Business Information Security Officer

1 week ago


Singapore AIA Full time

At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone.
- As pioneering innovators for over 100 years, we’re now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier, Longer, Better Lives._
- To get there, we need people with _
- tech/digital/analytics_
- expertise and passion to help develop positive, sustainable change through digitally enhanced experiences that will impact the lives of millions of people and create a healthier future for everyone._

If you believe in developing a better tomorrow, read on.

WE ARE LOOKING FOR.....

The BISO role is a senior cybersecurity leadership position intended to bridge the gap between security and business interests, be responsible for the overall Cyber Security Management of AIA Singapore to the line of business.

Serve as the Business Information Security Officer, go-between for the security team and business, to engage with line of business for AIASG and to perform vital functions in identifying, mitigating, reviewing, documenting, and reporting findings to management, and ensures the corresponding risk exposures are appropriately addressed such that the company’s image and value are protected. Enhance our cyber security readiness and uplift our capabilities to tackle the future emerging cyber risks to support the business.- Serve as the primary security contact for the line of business in AIASG- Develop and oversee the implementation of security policies, procedures, and controls- Conduct risk assessments and manage security statement and review for line of business in AIASG to support business strategy- Monitor compliance with security regulations for all systems supporting the line of business- Strong business acumen to understand and speak the language of business. Be able to clearly articulate the value of cybersecurity investments to business leaders who may not be familiar with the technical details-
- Develop and maintain local risk register, detection/response related standard operating procedures to ensure compliant to the MAS regulations- Monitor security compliance, manage security awareness programs, train employees on security procedures and implement new security technologies- Coordinate with the IT department on technical security issues- Working with business units to ensure compliance with security policies and procedures- Provide guidance and support to line of business on security-related issues- Uplift Cyber Security process, controls and maturity level for Cyber Security- Support for the Cyber Security score in the annual MAS CRAFT report- Internal communication within Technology Department (30%), Enterprise Risk Management, Compliance, Internal Audit (15%), Business Departments (10%), Senior Management and Sub-Committees (10%), Group Technology and Group Information Security(20%)- External communication with Vendors and Service Providers (15%)

Job Requirements- Bachelor’s degree of computer science, computer engineering or other relevant degrees- Information Systems Security professional certifications, such as CISSP, CISA, CISM or CRISC preferred- Minimum 15 years of IT experience with at least 5 years’ of experience working as a BISO in an MNC enterprise environment. Finance industry will be preferred-
- Effectively communicate with both technical and non-technical staff. Be able to translate complex technical concepts into plain English and present them in a way that decision-makers can understand- Strong knowledge of Cyber Security forensics, Information Security governance, project management, change management, technology implementation and risk analysis strategy- Sound knowledge of Cloud environment and Cloud security, Cyber Monitoring, Threat Hunting, and Cyber Threat Intelligence- Self-driven professional interested in the world of cyber security- Broad information security knowledge and experience in defending a large enterprise- Technical understanding of enterprise network, various components and designs and strong understanding of Operating Systems, Applications, Database, on-prem and cloud environment- Good Communication, coordination, analytical and interpersonal skill- Ability to work independently, take initiative, be flexible and adapt in agile working environment
- Build a career with us as we help our customers and the community live Healthier, Longer, Better Lives._



  • Singapore JONES LANG LASALLE TECHNOLOGY SERVICES PTE. LTD. Full time

    The JLLT Business Information Security Officer (BISO) serves as the trusted advisor to the JLL business units for all information security issues. This role is a senior member of the JLLT Global Information Security team that works collaboratively with other information security leaders (e.g., Cyber Defense, Application Security, Property Security, etc.) and...


  • Singapore Charterhouse Partnership Singapore Full time

    CISO/Head of Information Security Role Chief Information Security Officer (CISO) for a Leading Firm Role Overview We are seeking a Chief Information Security Officer (CISO) for a leading firm. You will be leading the entire cyber security function and be oversee Cyber Security and Information Security. You will be looking to enhance the...


  • Singapore Bank of America Full time

    At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for our teammates...


  • Singapore percept-solutions Full time

    The Information Security Officer (ISO) is responsible for managing the Information Security and Data Privacy Program, serving as the Single Point of Contact (SPOC) for all second-line functional activities related to confidentiality, integrity, availability, privacy, and recovery of information. The ISO will ensure compliance with regulatory requirements and...


  • Singapore SCHRODER INVESTMENT MANAGEMENT (SINGAPORE) LTD. Full time

    **Who we’re looking for** A specialist to provide technical and non-technical information security consultancy services to the Schroders business units and IT. Reporting to the Head of Information Security APAC, the role necessitates an ability to champion the security team to influence senior business representatives and to engage with internal...


  • Singapore DCS CARD CENTRE PTE. LTD. Full time

    **Key Responsibilities**: - First Line of Defense (1LoD), reporting to Chief Technology Officer (CTO) and working with IT team leads to identify and manage the security risks exposed to the organization. - Review and evaluate new security technologies and practices to protect the organisation in minimizing information security risks and cyber-attacks. -...


  • Singapore DCS CARD CENTRE PTE. LTD. Full time

    Founded in 1973, DCS Card Centre (formerly Diners Club Singapore) is a financial institution licensed to issue credit and charge cards, governed by the Monetary Authority of Singapore (MAS) under the Banking Act. We deliver digital-first, customer-centric payment products and solutions for consumers, merchants and corporates. Leveraging on our deep...


  • Singapore Charterhouse Partnership Singapore Full time

    Global Chief Information Security Officer (CISO) Role Overview We are seeking a highly experienced and visionary Global Chief Information Security Officer (CISO). Key Responsibilities Cybersecurity Strategy Development: Develop and implement a comprehensive global cybersecurity strategy aligned with business objectives and regulatory...


  • Singapore ERGO Insurance Pte. Ltd. Full time

    **Information Security Risk Officer** ERGO Insurance Pte. Ltd. is a registered general insurer regulated by the Monetary Authority of Singapore. We are a wholly owned Singapore subsidiary of ERGO Group AG, one of the major insurance groups in Germany and Europe, and we are the primary insurance arm of Munich Re, one of the leading reinsurers and risk...


  • Singapore SPEARING EXECUTIVE SEARCH PTE. LTD. Full time

    Your role is to build and provide a holistic, best-in-class approach to shaping, guiding, and educating the team around the design and development of robust cyber security processes. You’ll need to understand and manage the business’ appetite for risk: driving a practical, intuitive approach to security that works for the whole business but doesn’t...