security Managment System Standard, Data Privacy, Cyber Security, Network Security and Information Security Management. The role will...


  • Singapore Charterhouse Pte Ltd Full time

    We are looking for an experienced Information Security Consultant to join our team at Charterhouse Pte Ltd. In this role, you will be responsible for managing and overseeing the organization's IT risk management and compliance processes.This position requires a strong understanding of information security principles and regulatory requirements, including MAS...


  • Singapore IMAGENZ PTE. LTD. Full time

    **Job Summary**: We are seeking a skilled and dedicated Information Security Analyst/Consultant to join our team. In this role, you will be responsible for advising, assisting, and implementing information security programs for our clients using frameworks such as ISO/IEC 27001:2022 and Cyber Trust Mark, in addition you will also be involve in overseeing the...


  • Singapore MTC CONSULTING PTE. LTD. Full time

    Overview of MTC ConsultingMTC Consulting Pte. Ltd. provides comprehensive cybersecurity services to clients across various industries. Our team of experts has extensive knowledge and experience in implementing robust security solutions that protect our clients' assets.About the RoleThis position requires a highly motivated individual who can work effectively...


  • Singapore VANTAGE POINT SECURITY PTE. LTD. Full time

    Roles & ResponsibilitiesRole Purpose:The Associate Security Consultant attains CREST CRT certification, learns other security assurance skills and assists in delivering penetration testing & offensive security projects to ensure a successful outcome that at least meets or exceeds the expectations of our clients.Role Outcomes:Mentored to achieved CREST CRT...

  • Security Consultant

    2 weeks ago


    Singapore TITANFORGED SECURITY PTE. LTD. Full time

    Roles & ResponsibilitiesCompany BackgroundTitanforged Security (TFS) is a fast-growing cybersecurity consultancy firm that is looking to expand our team. We are searching for a highly motivated cybersecurity talent to join us in shaping the future of cybersecurity. In TFS, we deliver offensive security professional services, such as Vulnerability Assessment,...


  • Singapore Johnson & Johnson Full time

    Johnson & Johnson is currently recruiting for a Business Information Security Officer, APAC (New Consumer Health Company). This position will be located in Singapore; possibility to be office-based or remote. Caring for the world, one person at a time has inspired and united the people of Johnson & Johnson for over 125 years. We embrace research and science...


  • Singapore Turner & Townsend Full time

    **Company Description**: **Why it’s great to work for Turner & Townsend** At Turner & Townsend we’re passionate about making the difference. That means delivering better outcomes for our clients, helping our people to realize their potential, and doing our part to create a prosperous society. Every day we help our major global clients deliver ambitious...


  • Singapore SCHRODER INVESTMENT MANAGEMENT (SINGAPORE) LTD. Full time

    **Who we’re looking for** A specialist to provide technical and non-technical information security consultancy services to the Schroders business units and IT. Reporting to the Head of Information Security APAC, the role necessitates an ability to champion the security team to influence senior business representatives and to engage with internal...


  • Singapore SCHRODER INVESTMENT MANAGEMENT (SINGAPORE) LTD. Full time

    **The team** The Information Security team at Schroders provide thought leadership on managing the information security threats and vulnerabilities to Schroders information assets and is the centre of excellence for advice and coordination. The team is comprises of various SME‘s in Technology Risk, Cybersecurity, Insider Security including Access and User...


  • Singapore KRIS INFOTECH PTE. LTD. Full time

    The Manager of the Information Security Department is responsible for the organization's efforts to protect its information assets and ensure the security of its information systems. - This position requires a proactive approach to developing and implementing security policies, conducting security assessments, and responding to incidents. - The role involves...