Executive/senior Executive, Ot Cybersecurity

2 weeks ago


Singapore SMRT Corporation Ltd Full time

Executive/Senior Executive, OT Cybersecurity

**Job Purpose**
- Cybersecurity, especially in the domain of Operational Technology (OT), and operational resilience are of critical importance in today’s world. We are seeking a skilled and experienced Executive/Senior Engineer to join our dynamic team in delivering a strong cybersecurity system in SMRT, primarily for Operational Technology (OT) and Critical Information Infrastructure (CII) systems.

The Executive/Senior Engineer’s scope of work covers cybersecurity compliance, education and awareness programme, development and/or review of authorised operating documents as well as management reporting. He/she also provides Business Unit-level support and advice to the Line/Division in cybersecurity matters, including in the areas of monitoring, reporting and compliance checks.

In addition, he/she also supports in the areas of planning and execution of Tabletop Exercise as well as Knowledge Management.**Responsibilities**
- The duties and responsibilities are as listed below. Note that the list is not comprehensive and related duties and responsibilities may be assigned from time to time.- 1. Conduct or support the conduct of cybersecurity surveillance/hygiene checks to validate whether the cybersecurity requirements are in place and adhered to.
2. Assist in establishing a cybersecurity awareness programme (including phishing simulation exercise) to strengthen cybersecurity awareness for all SMRT Trains staff.
3. Support the training programme to enhance the competency of Cybersecurity personnel.
4. Manage the regular report submissions of OT Cybersecurity events and exercises to the Management and Authority.
5. Assist in planning, coordinating and/or tracking key activities such as Cybersecurity Audits (internal and external), Risk Assessment (RA) and Vulnerability Assessment (VA) and ensure smooth execution and timely submissions to the Authorities.
6. Support cybersecurity assessments to determine whether the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the cybersecurity requirements.
7. Track findings, observations, and areas of improvements from Cybersecurity Audits, RA and VA until closure and report them for Management’s visibility.
8. Advise System Owners on the implementation of mitigating controls to address audit findings and risks or vulnerabilities at Medium High levels (if any).
9. Liaise with representatives from the Line/Division on the cybersecurity advisories from the Authorities to identify and check whether the product/ software/ operating system/ firmware etc, is affected by the cybersecurity vulnerabilities or threats and provide updates to the Authorities if any system is affected.
10. Support document/procedure review and update.
11. In-charge of Knowledge Management and Documentation Management Systems and ensure the Department’s documents are centrally updated as required.
12. Support the running of various meetings and/or workshops where OT Cyber Security team is involved.**Qualifications & Work Experience**
- Degree in Electrical & Electronic Engineering, Computer Science or equivalent.
- At least 2 years of working experience in a similar role.
- EC-Council Certified Incident Handler (ECIH) or Certified Ethical Hacker (CEH) or Certified Information Systems Auditor (CISA) will be advantageous.

**Skills**
- Technical skills include:

- Knowledge of cybersecurity principles, standards and processes, such as system/ network hardening.
- Knowledge in cybersecurity risk assessment and vulnerability assessment.
- Good knowledge in designing, implementing and troubleshooting Windows OS, IP network.
- Familiarity with regulatory frameworks such as the Cybersecurity Code of Practice (CCoP) will be advantageous.
- Ability to translate cybersecurity threats or risk to impacts on the OT environment and appropriate mitigation techniques will be advantageous.
- Generic skills include:

- Good communication
- Proactive and adaptable
- Planning and organising skills
- Teamwork

**SMRT Trains Ltd**was incorporated in 1987 and operates Singapore’s first mass rapid transit system. Today, we manage and operate train services on the North-South Line, East-West Line, the Circle Line, the Thomson-East Coast Line, and the Bukit Panjang Light Rail Transit. With over 5,000 employees, more than 250 trains, and 141 km of rail tracks across 108 stations, we serve millions of commuters daily.



  • Singapore STONE CYBERSECURITY PTE. LTD. Full time

    We are looking for a high-energy, sales, and detail-oriented individual to join our sales team as Cybersecurity Account Executive / Sales Manager. **Cybersecurity Account Executive Responsibilities: - Hunt, develop and close multiple opportunities at the same time. - Ensure accurate overview and forecasts of sales activities. - Develop long-term strategic...


  • Singapore NodeFlair Full time

    **Job Summary**: **Job Type** Permanent **Seniority** Mid **Years of Experience** 3-5 years **Responsibilities**: - Conducts risk assessments on OT systems and identify potential vulnerabilities and threats - Designs and implements cybersecurity controls and measures to protect OT systems from cyber-attacks and other security threats - Collaborates with...

  • [lta-itcd] Senior

    5 days ago


    Singapore LTA Land Transport Authority Full time

    [What the role is] SENIOR / EXECUTIVE / CYBERSECURITY ENGINEER (THREAT INTELLIGENCE & RESPONSE) [What you will be working on] You will be responsible for research into new cyber threat detection and analytic technologies that could strengthen LTA’s cybersecurity capabilities as well as conduct online research of emerging cyber threats and threat...


  • Singapore NodeFlair Full time

    **Job Summary**: **Salary** S$6,000 - S$8,000 / Monthly **Job Type** **Seniority** Senior **Years of Experience** At least 5 years **Responsibilities**: Being a specialist in the areas of Operational Technology Cyber Security, including Risk Assessment, Vulnerability Assessment and Penetration Testing for Instrumentation & Control Systems; - Responsible...


  • Singapore National University of Singapore Full time

    **Date**:3 Oct 2024 **Location**: NUS ENTERPRISE, Kent Ridge Campus, SG **Company**:National University of Singapore NUS Enterprise is the Innovation & Entrepreneurial arm of National University of Singapore (NUS). The Ecosystem Building team operates one of the most extensive startup ecosystems in the world, leveraging on world-class research and...


  • Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    **Duties and Responsibilities: This individual will play a crucial role in developing and managing information cybersecurity for our clients. As a Cybersecurity Consultant, you will be responsible for developing, evaluating, and reviewing information security policies in accordance with relevant standards and frameworks such as ISO27001, NIST. We are...


  • Singapore PacificLight Power Pte Ltd Full time

    **SENIOR EXECUTIVE, CYBERSECURITY & INFRASTRUCTURE**: **Responsibilities**: - To plan, review and carry out preventive / condition monitoring programs, in line with the OEM recommendations / best industry practices, recommend actions and implement as required to increase reliability of the equipment. - To identify, plan and initiate action to procure and...


  • Singapore NUS Enterprise Full time

    **Posting Start Date**:03/10/2024 NUS Enterprise is the Innovation & Entrepreneurial arm of National University of Singapore (NUS). The Ecosystem Building team operates one of the most extensive startup ecosystems in the world, leveraging on world-class research and innovation capabilities twinned with market connectivity through our regional and global...


  • Singapore EXECUTIVE OFFSHORE PTE. LTD. Full time

    Roles & ResponsibilitiesExecutive Offshore was established to provide high quality services to the offshore industry. The company operates an exclusive fleet of modern offshore vessels to cater to clients requiring quality offshore support services in the Oil and Gas Industry.Executive Offshore is part of Executive Group, an ensemble of seven maritime...


  • Singapore MICROSEC PTE. LTD. Full time

    **What if you can safeguard the future of all technologies?**: Today, most of the systems are connected, automated, and remotely monitored/controlled. Be it Industrial or commercial, automation with connectivity has a huge impact on evolving sectors including HealthTech, Industry 4.0, Satellite, Defense/Military, 5G, and Smart cities. These are prone to...