Information Security Governance, Specialist

6 days ago


Singapore AIA Full time

At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone.
- As pioneering innovators for over 100 years, we’re now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier, Longer, Better Lives._
- To get there, we need people with _tech/digital/analytics_ expertise and passion to help develop positive, sustainable change through digitally enhanced experiences that will impact the lives of millions of people and create a healthier future for everyone._

If you believe in developing a better tomorrow, read on.

About the Role

This position is responsible for providing consultation, professional advice, awareness/training on information security and key technology risk matters relating to the abovementioned geographical responsibilities, thereby adding value to building a strong information security risk culture cantered on people, processes and technology. The role will also coordinate regular governance engagements and being involved in technology-related audit engagements for AIA Singapore, and exercise professional judgment and assessments on the material to be provided by the various process and control owners for the audits.
- WHAT YOU’LL BE DOING:_

Information Security & Technology Risk Metrics- Support the alignment of various information security and technology risk metrics for management reporting and escalation - this includes reporting/escalation of outstanding or overdue action required from penetration tests, vulnerability assessments, security incidents, policy/standards deviations, third party security assessments, etc.- Drive the monthly Technology Security Governance forum focusing on highlighting key metrics impacting the Company’s cybersecurity metrics.- Collate and review collated metrics and material relating to the Operational Risk Management forums, Key Risk Indicators and Key Risk Tolerance Indicators for cybersecurity and technology processes.

Risk Assessments, Audit and Regulatory Management- Support Technology related audit engagements with statutory auditor and regulator, following up with relevant parties to ensure all issues identified are remediated.- Support the delivery of of annual IT risk and control self-assessment exercises according to MAS regulatory notices/guidelines, internal enterprise IT policies, and standards.

Policy, Standards and Exception Management- Communicate material changes to internal policies/standards to stakeholders Facilitate risk evaluations and exception handling to deviations from the policies, standards and regulatory requirements.
- WE ARE LOOKING FOR SOMEONE WITH | YOU WILL HAVE:_- University degree in one of the following or related disciplines (Computer Science, Computer Engineering, Information Security, Information Systems).- 5-8 years of relevant work experience, including at least 2 years of experience in IT audit, risk management, compliance and/or governance roles, with particular expertise and knowledge of governance reporting of technology risk issues and cybersecurity.- Rich working experience from financial industry, big tech firms or established auditing firms will be considered favorably.- Experience and exposure in information security standards such as ISO27001 and PCIDSS will be an advantage.- Preferably a holder of one or more of the following entry-level information security and audit qualifications: Security+ and CEH.-
- Good Communication, Coordination and Interpersonal Skills. Strong experience working alongside and opposite external auditors as well as regulatory bodies Meticulous and analytical traits Strong programme/Project Management skills High drive, energy and good attitude over teamwork High levels of professional integrity.- Eagerness to learn and develop one’s knowledge in information security and computing, especially on emerging computing fields such as cloud security, DevSecOps, etc.
- Build a career with us as we help our customers and the community live Healthier, Longer, Better Lives._



  • Singapore beBeeGovernance Remote Work Freelance Full time

    **Job Title:**Security Governance Specialist **Job Summary: We are seeking a highly skilled and experienced Security Governance Specialist to join our team. In this role, you will be responsible for initiating, running, and managing information security governance, risk management, audits, and compliance with relevant regulations. **Responsibilities: ...


  • Singapore Castlery Full time

    Castlery is a digitally native furniture brand that offers modern, high-quality furniture at accessible prices. Our mission is to reinvent how furniture is designed, produced, and delivered to create a seamless experience for customers worldwide. As we continue to scale our operations, ensuring the security and compliance of our information assets is...


  • Singapore beBeeGovernance Full time

    Job Title: Security Governance Specialist Our organization seeks a skilled Security Governance Specialist to collaborate with teams across Asia-Pacific (APAC) and contribute to the development of our security governance program. Conduct risk assessments and control evaluations against regional and global regulatory requirements. Maintain awareness of...


  • Singapore INFINEUM SINGAPORE LLP Full time

    As part of the global IT team, the IT Information Security Specialist will plan and implement policies, procedures, standards, and controls to govern the protection of corporate information systems, networks, and data. The Information Security Specialist will stay up-to-date on the latest cybersecurity intelligence, including hackers' methodologies, in order...


  • Singapore Peoplebank Full time

    **Information Security Officer** - 6 months contract, possibility for extension/conversion. - Office location: Central **The Client** - Investment management company **The Opportunity** - Drive governance of information security programs in Fund Management Company (FMC), Wealth Management Company (WMC). - Partner closely with the ISO or InfoSec Team in...

  • Information Security

    19 hours ago


    Singapore D L RESOURCES PTE LTD Full time

    Roles & ResponsibilitiesJob ObjectivesThe Security Governance Specialist role will support the Head of Security Governance in enhancing and maintaining the Security Governance within the Group Information Security(GIS) function in the Bank.Key ResponsibilitiesThis position will support senior Security Governance team members and work closely with various...

  • Information Security

    2 weeks ago


    Singapore AIA Full time

    At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone. - As pioneering innovators for over 100 years, we’re now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live...


  • Singapore beBeeCybersecurity Full time

    Job Title: IT Governance and Security SpecialistAbout the RoleWe are seeking an experienced IT governance and security specialist to lead our first line of defence GRC function, delivering comprehensive governance, risk, and compliance oversight across technology and security operations.This is a rare opportunity for a seasoned governance and security leader...


  • Singapore COMMERZBANK AKTIENGESELLSCHAFT Full time

    **Job purpose**: This position is part of the Asia information Security and Data Protection function in Singapore with focus on information security and third-party risk management. **Key activities**: - Assisting the Head of Information Security Asia in implementing and maintaining the Group's information security strategy, policies, and procedures to...


  • Singapore NTT SINGAPORE PTE. LTD. Full time

    **Job Title**: Security Governance Specialist **Work Location**: Alexandra Building, Singapore **Contract Duration**:1 Year (Renewable) **Experience Level**: 5+ Years (Mid-Level Role) **Employment Type**: Contract via NTT DATA Singapore **Client : A leading financial institution in Singapore.** We are looking for a Security Governance Specialist to...