Cybersecurity Risk Manager

3 days ago


Singapore ASTEK SINGAPORE INNOVATION TECHNOLOGY PTE. LTD. Full time

**Position Overview**:
We are seeking a skilled and experienced Cybersecurity Risk Manager to join our team and contribute to the management of IT and cybersecurity risks across our organization. This role will be pivotal in ensuring the integrity, confidentiality, and availability of our information and technology systems by supporting the Infrastructure Risk and Control function within the broader Cyber Risk Management operations. You will play an active role in shaping and implementing risk management processes that align with our regulatory requirements and risk appetite.

**Key Responsibilities**:

- **Risk Management & Compliance**:Support the Infrastructure Risk and Control function by ensuring that technology, information, and cybersecurity risks are managed and controlled effectively across various business units, consistent with the firm’s risk appetite and regulatory requirements.
- **Gap Assessment & Risk Identification**:Plan and conduct thorough gap assessments throughout the Secure Software Development Lifecycle (SSDLC) to identify and evaluate potential risks. Assess existing controls, identify mitigating strategies, and measure the residual risk.
- **Policy & Standards Compliance**:Work collaboratively with key stakeholders to drive adherence to cybersecurity, information, and technology policies and standards. This includes monitoring compliance and recommending adjustments when necessary.
- **Risk Reporting & Control Effectiveness**:Continuously monitor and assess the effectiveness of existing cybersecurity controls. Prepare and deliver regular risk and control reports to senior management, identifying key audit findings, risks, and areas for improvement.
- **Training & Awareness Programs**:Conduct cybersecurity awareness programs, including staff training on policies, standards, and best practices. Lead initiatives such as phishing simulation campaigns, awareness newsletters, and training sessions to increase security awareness throughout the organization.
- **Coordination with Risk Functions**:Liaise with other internal risk management functions to ensure a unified and cohesive approach to risk and audit management across the enterprise.

**Qualifications and Experience**:

- **Education**:A degree in Computer Science, Information Technology, Cybersecurity, or a related field is required.
- **Experience**:5-8 years of professional experience in IT cybersecurity risk management, risk implementation, and governance. This includes practical experience in IT risk assessments, vendor risk assessments, audit processes, and managing operational risk issues.
- **Communication & Collaboration**:Strong written and verbal communication skills, with the ability to prepare detailed reports, presentations, and communicate complex cybersecurity issues to stakeholders at all levels.
- **Problem-Solving Skills**:Excellent analytical, problem-solving, and critical-thinking abilities, with the capacity to influence stakeholders and drive changes to improve risk management processes.

**Preferred Qualifications**:

- **Certifications**:Professional cybersecurity certifications such as CISSP, CISM, CRISC, CCSK, or CGEIT would be highly desirable.
- **Additional Experience**:Experience in conducting risk assessments on both traditional IT environments and modern Cloud-based systems will be considered an advantage.

**Skills & Competencies**:

- **Cybersecurity Expertise**:In-depth knowledge of cybersecurity best practices, risk assessment methodologies, and threat mitigation techniques.
- **Governance & Compliance**:Experience working within regulatory frameworks and compliance mandates.
- **Training & Development**:Ability to design and implement effective cybersecurity training programs.
- **Attention to Detail**:Meticulous attention to detail, particularly when identifying vulnerabilities and recommending improvements.
- **Interpersonal Skills**:Ability to work across teams and influence key stakeholders to prioritize cybersecurity risk management activities.



  • Singapore Krisvconsulting Services Pte Ltd Full time

    About the job Cybersecurity Governance & Risk Manager Responsibilities: Implement IT risk management frameworks, policies, and compliance checks Maintain cybersecurity policies, vendor governance, and system criticality frameworks Modernize oversight via emerging tech and real-time risk tracking tools Ensure secure SDLC and risk assessments during IT...

  • Senior Manager, IT

    5 days ago


    Singapore NodeFlair Full time

    **Job Summary**: **Job Type** Permanent **Seniority** Manager **Years of Experience** 7-10 years **Purpose** - Contributes to the overall success of the IT & Cybersecurity Risk Management in Asia Pacific ensuring specific individual goals, plans, initiatives are executed / delivered in support of the team’s business strategies and objectives. Ensures...


  • Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    **Duties and Responsibilities: This individual will play a crucial role in developing and managing information cybersecurity for our clients. As a Cybersecurity Consultant, you will be responsible for developing, evaluating, and reviewing information security policies in accordance with relevant standards and frameworks such as ISO27001, NIST. We are...


  • Singapore Assurity Trusted Solutions Full time

    Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a...


  • Singapore STONE CYBERSECURITY PTE. LTD. Full time

    We are looking for a strategic and detail-oriented Cybersecurity Consultant to join our growing team. If you're passionate about offensive security and thrive on uncovering vulnerabilities before attackers do, we want to hear from you. As a Cybersecurity Consultant specializing in Vulnerability Assessment and Penetration Testing (VAPT) , you will work...


  • Singapore Assurity Trusted Solutions Full time $100,000 - $120,000 per year

    Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a...


  • Singapore STONE CYBERSECURITY PTE. LTD. Full time

    We are looking for a high-energy, sales, and detail-oriented individual to join our sales team as Cybersecurity Account Executive / Sales Manager. **Cybersecurity Account Executive Responsibilities: - Hunt, develop and close multiple opportunities at the same time. - Ensure accurate overview and forecasts of sales activities. - Develop long-term strategic...


  • Singapore STAR CAREER CONSULTING PTE. LTD. Full time

    We are looking for a Cybersecurity Professional in Risk Assessment of the IT/OT space **Responsibilities**: Provide advise and consultancy to clients in the following: - Cybersecurity governance, risk assessment and audit - IT/OT system security controls analysis - Cybersecurity Security-by-Design, Data security management - Perform gap analysis and cyber...

  • System Manager

    4 days ago


    Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    Overview The System Manager role ensures unified oversight, accountability, and seamless coordination across security domains, driving operational excellence and aligning cybersecurity operations with organizational strategy. The System Manager will also serve as the point of contact with access to Ensign's expert bench, orchestrating escalations, system...

  • System Manager

    4 days ago


    Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    Overview The System Manager role ensures unified oversight, accountability, and seamless coordination across security domains, driving operational excellence and aligning cybersecurity operations with organizational strategy. The System Manager will also serve as the point of contact with access to Ensign's expert bench, orchestrating escalations, system...