Information Security Grc Analyst
1 week ago
The team comprises of multiple functions from Blockchain Security, Operational Security, Security Governance and Compliance and more. We drive a culture of having a growth mindset and being humble to help everyone achieve their potential. Security and Data Privacy Compliance first strategy which has been at the core of our company. The security team helped to drive us to be the first Crypto company worldwide to achieve ISO27001, ISO27701, ISO22301 and PCI:DSS 3.2.1 (Level 1) certifications. Extremely detailed third party attested by international audit firm SGS and achieved "Adaptive (Tier 4)” - the highest level possible for the US National Institute of Standards and Technology (NIST) Cybersecurity Framework and the latest NIST Privacy Framework as well as SOC2 and many other regional certifications like the Data Protection Trust Mark.
As our Information Security Analyst, you will be participating in the Global Information Security Governance, Risk Management and Compliance (GRC) team based in Hong Kong responsible for ensuring the firm’s information security governance, risk, and compliance are enforced and managed systematically, and monitoring key trends and emerging risks that could potentially affect the firm’s overall security and privacy posture. The GRC team operates in a fast-paced and dynamic environment and utilizes the best industry frameworks to effectively identify, evaluate, monitor and manage the firm’s technology and information security governance, risk and compliance issues in support of the firm’s growth and strategic plan.
**Responsibility**:
- Support the delivery of global security governance, risk management and compliance strategies
- Support and maintain a security compliance framework across global entities that can align with the company’s compliance and Internal audits requirements
- Support governance over information security policies, processes, standards and procedures
- Participant in regulatory compliance assessment in accordance with regulations and circulars from different countries
- Participant in external and internal audits, such as ISO 27001, NIST, PCI-DSS, SOC 2 Type 1/2 and other security compliance projects
- Involve maturity model and track of information security controls
- Support global security governance and compliance process
- Support security questionnaire from internal/external security audit and organize/document the common answers and approaches for future audits
- Assist security risk management within the business units
**Requirements**:
- Bachelor's degree or higher in information technology, cyber security or related field
- 3+ years of experience in a information security role
- Strong leadership and excellent communication skills
- Understanding of Information Risk, security control, data privacy related regulations (e.g. CCPA, SG PDPA, EU GDPR) within the financial services and banking industry
- Strong knowledge and practical working experiences in delivering global projects of international data privacy and information security frameworks including NIST Cybersecurity & Privacy Framework, ISO 27001, ISO 27701, CIS, SOC 2 Type 1/2 Report, PCI-DSS, ISAE 3000, ITIL, and COBIT as well as experience in IPO and M&A
- Demonstrable work experience delivering effective business and technical security solutions, processes, tools, and high performing teams
- Good working knowledge of the latest information technology security trends and emerging threats is essential
- Experience in implementing risk management principles and methodologies within a security or technology function
- Good project management experience and skills
- Strong analytical and problem-solving skills are must-have
- Having one of the below security or privacy qualification is a plus - CRISC, CISSP, CCSP, CISM, CISA, ISO 27001 Lead Auditor, IAPP CIPP / CIPM, OSCP, SANS
- An understanding of cloud infrastructure technologies and associated risks would be beneficial
LI-MK1
LI-Hybrid
Empowered to think big. Try new opportunities while working with a talented, ambitious and supportive team.
Transformational and proactive working environment. Elevate employees to find thoughtful and innovative solutions.
Growth from within. We help to develop new skill-sets that would impact the shaping of your personal and professional growth.
Work Culture. Our colleagues are some of the best in the industry; we are all here to help and support one another.
One cohesive team. Engage stakeholders to achieve our ultimate goal - Cryptocurrency in every wallet.
**_ Are you ready to kickstart your future with us?_**
**Benefits**
Competitive salary
Medical insurance package with extended coverage to dependents
Attractive annual leave entitlement including: birthday, work anniversary
Work Flexibility Adoption. Flexi-work hour and hybrid or remote set-up
Aspire career alternatives through us. Our internal mobility program can offer employees a diverse scope.
**About***:
Personal
-
Information Security Grc Analyst
1 week ago
Singapore Crypto.com Full timeThe team comprises of multiple functions from Blockchain Security, Operational Security, Security Governance and Compliance and more. We drive a culture of having a growth mindset and being humble to help everyone achieve their potential. Security and Data Privacy Compliance first strategy which has been at the core of our company. The security team helped...
-
Security Grc Analyst
1 week ago
Singapore Databricks Full timeAs a leader on the Security Assurance Team, you will be responsible for implementing and managing the Databricks GRC solution, and assisting with Databricks security compliance projects. You will report to Manager, Security Compliance. **The impact you will have**: - Design, implement, manage, and maintain the Databricks GRC tool solution. - Support OKRs...
-
GRC Information Security Manager
7 days ago
Singapore Charterhouse Partnership Singapore Full timeAs an Information Security GRC Specialist, you will play a crucial role in maintaining the security posture of Charterhouse Partnership Singapore.Key responsibilities include evaluating security processes, collaborating across teams, monitoring vulnerability resolution, and providing regular updates and detailed reports to risk management committees.To be...
-
APAC Information Security Analyst
2 days ago
Singapore UPS ASIA GROUP PTE. LTD. Full timeThe Information Security Analyst will be reporting to the APAC Information Security Manager and will work as part of the UPS AsiaPac Information Security Assurance and Risk Management Team in our corporate office in Singapore, playing a major role in managing risk and security vulnerabilities across the APAC region. As the Lead Information Security Analyst,...
-
Grc
6 days ago
Singapore Good Job Creations Pte Ltd Full time1. Job Brief 1. Reporting - Head of Security **Responsibilities**: - Develop IT GRC management framework and processes that gel with Security Strategy. - Develop and maintain Security Policy. - Ensuring that requirements in IT Audit, Standard, Policy, Compliance and Risk controls are met. - Responsible for the maintaining the Risk Registries. - Define...
-
Grc
2 days ago
Singapore Good Job Creations Pte Ltd Full time1. Job Brief 1. Reporting - Head of Security **Responsibilities**: - Develop IT GRC management framework and processes that gel with Security Strategy. - Develop and maintain Security Policy. - Ensuring that requirements in IT Audit, Standard, Policy, Compliance and Risk controls are met. - Responsible for the maintaining the Risk Registries. - Define...
-
Information Security
3 weeks ago
Singapore RANDSTAD PTE. LIMITED Full timeRoles & ResponsibilitiesExperience in an international setting with high adaptability In depth understanding of China's laws (GRC) People Manager role with a strong track record in leadershipabout the companyOur client is a multinational company and they are a prominent player in the industry, renowned for its extensive brand portfolio, commitment to...
-
APAC Information Security Analyst
2 days ago
Singapore UPS ASIA GROUP PTE. LTD. Full timeRoles & ResponsibilitiesThe Information Security Analyst will be reporting to the APAC Information Security Manager and will work as part of the UPS AsiaPac Information Security Assurance and Risk Management Team in our corporate office in Singapore playing major role in management risk and security vulnerabilities across the APAC region.As the Lead...
-
Information Security Strategist
3 days ago
Singapore RANDSTAD PTE. LIMITED Full timeAbout the Role: As our Information Security & Risk Governance Lead (GRC), you will be responsible for developing, governing, and enforcing cybersecurity policies, standards, and guidelines. This role involves leading evaluations of security and privacy risks, coordinating swift responses to suspected cyber incidents, and monitoring cybersecurity risks to...
-
IT Security Practice Manager
1 week ago
Singapore NCS Full time**IT Security Practice Manager (GRC)**: **Date**:13 Nov 2024 **Location**: Singapore, Singapore **Company**:Singtel Group NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to...
-
Cyber Security GRC Specialist
2 days ago
Singapore PeopleSearch Full timeCyber Security GRC Specialist - EZ.M Our client is looking for an experienced Cyber Security GRC Specialist to develop, implement and maintain governance, risk and compliance programs within their cyber security framework. Responsibilities: Develop and maintain cyber security policies, procedures and standards in alignment with industry frameworks (e.g. ISO...
-
Grc Analyst
5 days ago
Singapore INTEGRATED HEALTH INFORMATION SYSTEMS PTE. LTD. Full time**Responsibilities**: - Interface with users on daily risk assessment requests to provide guidance and support - Perform risk assessments and vulnerability assessments on new and existing systems, processes, technology - Work with various business units to ensure controls are adequate, appropriate, and effective - Collaborate to define IT security standards...
-
Lead, Security Grc
4 days ago
Singapore COINBASE SINGAPORE PTE. LTD. Full time**GRC Security at Coinbase Coinbase stores more digital currency than any company in the world, making us a prime target on the internet. Security is core to our mission and has been a key competitive differentiator for us as we scale worldwide. Crucial to scaling is building and running a security compliance program that reflects how we protect the data and...
-
Cyber Security GRC Strategist
1 day ago
Singapore PeopleSearch Full timeAbout UsAt PeopleSearch, we specialize in connecting top talent with leading organizations.Job Title:Cyber Security GRC StrategistJob Description:We are seeking an experienced Cyber Security GRC Strategist to develop and implement governance, risk, and compliance programs within our cyber security framework.Key Responsibilities:Develop and maintain cyber...
-
GRC Cyber Security Professional
1 day ago
Singapore PeopleSearch Full timeAbout Our CompanyPeopleSearch Pte Ltd is a trusted partner in connecting top talent with leading organizations.Job Title:GRC Cyber Security ProfessionalJob Description:We are looking for a highly skilled GRC Cyber Security Professional to develop and implement governance, risk, and compliance programs within our cyber security framework.Key...
-
IT Security Governance
1 week ago
Singapore Hays Full time**Cyber Security Roles in Singapore** **Job Posting by Belle Lim, Cyber Security Consultant at Hays Singapore** *** **IT Security Governance (GRC) Manager** **Cyber Security jobs in Singapore** **ACTIVELY HIRING NOW** Hi Everyone, An established renowned educational institution is currently looking for an IT Security Governance Manager to join their team....
-
Grc Expert- Singapore
1 week ago
Singapore Fireblocks Full time**About The Position**: The Governance, Risk, and Compliance expert is responsible for the assessing and documenting of Fireblocks’s compliance and risk posture. Fireblocks Security, Governance, Risk, and Compliance (GRC) expert is responsible among others for ensuring Fireblocks leadership has the information needed to make strategic risk-based decisions...
-
Grc Expert- Singapore
1 week ago
Singapore Fireblocks Full timeThe Governance, Risk, and Compliance expert is responsible for the assessing and documenting of Fireblocks’s compliance and risk posture. Fireblocks Security, Governance, Risk, and Compliance (GRC) expert is responsible among others for ensuring Fireblocks leadership has the information needed to make strategic risk-based decisions enabling the...
-
Singapore Charterhouse Partnership Singapore Full timeJob Posting by Sheralynn Tjioe, Associate Director (Cyber Security and GRC) Recruitment at Charterhouse Asia Information Security GRC Specialist for a Financial Institution (5-10 Years) The Information Security GRC Specialist is responsible for overseeing Information Security compliance assessments across the organisation's technology...
-
Singapore Charterhouse Partnership Singapore Full timeJob Posting by Sheralynn Tjioe, Associate Director (Cyber Security and GRC) Recruitment at Charterhouse Asia SheralynnT@charterhouse.com.sg Information Security GRC Specialist for a Financial Institution (5-10 Years) The Information Security GRC Specialist is responsible for overseeing Information Security compliance assessments across the organisation's...