
Information Security Governance, Risk
1 day ago
**Summary**
Working as part of the information security office within the IT department at Pacific Prime CXA, the GRC (Governance, Risk and Compliance) Manager will be responsible for leading the day-to-day IT compliance, data governance and IT risk management functions. Primary responsibility will include defining, creation, management and maintenance of IT and organizational policies and standards in support of legal and regulatory compliance needs as well as general IT and organizational information security controls and practices.
**Responsibilities**
- Establishing corporate information security policies, standards, guidelines, baselines and practices that protect the integrity and confidentiality of information and network infrastructure.
- Develop procedures and controls to assure compliance with applicable regulatory and legal requirements as well as good business practices.
- Proactively identify audit and compliance related issues to reduce the risk of security exposures, gaps in the design and operating effectiveness of controls whilst seeking opportunities for continuous improvement.
- Driving IT security programs in line with internal and external standards and ensuring compliance with in-country regulatory requirements.
- Maintaining oversight to enterprise-wide security technologies, actively monitoring & responding to security events.
- Develop and maintain standards and controls to ensure the protection of data based on classification.
- Work directly with business units to identify critical data and ensure appropriate data classification and protection standards are implemented.
- Manage the attestation program for all IT controls to support assurance and alignment across all information security stakeholders.
- Support internal and external audit process for relevant compliance concerns including PDPA, GDPR, MAS TRM, ISO27001, etc.
- Perform and evaluate information security risk assessments for various information systems and processes, including annual penetration tests.
- Develop, monitor, track and report against IT Security metrics and KPIs that help the IT Infra understand threats, vulnerabilities and risks associated with protecting information across the enterprise and plans to mitigate those risks.
- Develop and maintain the IT Risk Register to support ongoing tracking and management of all identified risks and issues and to ensure adequate and timely resolutions to all audit/review issues relating to security.
- Lead the development and operation of third-party vendor risk assessment, management and due-diligence program.
- Conduct client meeting and drive all the questions arising from client relationship teams. This includes completing client’s info security questionnaires and liaising with clients on all such requirements within tight deadlines.
- Formulate, lead and communicate security goals and objectives based on an integrated understanding of business priorities, security vision and strategy.
- Providing security related support to IT and business team users and facilitate recommendations on future technical trends/directions that encompass multiple systems and teams to meet business critical initiatives.
- Point of contact to assist and advise on Information Security related matters
**Requirement**
- BSc in Computer Science or equivalent; with 5+ years of relevant working experience in IT governance, risk, and compliance management.
- ISACA / CISM / CISSP Certification.
- Strong understanding of fundamental information security concepts and technology.
- Familiarity with ISMS and security frameworks, particularly NIST Cybersecurity Framework.
- Experience in security design, threat modelling and risk assessments.
- Ability to be self-motivated, flexible and be able to drive and manage multiple tasks and priorities on very tight deadlines in a fast paced and rapidly changing environment.
- Strong interpersonal and collaboration skills with the ability to develop, maintain and foster constructive relationships with others.
- Excellent written and oral communication skills.
- Effective communication and analytical skills
- Strong work ethic with attention to detail.
-
Information Technology
3 days ago
Singapore SINGAPORE AIRLINES LIMITED Full timeJob Description You will be a member of the Group Information Security Team responsible for ensuring corporate applications, systems, networks, and digital assets are adequately protected and mitigated against cyber threats and risks. You will help drive cybersecurity and risk management efforts and user awareness and education within the Singapore Airlines...
-
Singapore ANZ Banking Group Full time**Req ID**: 74926 **Department**: Tech Institutional Digital Banking Operations Doma **Division**: Technology **Location**: Singapore About Us About the Role As a Technology & Information Security Governance Lead (Line 1 Risk) for Singapore and International Cloud in our Digital Banking Operations Technology team, you will drive technology operational risk...
-
Senior Information Security Specialist
7 days ago
Singapore Castlery Full timeCastlery is a digitally native furniture brand that offers modern, high-quality furniture at accessible prices. Our mission is to reinvent how furniture is designed, produced, and delivered to create a seamless experience for customers worldwide. As we continue to scale our operations, ensuring the security and compliance of our information assets is...
-
Singapore RANDSTAD PTE. LIMITED Full timeTo apply, It will be great if you could share your CV to . Alternatively, you can apply at High job stability with a multi bullion company Autonomy to make key decisions for IT Governance About the company Our client is an established global company with over 20 years of experience in the industry. As part of their plan to aggressive growth plan in...
-
Senior Executive
1 week ago
Singapore IOTALENTS PTE. LTD. Full time**Responsibilities**: - Assist in developing and driving compliance/governing framework for ongoing compliance against relevant IT legislative/regulatory requirements (e.g. PDPA, MAS TRM & PCI) and reporting to IT Management. - Assist in developing and driving compliance/governing framework for the ongoing compliance against the organizational information...
-
Singapore SSquad Global Full timeOn-Premises GRC (Governance, Risk and Compliance) Analyst - (Associate level and not SME level) Governance & Compliance "Develop, implement, and maintain security policies, procedures, and standards in line with industry best practices (ISO 27001, NIST, CIS, etc.). Ensure compliance with regulatory requirements (MAS TRMG, CCoP). Assist in internal...
-
IT Risk
1 week ago
Singapore Randstad Singapore Full timeOverview IT Risk & Governance Manager | Security policy | GRC – Randstad Singapore Join to apply for the IT Risk & Governance Manager | Security policy | GRC role at Randstad Singapore. About the company Our client is an established global company with over 20 years of experience in the industry. As part of their growth plan in Asia, they are hiring an IT...
-
Information Security Manager
7 days ago
Singapore SINGAPORE AEROSPACE MANUFACTURING PTE LTD Full timeSAM is looking to fill the position of **Information Security Manager **. This is a regional role and is overall in-charge of all the entities under SAM. He/She will report to the CEO. **Responsibilites** - To develop and implement a long-term Information Security & Cyber Security strategies and roadmap to protect corporate information and IT assets. - Set...
-
Senior Security Consultant
3 days ago
Singapore LANTU EMPLOYMENT AGENCY PTE. LTD. Full time**Role Description** We are seeking an experienced **Senior/Lead Consultant**specialising in **IT Governance, Risk, and Compliance (GRC)**to join our team. In this hybrid role, you will manage and oversee IT GRC activities, ensuring alignment with industry standards and regulatory requirements. Your expertise will contribute to building secure, compliant,...
-
Information Security
2 days ago
Singapore D L Resources Pte Ltd Full time $13,200 - $144,000 per yearJob ObjectivesThe Security Governance Specialist role will support the Head of Security Governance in enhancing and maintaining the Security Governance within the Group Information Security(GIS) function in the Bank.Key ResponsibilitiesThis position will support senior Security Governance team members and work closely with various business, risk and...