Information Security Risk
3 days ago
A great opportunity exists as APAC Information Security Risk & Compliance Consultant, reporting to APAC Information Security Risk & Compliance Lead.
The APAC Information Security Risk & Compliance Consultant collaborates with compliance, security, and general IT risks to ensure that IT supports the business objectives of the group, while enforcing policy, standards, and ensuring project implementations are consistent with local, regional, and global strategy. As part of the APAC Information Security team, will collaborate closely with other team members in providing support to APAC Business Units in the risk identification, assessment, and advice to the various stakeholders.
**Key responsibilities**:
- Support APAC Business Information Security Officers (BISOs) in performing the following assessments using the global standard risk-based approach:
- Cloud security assessments-
- Third party vendor assessments-
- Business / IT Application assessments (incl. pre & post implementation reviews)-
- Regulatory assessments (local regulations, ISO27001, PCI DSS, SOC2 etc.)-
- Remediation action review, analysis, and management-
- Themed security reviews-
- Maintain Information Security, Risk and Compliance frameworks, policies, and standards for the APAC region.- Provide governance over, and support BISOs in the coordination of, regional and local information security gap remediation.- Perform analysis to identify common themes and drive regional remediation activities.- Advise APAC Business Information Security Officers (BISOs) and stakeholders in information security policy compliance requirements.- Provide advice, governance and support in information security policy exception and risk acceptance processes.- Work closely with the Information Security Governance (ISG) team in Global Information Security (GIS) to ensure global requirements are communicated to APAC stakeholders, and APAC requirements are considered in global Information security compliance projects.- Drive or support global information security governance initiatives in the APAC region.- Ensure the wellbeing of team members and proactively work to identify and manage workplace exposures which may precipitate workplace stress, bullying, harassment, and discrimination.
**Experience / Qualification Required**:
- University degree (primarily in computer science or comparable technical education),- Minimum 5 years professional experience in Information Security related fields and/ or IT Risk Management- One or more of the following information security related certifications is desirable: CISA, CRISC, CISSP and/or CISM.- PCI ISA and/or ISO27001 experience / certification is a plus.- Ability to operate using highly developed consulting and influencing skills, and able to communicate security-related concepts to a broad range of technical and non-technical staff.- Strong risk management and information security skills.- Big4 information security consulting and/or IT audit experience is a plus.- Insurance industry understanding would be highly beneficial.
**Knowledge**:
- Good working understanding of IT security, architectures, and compliance controls-
- Effective communication, presentation, and relationship management skills at different levels in a multicultural environment- Excellent co-ordination and time management skills for hands on assessment management- Strong report writing skills.- Eye for detail and inquisitive nature- Strong integrity and highly ethical- Innovative ability to contribute to development of processes.- Ethic of continuous improvement in their role- Effective in influencing and persuasion.- Understanding and experience in PowerBI is preferable.- Proficient in English (written and spoken). Cantonese is a plus.
If you’re interested in being part of our adventure that will build a brighter future together, and feel a sense of togetherness, then we look forward to you starting your adventure with us
**Why Zurich**
At Zurich, we like to think outside the box and challenge the status quo. We take an optimistic approach by focusing on the positives and constantly asking What can go right?
We are an equal opportunity employer who knows that each employee is unique - that’s what makes our team so great
Join us as we constantly explore new ways to protect our customers and the planet.
- Location(s): SG - Singapore
- Remote working:
- Schedule: Full Time
- Recruiter name: Ahona Adhikary
- Closing date:
-
Information Security Risk Manager
1 week ago
Singapore The Edge Asia Full timeThe role is a permanent position based in Singapore. EA Licence Number: 16S8131 Recruiter Licence Number: R22104669 **Some of the key responsibilities will include**: - Develop and maintain organization framework, rulesets, policies and procedures on information security and data protection. - Maintain inventory of Availability, Integrity, and...
-
Singapore SMART INFORMATION MANAGEMENT SYSTEMS PRIVATE LIMITED Full time**Key Responsibilities**: **Cybersecurity Risk Assessment & Mitigation**: - **Cyber Risk Assessment**:Conduct comprehensive cyber risk assessments in support of technology initiatives, identifying IT-related risks and recommending appropriate security controls to mitigate those risks. - **Risk Monitoring & Management**:Continuously track and manage risk...
-
Information Security
1 day ago
Singapore Bank of Singapore Full timeAt Bank of Singapore, we are constantly on the lookout for exceptional individuals to join our team. We promote a culture of openness, teamwork and fairness. Most importantly, we invest in our people through our programmes that develop them on both professional and personal levels. Besides attractive remuneration packages, we offer non-financial benefits and...
-
Security Operations Manager
2 weeks ago
Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time**About SRS** Founded in 2006, Security & Risk Solutions Pte Ltd (SRS) is a global security solutions provider that started in Singapore. Today, we operate in Asia Pacific, China, the Middle East, the Africas, Europe, and Latin America, and work with over 90 clients, with a strong presence in the Finance and Technology sectors. SRS understands there is no...
-
Technology Risk, Information Security
2 weeks ago
Singapore Hays Full timeCyber / Information Security Roles in Singapore Hi Everyone, An established international bank is looking for a Technology Risk Officer to build up their Technology Risk Management Team as part of their growth and expansion plan. This is a new headcount and this individual spearhead and build up their second line of defence from scratch. This individual...
-
Senior Information Security Risk Manager
2 weeks ago
Singapore Sygnum Full time**About Us** Sygnum is the world’s first regulated Digital Asset Bank, founded on Swiss and Singapore dual heritage, headquartered in Switzerland and operating globally. We make digital assets bankable, secure and convenient, empowering our clients to invest in the digital asset economy with complete trust. For the first time with Sygnum, major currencies...
-
Senior Information Security Risk Manager
1 day ago
Singapore Sygnum Full time**About the team** Our CISO team’s mission is to be in the vanguard of digital banking security, fostering a safe and prosperous financial future for our stakeholders while setting pioneering new industry standards for security and trust in the digital age. **About You** You are a dedicated and seasoned Information Security Risk Manager, passionate...
-
Information Security
3 days ago
Singapore Scoot Tigerair Pte Ltd Full timeInternship **Summary** Provide better appreciation and experiential learning in Cybersecurity defence in terms of concepts, architecture, technologies, tools, and operations. **Responsibilities**: **Application Security** - Research into the latest IAM technologies and propose enhancements to existing SIA infrastructure - Assist in tracking and resolving...
-
Apac Assistant Security Manager
3 days ago
Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full timeThe APAC Security Control Center (ASCC) is responsible for providing emergency and non-emergency support, conducting research, and providing event dispatch and emergency notification services 24/7. In emergency situations, the ASCC coordinates regional security assistance and support, issues warnings, disseminates information, and serves as the central...
-
Singapore OCBC Full time $120,000 - $240,000 per yearWHO WE ARE: As Singapore's longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How? By taking the time to truly understand people. From there, we provide support, services, solutions, and career paths that meet their individual needs and desires. Today, we're on a journey...