IT Security Specialist

2 weeks ago


Singapore Housing and Development Board Full time

**About Us**
The mission of Housing & Development Board (HDB) is to provide affordable, quality housing and a great living environment where communities thrive. To achieve its mission, HDB aims to be data-driven to the core and adopt evidence-based decision making in developing better housing policies service, improving service delivery and optimising operations

**What Will You Do?**
- Develop and implement enterprise-wide ICT security programmes as follow:
i. Establish the cybersecurity governance structure for HDB to ensure that the security posture is robust, resilient, and pragmatic

ii. Enhance and update the IT security policy, standards, procedures so that they are always current against the evolving cyber security landscape

iii. Perform compliance checks on IT systems and IT security programmes to enforce implementation of IT security standards and procedures
- Establish the governance for the Identity and Access Management Policy and Process
- Establish the governance and administer the Third-Party Management Policy and Procedure
- Develop, maintain, and operationalise a Threat Risk Assessment framework for HDB to identify and mitigate the threats and risks in its IT systems and programmes
- Work with key stakeholders to improve the cybersecurity posture and resiliency of IT projects. Related works include Threat Risk Assessment, project specific cybersecurity specification, cybersecurity proposals evaluation, cybersecurity design review, System Security Acceptance Test and review, Vulnerability Assessment and Penetration Test.
- Secure Code practice and security scanning
- Vulnerability Assessment and Penetration Testing (VAPT)
- Software Composition Analysis (SCA)
- DevSecOps
- Procure & Maintain Security Tool such as Code scanner, Web Pen Test scanner
- Manage and promote IT security awareness and outreach programme.

You are also to:

- keep abreast of the latest industry ICT security practices and technologies as well as emerging threats and vulnerabilities and recommend appropriate controls for implementation to improve the enterprise security posture.
- lead and/or participate in the adoption of new technological advances and best practices in infrastructure security systems to mitigate security risks

**You will be a Great Fit if you**:

- Possess a strong background in ICT Security, Information Security, Information Technology, Computer Science, Engineering (Computing/Telecommunication), Cybersecurity and/or Digital Forensic or equivalent
- At least 1 years of direct and relevant full-time ICT security work experience

Preferably possess one or more appropriate IT security certifications, such as CISSP, CRISC, CISM, CISA, CEH, etc
- Preferably with strong knowledge and experience in information and cybersecurity risks, controls, vulnerability assessment/penetration testing, compliance, and industry IT/cyber security best-practices.
- Domain knowledge of access control; telecommunications and network security; cloud security; Cybersecurity & information security governance and risk management; software development security; cryptography; security architecture and design; operations security; security incident response and management; business continuity and disaster recovery planning; legal regulations, investigations, and compliance; physical (environmental) security
- Knowledge in IT security principles and IT controls as well as industry best practices and frameworks pertaining to IT Controls (IM8, COBIT, ISO27001/2 etc.)
- Good understanding of the current IT/Cyber Security landscape

**Good to Have**:

- Possess good interpersonal and communication skills
- Demonstrate a strong sense of urgency and have good troubleshooting and problem-solving skills with good attention to detail
- Willing to work beyond business hours including weekend when necessary
- Have good command of written and oral English
- Great Attitude to bring the best out our team
- Team Player; we work together as a team
- Autonomous
- Take ownership



  • Singapore MHA - Internal Security Department (ISD) Full time

    **What the role is** - ISD confronts and addresses threats to Singapore’s internal security and stability. For over 70 years, ISD and its predecessor organisations have played a central role in countering threats such as those posed by foreign subversive elements, spies, racial and religious extremists, and terrorists. A fulfilling and rewarding career...


  • Singapore Duo Security Full time

    Duo Security, now a part of Cisco, is the leading provider of Trusted Access security and multi-factor authentication delivered through the cloud. Duo’s mission is to make security simple for everyone. We were born from a hacker ethos and a desire to make the Internet a secure place. We believe in empowering people to follow their passions inside and...


  • Singapore TRIAM SECURITY PTE. LTD. Full time

    This role involves deploying, configuring, and maintaining security systems, monitoring network traffic, responding to security incidents, and ensuring compliance with security policies and regulations. Key Responsibilities: - **Security System Management**:Deploying, configuring, and maintaining security tools like firewalls, intrusion...


  • Singapore PALO IT Full time

    Direct message the job poster from PALO IT Talent Acquisition Lead @ PALO IT | IHRP-CP | Technical Recruitment Who We Are Build. Scale. Sustain. PALO IT is a global technology consultancy that crafts tech as a force for good. We design, develop and scale digital and sustainable products and services to unlock value across the triple bottom line: people,...


  • Singapore SECURITY & RISK SOLUTIONS PTE LTD Full time

    **About the Position** **Roles and Responsibilities**: - Report to the ASCC Supervisor and work in a team of othr Specialists, a Security Systems Supervisor and an Intel Analyst. - Ensure all functions of the APAC Security Control Center are carried out in an efficient and effective manner whilst providing maximum security support. - Manage and coordinate...


  • Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    We’re hiring a **Security Control Center Supervisor**to support operations at a key APAC contract. You’ll work in a fast-paced, 24/7 environment alongside a team of supervisors, specialists, and analysts to ensure smooth operations and high security standards. **Key Responsibilities**: - Supervise daily control center operations and specialist...


  • Singapore SANCUS SECURITY ASIA PTE. LTD. Full time

    **Monitor and evaluate security measures **to ensure ongoing effectiveness and identify areas for improvement or optimization. Conduct investigations into security incidents, including theft, fraud, or breaches, and provide recommendations for corrective action. **Engineering includes **installing, maintainance, or troubleshooting of security systems,...


  • Singapore Trust Bank Full time

    Trust is the first of a new breed of banks in Singapore - digitally native and focused on delivering a delightful customer experience. You will work in a fast-paced and collaborative environment to solve new and interesting challenges each day. Together with our Trust team, you will help shape the future of our bank. As a **Cyber Security Specialist** you'd...


  • Singapore LMA Full time

    Data Security Specialist operates as a technical expert in the Data Security Services division, concentrating on the oversight, administration, and maintenance of the bank's Data and Endpoint Security systems. This position is based in Europe, predominantly following Paris business hours, with adaptable schedules to accommodate operational needs. **Work...


  • Singapore beBeeSecurity Full time

    Job Title: Splunk Security SpecialistWe are seeking a highly skilled Splunk security specialist to join our team.About the RoleThis is a 12-month contract position with a leading regional client in the banking and financial services industry. As a Splunk security specialist, you will be responsible for implementing and maintaining a robust security...