Information Security

3 days ago


Singapore Bank of Singapore Full time

Bank of Singapore SingaporePosted 2 hours ago Permanent Competitive
- Information Security & Digital Risk (Associate Director)
- At Bank of Singapore, we are constantly on the lookout for exceptional individuals to join our team. We promote a culture of openness, teamwork and fairness. Most importantly, we invest in our people through our programmes that develop them on both professional and personal levels. Besides attractive remuneration packages, we offer non-financial benefits and opportunities to develop your potential within OCBC Group’s global network of subsidiaries and offices. If you have passion, drive and the will to succeed, rise to the challenge today
- Responsible for second line of defence related to governance and oversight of Information Security Risk and Digital Risks (Technology, Information and Cyber) within the organisation.**Responsibilities**
- Lead and support the risk governance and oversight of Information Security Risk and Digital Risks (Technology, Information and Cyber) in second line.
- Lead second line Information Security initiatives and establish/roll-out Local Information Security Office (LISO) program to each of global locations within the organisation.
- Lead and represent second line in regulatory assessments in Information Security risk and Digital risks topics.
- Lead and / or support internal / cross-functional initiatives such as technology, information and cyber thematic and process reviews, as well as technology projects.
- Lead and / or participate in risk committees and working groups that have been established to enhance governance and oversight over Information Security risk and Digital risks matters.
- Develop, review and maintain Information Security and Digital risk framework, policies and departmental operating procedures to ensure that they are relevant, up to date and aligned to Group and regulatory standards.
- Monitor Information Security and Digital risk exposures via dashboards and Key Risk Indicators (KRIs) and provide independent reporting on the effectiveness of risk posture or activities to management.
- Provide risk advisory services to business units on the adoption of new and emerging technologies (e.g. cloud computing, Fintech etc), as well as third party arrangements.
- As a second line of defence, provide an effective challenge on the adequacy, completeness and timeliness of risk assessments and / or action plans that have been put in place to address prevailing and emerging Information Security and Digital risks. This includes the review of system risk acceptances.
- Plan and deliver a comprehensive Information Security and Digital risk awareness training and testing program for all staff. This includes the conduct of periodic social engineering tests to reinforce awareness.

**Qualifications**
- Good understanding of banking processes, technology, operations, and regulations (in particular MAS Technology Risk Management Guidelines), as well as ISO 27001.
- Prior experience in managing projects / change initiatives would be an added advantage

Academic and professional qualifications
- University degree preferred.
- Professional certification in information security. E.g. CISA, CISM, CRISC, CISSP etc.
- Proficient in Microsoft Office Applications (i.e. Excel, PowerPoint, Word).

Language skills
- Fluent in English.

Personal attributes
- Good communication, presentation and interpersonal skills to facilitate interactions with key stakeholders within and outside of the organisation.
- Ability to collaborate well within the team, department and across different departments/locations.
- Able to exercise sound judgment and establish plans to manage the execution of deliverables within the stipulated timelines.
- Self-driven with attitude and aptitude to learn and accomplish tasks that have been assigned.
- Analytical mindset and good report writing skills.
- Able to prioritise and multi-task in a competitive environment
- A team player.
- Job ID 23000160


  • Information Security

    2 weeks ago


    Singapore RANDSTAD PTE. LIMITED Full time

    Roles & ResponsibilitiesExperience in an international setting with high adaptability In depth understanding of China's laws (GRC) People Manager role with a strong track record in leadershipabout the companyOur client is a multinational company and they are a prominent player in the industry, renowned for its extensive brand portfolio, commitment to...


  • Singapore Ensign InfoSecurity Full time

    Ensign is hiring ! As Director, Information Security, you will play a crucial role in implementing Ensign's cybersecurity vision. Reporting to the Information Security Office, you will collaborate with senior management and business units on cybersecurity initiatives. You will play a crucial role in supporting the CISO in establishing and maintaining an...


  • Singapore Good Job Creations Pte Ltd Full time

    Provides security analysis of IT activities to ensure that appropriate security measures are in place and are enforced. - Assists with the development and maintenance of corporate security policies and procedures, the remediation of identified risks, and the implementation of security measures to ensure information systems’ reliability and to prevent and...


  • Singapore Rakuten Asia Pte Ltd Full time

    The Regional Chief Information Security Office (CISO) is to lead information security related actions to protect Rakuten Group companies in Asia region from internal/external security threat. You will be required to defines, prioritizes, and tracks large scale, high visibility IT security projects to reduce or eliminate risks that have been identified. This...


  • Singapore Transformhub Consulting Full time

    Transformhub Consulting SingaporePosted 38 minutes ago Hybrid Permanent S$6k - S$8k - S- Posted by - Shalu Kumari- RecruiterFollow **Responsibilities**: - Promote awareness of information security policies, standards and best practices. Also, as a program manager, manage information security assessments operational KPI/KRIs - Drive improvement to...


  • Singapore 360F (SINGAPORE) PTE. LTD. Full time

    **WHAT YOU WILL DO** **Responsibilities** - Develop and maintain information security policies, procedures, and controls - Implement and manage security controls and tools for SaaS solutions - Conduct regular security assessments and risk analysis to identify potential vulnerabilities and implement mitigation measures - Monitor and respond to security...


  • Singapore BIPO Service Shanghai Limited Full time

    **Information Security Manager** **Company Overview**: Established in 2010 and headquartered in Singapore, BIPO is a trusted provider of payroll and people solutions in **over 160 global markets.** Our comprehensive HR offerings include **Human Capital Management solutions**, **Global Payroll** **Outsourcing**, and **Employer of Record services**, powered...


  • North-East Singapore Flintex Consulting Pte Ltd Full time

    **Information Security Manager**: - Minimum yearss' experience in IT Governance and Cyber Security as HOD (mandatory) - Vendor industry experience (mandatory) - Hands on and ability to implement security technical solutions (mandatory) - Manage communication with MAS auditor, incident reporting, engagement - Leading tasks and multiple teams of information...


  • Singapore 360F (Singapore) Pte Ltd Full time

    **WHAT YOU WILL DO** **Responsibilities** - Develop and maintain information security policies, procedures, and controls - Implement and manage security controls and tools for SaaS solutions - Conduct regular security assessments and risk analysis to identify potential vulnerabilities and implement mitigation measures - Monitor and respond to security...


  • Singapore Hays Full time

    **Your new company** The client is a local security solution provider working mainly with projects within the government. Their service ranges from design and development to implementation and post-implementation maintenance. **Your new role** You will be involved in areas including security analysis, corporate security policies & procedures, information...


  • Singapore GO-JEK Full time

    **About the Role** The Information Security Manager will play a crucial role in the implementation of the Information Security programs. You will work closely with the Information Security Chief of Staff and collaborate with leadership and technical teams on the continued evolution of Information Security programs across the cybersecurity, and company...


  • Singapore MCONNECT CONSULTING PTE. LTD. Full time

    Job Description: - Design and deliver innovative security solutions and initiatives and manageand support security technology platforms - Vulnerability assessments and penetration testing to assess the residual risksand mitigation plans - Assess and advise Technology Solution Delivery and Operations teams onmanagement and mitigation of security exceptions...


  • Singapore ACHIEVE TECHNOLOGY ASIA PACIFIC PTE LTD Full time

    Design and deliver innovative security solutions and initiatives and manage and support security technology platforms - Vulnerability assessments and penetration testing to assess the residual risks and mitigation plans - Assess and advise Technology Solution Delivery and Operations teams on management and mitigation of security exceptions and...


  • Singapore Turner & Townsend Full time

    **Company Description**: **Why it’s great to work for Turner & Townsend** At Turner & Townsend we’re passionate about making the difference. That means delivering better outcomes for our clients, helping our people to realize their potential, and doing our part to create a prosperous society. Every day we help our major global clients deliver ambitious...


  • Singapore BIPO Service Shanghai Limited Full time

    **JOB DESCRIPTION** **Role**:Information Security Manager **Reports to**: IT Director **Location**: Singapore **Responsibilities** - Lead compliance audit activities (SOC, ISO 27001) for Singapore, Hong Kong, and China - Responsible for BIPO data privacy, serving in BIPO’s Data Privacy team and answer internal and external queries related to BIPO’s...


  • Singapore Rapsys Technologies Full time

    Technical Specifications: - Good in providing solution by investigating and post-mortem analysis to resolve security violations. - Minimum 6+ years of experience in Information Security - Performed asset and network discovery activities to ensure full coverage of vulnerability discovery. - Good in implementing policy audit for servers and workstations -...


  • Singapore EXASOFT PTE. LTD. Full time

    Roles & ResponsibilitiesResponsibilities:Conduct real-time monitoring and analysis of security log data from various security systems and devices to detect potential threats. Maintain and optimize data sources feeding the log monitoring system, while developing and refining detection and alerting rules. Investigate security incidents reported by users,...


  • Singapore LyondellBasell Industries Full time

    Location: SG- Req ID: 80864- Facility: Singapore-427- Department: Security & Forensics- Division: InnovationInformation Security Analyst **Basic Function**: The Information Security Analyst will work in a global team of similar individuals to perform first level security threat event monitoring and management including analysis, triage, and appropriate...


  • Singapore Mobbin Full time

    **About Mobbin**: Our mission is to empower the world to design great digital experiences. The Mobbin platform helps product designers, product managers and UI/UX researchers find highly-relevant references to their design problems. We are the world's most extensive app design reference library, serving over a million users on our platform. Since our...


  • Singapore MORGAN PHILIPS SINGAPORE PTE. LTD. Full time

    **Your Next Company** A New York Stock Exchange listed global bank is looking for a SVP, Information Security to join their team. This will be an expansion role as they seek to grow the team. **What You Will Be Doing** This role reports into the Regional Chief Information Security Officer and you will be tasked to manage regional transformation...