Internal Security Risk Management

1 day ago


Singapore ByteDance Full time

About the Company
Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok, Helo, and Resso, as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create content.

Why Join Us
Creation is the core of ByteDance's purpose. Our products are built to help imaginations thrive. This is doubly true of the teams that make our innovations possible.
Together, we inspire creativity and enrich life - a mission we aim towards achieving every day.
To us, every challenge, no matter how ambiguous, is an opportunity; to learn, to innovate, and to grow as one team. Status quo? Never. Courage? Always.
At ByteDance, we create together and grow together. That's how we drive impact - for ourselves, our company, and the users we serve.
Join us.

About the Team
The Internal Security Risk Management & Governance team is responsible for managing and mitigating information security risks posed within the organisation. To ensure that the company's risk management and governance strategies are up to date and aligned across the organisation, this team is responsible for regular industry benchmarking and working with stakeholders from cross-functional teams to perform regular risk assessments and align risk mitigation strategies. This team is also responsible for managing the optimization, operation, training, and data analysis of the internal threat platform and UEBA (User and Entity Behavior Analytics) platform within the company.

**Responsibilities**:
The Internal Security Risk Management & Governance Analyst will research industry best practices and technologies, then work with stakeholders from various cross-functional teams to develop strategies to mitigate the potential impact of risk materialisation. Based on formulated strategies, assist in the development and implementation of policies, procedures, and controls to prevent, detect, and respond to various risks that could impact the confidentiality, integrity, and availability of the organization's systems, data, and other critical assets.
- Perform Internal Security risk assessment; Identify and assess potential information security risks posed within the organization and the existing policies/procedures/controls mitigating such risks.
- Assess and develop overall mitigation strategies across the company to minimize the impact of relevant incidents.
- Research industry best practices and technologies, perform industry benchmarking and gap analyses.
- Develop and implement internal security risk management programs (e.g. comprehensive audit loggings, insider threat detections, privileged access management & governance), procedures, and controls to prevent, detect, and respond to relevant incidents.
- Operate insider threat detection programs and manage business stakeholders to design programs based on business understanding and risk scenarios.
- Work with stakeholders from engineering, SecOps, IT, legal, HR, Ethics to ensure that all aspects of internal information security risk are addressed.
- Bachelor's degree in a relevant field, such as information security, risk management, or business administration.
- At least 2 years of experience in a similar role, with a proven track record of managing internal security risk and consultancy experience is a bonus.
- Experience developing and implementing internal security risk management policies, procedures, and controls. Knowledge of risk assessment methodologies and tools.
- Solid problem solving skills, a strong inclination towards independent learning, and a team-oriented mindset.
- Strong written/verbal communication and excellent teamwork skills with the ability to interact effectively with stakeholders at all levels of the organization; strong analytical and problem-solving skills.
- Self-driven and results-oriented, enjoys challenging tasks, demonstrates enthusiasm for work, and can handle job pressures.

ByteDance is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At ByteDance, our mission is to inspire creativity and enrich life. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.



  • Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    **About the Position (Based in Singapore)** The APAC Security Operations and Risk Manager reports to the Regional Security Operations, Risk, and Crisis Manager and is responsible for implementing key regional security projects. This position involves extensive risk analysis, development of strategic directions, and implementation of new initiatives to...


  • Singapore Internal Security Department Full time

    Join to apply for the Cybersecurity Professional role at Internal Security Department What The Role Is ISD confronts and addresses threats to Singapore's internal security and stability. For over 75 years, ISD and its predecessor organisations have played a central role in countering threats such as those posed by foreign subversive elements, spies, racial...


  • Singapore Internal Security Department Full time

    Join to apply for the Data Governance Consultant role at Internal Security Department 6 days ago Be among the first 25 applicants Join to apply for the Data Governance Consultant role at Internal Security Department Get AI-powered advice on this job and more exclusive features. What The Role Is Data is integral to ISD's operations. As the use of data and...


  • Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    The APAC Security Control Center (ASCC) is responsible for providing emergency and non-emergency support, conducting research, and providing event dispatch and emergency notification services 24/7. In emergency situations, the ASCC coordinates regional security assistance and support, issues warnings, disseminates information, and serves as the central...


  • Singapore Military Security Department Full time

    **What the role is** - You will be part of a team that conducts audits and evaluates risk-handling of MINDEF/ SAF’S information. **What you will be working on** - You will be part of a team to formulate and review risk assessment frameworks and indicators; conduct security risk assessments of industries and qualify industries and facilities to handle...

  • Solution Engineer

    5 days ago


    Singapore Internal Security Department Full time

    Join to apply for the Solution Engineer role at Internal Security Department 4 days ago Be among the first 25 applicants Join to apply for the Solution Engineer role at Internal Security Department What The Role Is ISD confronts and addresses threats to Singapore's internal security and stability. For over 75 years, ISD and its predecessor organisations...

  • Manager, Risk

    3 days ago


    Singapore Sembcorp Industries Full time

    **Group Company**: Waste **PURPOSE AND SCOPE** Act as a business partner for the business units assigned in the implementation of a robust risk management and internal control system. Be part of the first line of defense to drive the business growth and sustainability by embedding an adequate culture and awareness of risk management within Singapore and...


  • Singapore MHA - Internal Security Department (ISD) Full time

    **What the role is** - ISD confronts and addresses threats to Singapore’s internal security and stability. For over 70 years, ISD and its predecessor organisations have played a central role in countering threats such as those posed by foreign subversive elements, spies, racial and religious extremists, and terrorists. A fulfilling and rewarding career...


  • Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    **About the Position** **Roles and Responsibilities**: - Report directly to the ASCC Manager and work in a team of other Supervisors, Specialists, a Security Systems Supervisor and an Intel Analyst. - Oversee workflow, monitor and account for performance of ASCC Specialist. - Exercise level of leadership, management and supervision. - Ensure all functions...

  • Security Officer

    2 days ago


    Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time

    1 year exp **Roles & Responsibilities** - General Screening (Person and properties checks) - Guarding and Patrolling (Guard properties, preventing thefts) - Access and Egress Control (Control entry and exit) - Basic Incident Response (Respond to and report alarms) **Requirements**: - Licensed SO and SSO (PLRD Required) **Location** -...