Security Consultant

2 days ago


Singapore PAYPAL PTE. LTD. Full time

**Job Description Summary**:
As a leader in the Enterprise Cyber Security (“ECS”) consulting team, this role will operate as a Technical Security consultant responsible for engaging with PayPal product development teams, solution engineers and architects, operations, and business units providing policy driven security review and consultation.

The engineer will participate in continuous improvement efforts by engineering and implementing automation, process improvement to reduce redundancy and drive efficiency.

Job Function - distribution

Working daily on security review requests by responding to queries from technical engineering and architects, product owners, operations, business units and development teams
- Participate in the design of technical solutions and implementation methods providing security guidance and ensuring inclusion of security controls
- Analyze security related incidents and provide guidance on contributing control gaps and advise on plausible technical security control solutions
- Participate in the design and deployment of security controls and alignment of controls with business requirements
- Provide security policy and procedure guidance on review requests
- Provide approval/confirmation that activities, products, or deployments are aligned with Information Security policies and procedures
- Analyze risk and propose mitigating controls
- Review peer queries for final disposition
- Escalate to management where exception to policy is requested/required
- Enabling business without compromise on security posture of the organization

Review peer and subordinate consulting engagements prior to ECS approval
- Ensure consistency and accuracy across the team
- Ensure gaps/findings/risks are identified and adjudicate risk
- Validate compensation controls are called out and understood by requestors
- Understand and advocate strategy and vision for the team
- Work across team disciplines building knowledge and improving each discipline

Represent Enterprise Cyber Security (ECS) in various counsels including Geo Data protection council, Cloud security guild, tiger teams and large initiative discussions to provide input based on Security SME and security policy and procedure feedback

Participate in consulting process efficiency and improvement through
- Engineering and implementing automation
- Identify and suggesting technologies, products, and process for peer teams
- Work with the technology owners to identify patterns that can be approved without ECS review

**Work Experience**
- Overall 8+ years of experience in Security
- INFOSEC certification’s like CCSP, CISSP, CISM
- Experience working in a ticketing system environment
- Experience working in at least one of the three platforms Azure, AWS, GCP
- Bachelor’s degree or equivalent industry experience.
- Technology Cloud security practitioner or equivalent

**Desirable**
- Understanding of SOX 404, PCI, FFEIC, GLBA, OFAC, the Patriot Act, MAS guidelines, PBOC, RBI and other regulatory requirements for the financial services sector.
- Good understanding of information security and risk management frameworks such as OWASP and ISO27001.
- Google Professional Cloud Security Engineer
- Microsoft Certified: Azure Security Engineer Associate
- AWS Certified Security - Specialty

**Skills**

In-depth understanding of the following cybersecurity areas with expertise in two or more areas along with very detailed cloud security knowledge and experience. Ability to provide consultation on technical design, deployment, and operations in the area
- Security Architecture
- Application Security
- Network security
- Data Security
- Cryptography
- Cloud Security
- In-depth understanding of security standards, controls, and best practices
- Knowledge of software development, network engineering, cloud engineering
- Familiarity on working in a ticketing system to handle daily task, documenting the findings / decisions, generate reports / dashboards would be preferred
- Suggest and implement new ideas to optimize and continuous focus on improving quality and processes

**Behaviours**
- Self-Awareness - Insightful, reflective, understands personal strengths and weaknesses, seeks feedback.
- Learns from experience; cool and resilient through change; treat others constructively and always with respect
- Mental Agility - Think through problems from a fresh point of view, comfortable with ambiguity & complexity
- Sees through customer eyes and brings in ideas to improve our products and services
- Technical research of solutions capabilities and verification of technical options, problem solver
- Get results under tough conditions; inspire others to go beyond the norm; exhibit presence that builds confidence
- Experience building and maintaining constructive working relationships with a diverse community (in and outside of technology); ability to effectively communicate (both written and verbal) with and influence both technical and non-technical audienc


  • Security Consultant

    2 weeks ago


    Singapore VANTAGE POINT SECURITY PTE. LTD. Full time

    Roles & ResponsibilitiesRole Purpose:The Security Consultant delivers penetration testing & offensive security projects to ensure a successfuloutcome that at least meets or exceeds the expectations of our clients.Role Outcomes:The customer recognises you as a subject matter expert and they have confidence in the comprehensiveness of the testing methodology...

  • Security Consultant

    4 days ago


    Singapore VANTAGE POINT SECURITY PTE. LTD. Full time

    Role Purpose: The Security Consultant delivers penetration testing & offensive security projects to ensure a successfuloutcome that at least meets or exceeds the expectations of our clients.Role Outcomes: The customer recognises you as a subject matter expert and they have confidence in the comprehensiveness of the testing methodology and the accuracy of...


  • Singapore PLAN B SECURITY PTE. LTD. Full time

    Job Description: As a next-gen Cyber Security Consultant, the successful candidates will be involved in project planning and the rollout of security solutions to secure customer environments. We seek individuals with an open heart and mind, eager to learn sophisticated Cyber Security technologies. Join us and be part of the next-gen journey. Product...


  • Singapore PLAN B SECURITY PTE. LTD. Full time

    Roles & ResponsibilitiesJob Description:As a next-gen Cyber Security Consultant. The candidates will be involve in project planning, rolling out of security solution to secure customers environment. Having an open heart and open mind, to learn the sophisticated Cyber Security technology. Join us and onboard to the next-gen journey.Product Coverage* Next-Gen...


  • Singapore Experis Full time

    **IT Security Consultant**: - Location- Singapore- Job reference- BBBH133287_1698816531- Salary- S$0.00 - S$5000 per month + Bonus- Consultant name - Goel Navneet Consultant contact no. - 65515581 - EA License No. - 02C3423 - Consultant Registration No. - R1982194 IT Security Officer to support the IT Security Consultant with its company's Information...

  • Security Consultant

    5 days ago


    Singapore RED SENTRY PTE LTD Full time

    **Job Description of Security Consultant** Faced with ever-increasing threats to IT security, organizations need to maintain a vigilant approach to protect their systems and data, and a Security Lead plays a key role in this process. Red Sentry is hiring a Security Consultant to start the Cyber Security Services offerings and are responsible for a number of...

  • Security Consultant

    2 weeks ago


    Singapore SEDHA CONSULTING PTE. LTD. Full time

    **Security Consultant **Job Summary** The Security Consultant will be responsible for providing both technical and non-technical guidance on security-related matters for the organization. This role involves assessing security risks, developing security controls, and implementing solutions to protect the organization's digital assets and infrastructure. The...


  • Singapore NCS Full time

    **Lead Consultant / Senior Consultant / Consultant (IT Security)** **Overview** Develop and drive effective IT security compliance programs involving activities such as reviewing and developing security policies, processes/procedures and guidelines, establishing compliance with policies, conducting security reviews and audits, penetration tests, security...

  • Security Consultant

    1 week ago


    Singapore AvePoint Full time

    **About AvePoint**: At AvePoint, we are committed to investing in our people. Agility, passion and teamwork set us up to do our best work and foster a culture where you are empowered to craft your career, make an impact, and own (y)our future. Unleash the power of you! **About the role**: As a **Security Consultant**, you will play a pivotal role in guiding...


  • Singapore ZENITH INFOTECH (S) PTE LTD. Full time

    Presently we have a Job Opening for a IT Security Consultant position with one of our clients in Singapore Microsoft 365 - In-depth understanding of Identity and Access Management Analyzing assets for potential security threats. Identifying possible security threats and determining the best security measures.