Cybersecurity Risk Manager

1 week ago


Singapore ASTEK SINGAPORE INNOVATION TECHNOLOGY PTE. LTD. Full time

**Position Overview**:
We are seeking a skilled and experienced Cybersecurity Risk Manager to join our team and contribute to the management of IT and cybersecurity risks across our organization. This role will be pivotal in ensuring the integrity, confidentiality, and availability of our information and technology systems by supporting the Infrastructure Risk and Control function within the broader Cyber Risk Management operations. You will play an active role in shaping and implementing risk management processes that align with our regulatory requirements and risk appetite.

**Key Responsibilities**:

- **Risk Management & Compliance**:Support the Infrastructure Risk and Control function by ensuring that technology, information, and cybersecurity risks are managed and controlled effectively across various business units, consistent with the firm’s risk appetite and regulatory requirements.
- **Gap Assessment & Risk Identification**:Plan and conduct thorough gap assessments throughout the Secure Software Development Lifecycle (SSDLC) to identify and evaluate potential risks. Assess existing controls, identify mitigating strategies, and measure the residual risk.
- **Policy & Standards Compliance**:Work collaboratively with key stakeholders to drive adherence to cybersecurity, information, and technology policies and standards. This includes monitoring compliance and recommending adjustments when necessary.
- **Risk Reporting & Control Effectiveness**:Continuously monitor and assess the effectiveness of existing cybersecurity controls. Prepare and deliver regular risk and control reports to senior management, identifying key audit findings, risks, and areas for improvement.
- **Training & Awareness Programs**:Conduct cybersecurity awareness programs, including staff training on policies, standards, and best practices. Lead initiatives such as phishing simulation campaigns, awareness newsletters, and training sessions to increase security awareness throughout the organization.
- **Coordination with Risk Functions**:Liaise with other internal risk management functions to ensure a unified and cohesive approach to risk and audit management across the enterprise.

**Qualifications and Experience**:

- **Education**:A degree in Computer Science, Information Technology, Cybersecurity, or a related field is required.
- **Experience**:5-8 years of professional experience in IT cybersecurity risk management, risk implementation, and governance. This includes practical experience in IT risk assessments, vendor risk assessments, audit processes, and managing operational risk issues.
- **Communication & Collaboration**:Strong written and verbal communication skills, with the ability to prepare detailed reports, presentations, and communicate complex cybersecurity issues to stakeholders at all levels.
- **Problem-Solving Skills**:Excellent analytical, problem-solving, and critical-thinking abilities, with the capacity to influence stakeholders and drive changes to improve risk management processes.

**Preferred Qualifications**:

- **Certifications**:Professional cybersecurity certifications such as CISSP, CISM, CRISC, CCSK, or CGEIT would be highly desirable.
- **Additional Experience**:Experience in conducting risk assessments on both traditional IT environments and modern Cloud-based systems will be considered an advantage.

**Skills & Competencies**:

- **Cybersecurity Expertise**:In-depth knowledge of cybersecurity best practices, risk assessment methodologies, and threat mitigation techniques.
- **Governance & Compliance**:Experience working within regulatory frameworks and compliance mandates.
- **Training & Development**:Ability to design and implement effective cybersecurity training programs.
- **Attention to Detail**:Meticulous attention to detail, particularly when identifying vulnerabilities and recommending improvements.
- **Interpersonal Skills**:Ability to work across teams and influence key stakeholders to prioritize cybersecurity risk management activities.



  • Singapore Temasek International Pte Ltd Full time

    About UsTemasek International Pte Ltd is a global investment company headquartered in Singapore, with a significant presence around the world. Our purpose is to make a difference for today's and future generations by seeking sustainable returns over the long term.Job DescriptionYou will be working in the Cybersecurity Department under the Governance, Risk,...


  • Singapore beBee Careers Full time

    Job DescriptionThis is a critical role in ensuring the bank's compliance with regulatory requirements and maintaining a robust cybersecurity posture. The successful candidate will be responsible for managing the bank's IT Risk Framework, conducting risk assessments, overseeing security controls, and providing cybersecurity training.


  • Singapore MANPOWER STAFFING SERVICES (SINGAPORE) PTE LTD Full time

    Roles & ResponsibilitiesWe are seeking a diligent Cybersecurity Risk Analyst to identify, analyse, and mitigate cybersecurity risks in our systems and networks.This role involves the execution of risk assessments, vulnerability analyses and the development of risk management strategies.You should be well-versed in cybersecurity risk assessment methodologies...


  • Singapore MANPOWER STAFFING SERVICES (SINGAPORE) PTE LTD Full time

    Roles & ResponsibilitiesWe are seeking a diligent Cybersecurity Risk Analyst to identify, analyse, and mitigate cybersecurity risks in our systems and networks.This role involves the execution of risk assessments, vulnerability analyses and the development of risk management strategies.You should be well-versed in cybersecurity risk assessment methodologies...


  • Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    **Duties and Responsibilities: This individual will play a crucial role in developing and managing information cybersecurity for our clients. As a Cybersecurity Consultant, you will be responsible for developing, evaluating, and reviewing information security policies in accordance with relevant standards and frameworks such as ISO27001, NIST. We are...


  • Singapore RYSENSE LTD. Full time

    About RySense LTDRySense is a research-driven organisation that seeks to understand the needs and aspirations of Singaporeans. We pride ourselves on delivering quality data and in-depth insights that empower decision-making and shape a better Singapore.We are committed to robust methodologies, timely information, and incisive recommendations that distinguish...


  • Singapore beBee Careers Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Management Expert to join our team. As a key member of our Governance, Risk, and Compliance unit, you will play a critical role in enhancing and implementing an effective governance and risk management framework to manage technology, data security, and cyber risks across the...


  • Singapore RYSENSE LTD. Full time

    ABOUT RYSENSE LTD RySense is a homegrown research organisation dedicated to understanding what Singaporeans think, feel and do. Harnessing our passion for research excellence, we take pride in delivering quality data and in-depth insights that empower decision-making and shape a better Singapore. Our commitment to robust methodologies, timely information,...

  • Senior Manager, IT

    1 week ago


    Singapore NodeFlair Full time

    **Job Summary**: **Job Type** Permanent **Seniority** Manager **Years of Experience** 7-10 years **Purpose** - Contributes to the overall success of the IT & Cybersecurity Risk Management in Asia Pacific ensuring specific individual goals, plans, initiatives are executed / delivered in support of the team’s business strategies and objectives. Ensures...


  • Singapore STONE CYBERSECURITY PTE. LTD. Full time

    **About Stone Cybersecurity Pte Ltd Stone Cybersecurity is a leading provider of cybersecurity solutions and consulting services in Singapore. We help organizations across various industries build robust security programs and achieve compliance with international standards. Our team comprises experienced cybersecurity professionals passionate about...