Associate/specialist, Incident Response and Risk

8 hours ago


Singapore AUDAX FINANCIAL TECHNOLOGY PTE. LTD. Full time

This is a contract role.

**What you will be doing**:
ICS Risk Management

**Risk governance**:

- Assist with designing and implementing an ICS risk governance framework tailored to a fintech.
- Ensure ICS risks and issues identified are properly risk rated and resolved in an appropriate and timely manner.
- Provide insightful risk posture through thematic and accurate risk profile and reporting including corelating relevant controls and associated risks/controls gaps (regulatory, internal and external audit issues, and self-identified gaps).
- Implement control processes, perform key control testing based on key control and risk indicators to ensure compliance with the control statements outlined across Group Policies and Standards as well as facilitate monitoring/collection of any key control or risk indicators.
- Cooperate with legal, compliance and other risk owners to ensure compliance with Audax policies and regulatory requirements.

**Risk advisory**:

- Facilitate and performs risk reviews on projects / new technologies and provides recommendations to manage risks.
- Devise and validate security baselines for newly onboarded and existing technology platforms.
- Participate in partner / vendor onboarding risk reviews.

**Security awareness**:

- Promote cyber security awareness for staff and customers

**Compliance and Reporting**:

- Ensure compliance with relevant security standards, regulations, and best practices.
- Generate regular reports on security metrics, incidents, vulnerabilities, and operational status.

**Audit Management**:

- Manage and coordinate security audits conducted internally or by external auditors.Prepare audit responses and action plans, implementing corrective measures and tracking progress.

Security Operations

**Incident Response**:

- Perform security monitoring and triaging for potential threats and SIEM alerts.

**Vulnerability and Threat Management**:

- Manage vulnerability assessment and remediation programs, prioritizing and mitigating security vulnerabilities.

**Access Review and Security Exceptions**:

- Establish and maintain access review processes to ensure appropriate access rights and permissions.
- Manage and review user requests for security exceptions, balancing business needs with security requirements.

**Firewall, Network Proxy, and EDR Management**:

- Firewall Management: Oversee the configuration, maintenance, and monitoring of firewall systems to enforce security policies and control network traffic effectively.
- Network Proxy Management: Manage proxy servers to secure internet traffic, optimize performance, and troubleshoot issues as needed.
- Endpoint Detection and Response (EDR) Management: Manage EDR tools across endpoints, configure policies for threat detection and response, and analyse endpoint data for security anomalies.

**Service Management**:
Handle and manage user requests involving security services (e.g. network proxy), in accordance to Service Level Agreement (SLA).

**What you need to be successful in this role**:

- Bachelor’s degree in Computer Science, Information Technology, or related field; advanced degree or certifications (e.g., CISSP, CISM) preferred.
- [Specialist level] 5-10 years of relevant ICS experience in ICS risk management and security operations, with at least 3 years in risk management and 2 years in security operations.
- [Specialist level] Experience with access control, vulnerability management, audit management, and compliance frameworks (e.g., PCI-DSS, GDPR) for Specialist level.
- Understanding/proven experience of risk management and security operations.
- Strong understanding of security principles, protocols, and technologies.
- Strong acumen in setting up risk frameworks, policies, standards, baselines and procedures.
- Good understanding of technology (e.g. cloud and containers) and Agile development concepts.
- Knowledge of retail banking products and processes with a focus on digital products, functions, features and processes.
- Good understanding of industry trends and developments including impact on the business.
- Excellent communication skills and ability to collaborate effectively across teams and stakeholders.



  • Singapore MSD Full time

    Cyber Security Incident Response Specialist - Opportunity to **be a part of the Information Technology Risk Management and Security’s Cyber Fusion Center in Singapore!**: - **Based in Singapore,** the regional hub for Asia Pacific (AP) and top-ranked biopharmaceutical company on The Straits Times and Statista’s list of Best Employers in Singapore for...


  • Singapore Meta Full time

    **Business Incident Response Specialist Responsibilities**: - Review, investigate and coordinate the end-to-end resolution of executive-level incidents in adherence with the respective process and policy frameworks. - Communicate effectively with multiple stakeholders, including external clients, internal partners and the leadership group. - Cooperate with...


  • Singapore Meta Full time

    Business Incident Response SpecialistThe Business Incident Response (BIR) team is a specialized group that provides rapid and holistic resolution of critical escalations that threaten businesses' and partners' brands, relationships, and revenue streams. The team offers dedicated support to advertisers globally who experience friction on our platforms.By...


  • Singapore Meta Full time

    Business Incident Response SpecialistThe Business Incident Response (BIR) team is a specialized group that provides rapid and holistic resolution of critical escalations that threaten businesses' and partners' brands, relationships, and revenue streams. The team offers dedicated support to advertisers globally who experience friction on our platforms.By...


  • Singapore Meta Full time $80,000 - $120,000 per year

    The Business Incident Response (BIR) team is a specialized group that provides rapid and holistic resolution of critical escalations that threaten businesses' and partners' brands, relationships, and revenue streams. The team offers dedicated support to advertisers globally who experience friction on our platforms. By leveraging cross-functional...


  • Singapore Meta Full time $90,000 - $120,000 per year

    The Business Incident Response (BIR) team is a specialized group that provides rapid and holistic resolution of critical escalations that threaten businesses' and partners' brands, relationships, and revenue streams. The team offers dedicated support to advertisers globally who experience friction on our platforms. By leveraging cross-functional...


  • Singapore FACEBOOK SINGAPORE PTE. LTD. Full time

    The Business Incident Response (BIR) team is a specialized group that provides rapid and holistic resolution of critical escalations that threaten businesses' and partners' brands, relationships, and revenue streams. The team offers dedicated support to advertisers globally who experience friction on our platforms. By leveraging cross-functional...


  • Singapore StarHub Full time

    Join to apply for the Lead, Cybersecurity Incident Response role at StarHub Job Description The Assistant Manager - Incident Response and Threat Hunting is responsible for leading the detection, investigation, and mitigation of cybersecurity incidents. This role involves proactive threat hunting, forensic analysis, and developing response strategies to...


  • Singapore ARGYLL SCOTT CONSULTING PTE. LTD. Full time

    Incident Response Specialist (12-months Contract)Location: Singapore Contract Type: 12-Month Contract (Renewable & Convertible)Keywords: Malware Analysis, Cybersecurity, Incident Response, Threat Prevention, Endpoint Security, SIEM Role Overview We are seeking a mid-level cybersecurity professional to join a leading financial services organization's advanced...


  • Singapore ByteDance Full time

    Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok, Helo, and Resso, as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create content. Why Join...