IT Security Manager

2 weeks ago


Singapore INTEGRATED HEALTH INFORMATION SYSTEMS PTE. LTD. Full time

**Position Summary**

This is a 1st Line-of-Defence (1LOD) role and is responsible to ensure that day-to-day ICT efforts of the organisation and the holding company for their systems and projects to comply with prevailing ICT security policies and standards, and works with departments across organisations to harmonise ICT security work plans and resourcing.

**Key Responsibilities**:
**1. **ICT Security Strategy**
- Formulate the Entity ICT security work plan, and align it with Entity’s ICT security strategy; and
- Responsible for resourcing to meet the Entity’s strategic goals.

**2. **Gap Analysis**
- Conduct gap analysis to identify ICT security risks faced by the Entity, and gauge the Entity’s ICT security posture and level of maturity against the Entity’s ICT security maturity model

**3. **Security Governance**
- Maintain an overall view of the ICT security design, implementation and operations of ICT systems;
- Comply with Entity and HealthTech Instruction Manual (HIM) security requirements;
- Collate key security metrics which will be aggregated at the public healthcare level;
- Put in place and regularly review (annually, or whenever there are changes to its business/ICT environment) the security metrics; and
- Implement the Entity’s risk and control program to manage the security posture of the Entity’s systems

**4. **Risk Management**
- Ensure that all ICT systems perform a thorough ICT security risk assessment.

**5. **Incident Management**
- Ensure systems have a defined process for the identification and management of incidents is in-place;
- Ensure systems have appropriate security controls in-place to detect, prevent and recover from any security incident;
- Support the Cybersecurity Incident Response Manager (CSIRM) in the investigation and management of ICT security incidents; and
- Plan, design and conduct security incident response workshops and exercises (table-top exercises, simulation and drills).

**6. **Secure Development Lifecycle**
- Ensure that management and execution of all Entities’ ICT system development and project management are in compliance to HIM’s security and related requirements; and
- Review all Entity’s security testing reports (Vulnerability Assessments/ Penetration Tests/ Source Code Review) and ensure mitigation is performed satisfactorily.

7. **Security Controls Implementation**:

- Work with System Owners to ensure that the management and execution of all Entity’s ICT systems are operating in compliance to HIM's security and other security requirements, including;
- Account and access management;
- Patching, hardening and management of deviations;
- Network connectivity to Healthcare Enterprise networks;
- Privileged and remote access user management; and
- Logging of key system events and activities to enable incident investigations.

8. **ICT Asset Management**
- Have full visibility for all Entity’s ICT systems and products across operating environments (Intranet, Internet, Extranet).



  • Singapore FORX SECURITY PTE. LTD. Full time

    Forx Security is seeking an individual to manage the day to day operations of a security agency. **Job Description**: - Plan and deploy security officers for security sites. - Site visits to ensure deployments are running smoothly. - Communication with client supervisors to ensure all site operations are in order. - Planning and setup of deployment sites...


  • Singapore Military Security Department Full time

    **What the role is** - You are part of a team that engages MINDEF/SAF/Industry stakeholders on security issues. **What you will be working on** - You engage stakeholders to imbue a strong security culture in their organisations. You will plan and conduct effective security activities / lessons for different target audiences. You will also help to develop...


  • Singapore PALO IT Full time

    Join to apply for the Senior Security Engineer role at PALO IT Join to apply for the Senior Security Engineer role at PALO IT Get AI-powered advice on this job and more exclusive features. Build. Scale. Sustain.PALO IT is a global technology consultancy that crafts tech as a force for good. We design, develop and scale digital and sustainable products...


  • Singapore PEREGRINE SECURITY PTE. LIMITED Full time

    Roles & Responsibilities Responsible and accountable for effectively managing the day-to-day operations / allocated contract sites, and staff by providing the highest quality, complaint-free, and professional security service to its customers Conduct security and safety risk assessment surveys of the assignments Conduct investigations and vet incident...


  • Singapore PEREGRINE SECURITY PTE. LIMITED Full time

    Roles & ResponsibilitiesResponsible and accountable for effectively managing the day-to-day operations / allocated contract sites, and staff by providing the highest quality, complaint-free, and professional security service to its customersConduct security and safety risk assessment surveys of the assignments Conduct investigations and vet incident reports...


  • Singapore PALO IT Full time

    **WHO WE ARE**: **Build. Scale. Sustain.** PALO IT is a global technology consultancy that crafts tech as a force for good. We design, develop and scale digital and sustainable products and services to unlock value across the triple bottom line: people, planet, profit. **We do the right thing, and we do it right.**We're proud to be a World Economic Forum...


  • Singapore PEREGRINE SECURITY PTE. LIMITED Full time

    Overview Responsible and accountable for effectively managing the day-to-day operations / allocated contract sites, and staff by providing the highest quality, complaint-free, and professional security service to its customers Responsibilities Conduct security and safety risk assessment surveys of the assignments Conduct investigations and vet incident...


  • Singapore PEREGRINE SECURITY PTE. LIMITED Full time

    Responsible and accountable for effectively managing the day-to-day operations / allocated contract sites, and staff by providing the highest quality, complaint-free, and professional security service to its customers Conduct security and safety risk assessment surveys of the assignments Conduct investigations and vet incident reports submitted by the...


  • Singapore Military Security Department Full time

    **What the role is** You will be the security consultant to SAF in physical protection of units, camps and assets. **What you will be working on** You will provide guidance and advice to SAF units in the implementation of security policy and standards. You will also be required to work closely with the units to ensure adequate and up-to-date security...

  • Ascc Security Manager

    2 weeks ago


    Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    **ROLES AND RESPONSIBILITIES**: **The main responsibility of the APAC Security Manager is to Support the APAC Security Account Manager with all Security related duties. Oversee the operation, management, training, appraisal, motivation and administration of the APAC Security Control Centre (SCC) and TWDC Security Team. Act as a main point of contact between...