Security Governance

5 days ago


Singapore PALO IT Full time

**WHO WE ARE**:
**Build. Scale. Sustain.**

PALO IT is a global technology consultancy that crafts tech as a force for good. We design, develop and scale digital and sustainable products and services to unlock value across the triple bottom line: people, planet, profit. **We do the right thing, and we do it right.**We're proud to be a World Economic Forum New Champion, and a B Corp-certified company.
- We are **small enough to care locally, big enough to deliver globally** (5 continents, 18 offices, +650 experts from +50 nationalities)
- We are **robust and resilient** (100% independent and 0 debt)
- We are **entrepreneurs and passionate experts**: We invest in what we believe genuinely and work as a collective intelligence
- We are **positive, courageous, caring, doers and committed to excellence**

**YOUR ROLE**:
As a **Security Governance & IT Operations Specialist**, you'll be responsible for maintaining our internal security certifications (ISO 27001, DPTM) and leading audit and compliance activities. You'll also serve as a key backup to IT Operations—supporting a range of day-to-day operational needs, including access control, onboarding/offboarding, and SaaS tooling.

This is a cross-functional role that blends **security governance** with **IT operational support**. It's ideal for someone with a process mindset, hands-on experience in IT or security, and the confidence to own compliance workflows while remaining adaptable to operational needs.

**YOUR RESPONSIBILITIES**:

- Lead the maintenance and continuous improvement of our ISO 27001 and DPTM certification processes
- Own audit preparation, coordination, and response for both internal and external assessors
- Maintain security policies, documentation, and compliance calendars
- Advise internal and delivery teams on how to align with company-wide security practices (non-hands-on)
- Act as a backup to IT Operations on key responsibilities, including:

- Managing onboarding and offboarding workflows (accounts, devices, access)
- Assigning and revoking permissions across SaaS platforms (e.g., M365, GitHub, VPN, Notion, etc.)
- Handling basic user support and troubleshooting requests
- Maintaining internal tooling configurations and security-related settings
- Escalate risks or incidents related to security or operational continuity
- Keep internal documentation up to date and easily accessible

**WHO YOU ARE**:

- You have 3-6 years of experience in IT operations, security governance, or a related function
- You've led or played a central role in maintaining ISO 27001 and/or DPTM certifications
- You're familiar with SaaS and cloud security concepts, including access controls and data handling
- You're familiar with cloud platforms like AWS or Azure, especially from a security and access management standpoint
- You have experience supporting user lifecycle management and SaaS operations
- You're highly organized, dependable, and confident managing documentation and compliance timelines
- You're self-driven and comfortable working independently, but you collaborate well across teams
- Bonus if you've worked in consulting or fast-paced environments with lean teams

**_We will be prioritizing applicants who have a current right to work in Singapore, and do not require sponsorship of a visa._**

**MORE ABOUT PALO IT**:
We're eager to adapt to change, learn from our experiences and move to meet our planet's urgent needs. We are continuously taking action to:

- Become a climate net-zero company
- Attain 50% of revenue from projects with a positive impact
- Train 100% of our workforce on impact
- Achieve B Corp certification among all our offices across the globe
- Continuously measure & improve employee happiness

Our clients are amongst the world's most successful companies. We innovate with both established Fortune 1000s, SMEs and start-ups who aim to make an impact, become global leaders and address the world's most complex challenges.

**What We Offer**
- Stimulating working environments
- Unique career path
- International mobility
- Internal R&D projects
- Knowledge sharing
- Personalized training

For more on our team culture and benefits, check out our careers page.
- PALO IT Singapore is an equal opportunity employer. Employment decisions will be based on merit, qualifications and abilities. Palo IT SG does not discriminate in employment opportunities or practices on the basis of race, colour, religion, sex, sexuality, national origin, age, disability, marital status or any other characteristics protected by law._
- Protecting your privacy and the security of your data are longstanding top priorities for Palo-IT._
- Your personal data will be processed for the purposes of managing Palo-IT's recruitment related activities, which include setting up and conducting interviews and tests for applicants, evaluating and assessing the results, and as is otherwise needed in the recruitment and hiring processes._


  • Cyber Security

    2 days ago


    Singapore Military Security Department Full time

    A government security department in Singapore seeks a dynamic individual to develop and enforce security policies regarding information governance, particularly in the digital space. The ideal candidate will have at least 3 years of security experience and a tertiary education. They will advise stakeholders, conduct assessments, and navigate emerging...


  • Singapore OT Security Governance & Compliance Full time

    You will be part of a team responsible for maintaining governance oversight on PSA's security policies, standards, and best practices, and ensuring compliance with regulatory and enterprise requirements.Requirements:Processes a degree in Computer Engineering, Computer Science, Cybersecurity, Information Security, Electrical & Electronics Engineering or...


  • Singapore Reap Full time

    Security · APAC (Hong Kong or Singapore) · Hybrid / RemoteGovernance & Security Engineer Reinvent finance with Reap. We're building resilient, compliant, and secure infrastructure for global money movement. As our Governance & Security Engineer, you'll bridge ICT governance and hands‑on security operations-standing up controls and practices aligned to...


  • Singapore Reap Full time

    Security · APAC (Hong Kong or Singapore) · Hybrid / RemoteGovernance & Security LeadReinvent finance with Reap. We're building resilient, compliant, and secure infrastructure for global money movement. As our Governance & Security Lead, you'll bridge ICT governance and hands‑on security operations-standing up controls and practices aligned to DORA while...


  • Singapore Shopee Full time

    Senior Security Governance Engineer - Infrastructure Security About The Team We are looking for a senior security engineer to support security governance projects and optimise security tool operations. This role requires a strong technical foundation in security engineering, risk management, and automation, along with the ability to drive security...


  • Singapore PSA Singapore Full time

    Responsibilities:Involve in conducting and managing Risk Assessments meetingsInvolve in reviewing and identifying potential gap during Risk AssessmentIdentify opportunities to improve productivities by leveraging tools available, brainstorming for the new workflow and implementingInvolve in implementing Governance, Risk and Compliance (GRC)...


  • Singapore FCM Full time

    **Job no**: 511715 **Brand**: FCM **Work type**: Full time **Location**: Singapore **Categories**: Information & Technology **The GRC Security Analyst Singapore** will plan and implement policies, procedures, standards, and controls to govern the protection of the company’s information systems, networks, and data. The GRC security analyst will stay up to...

  • Lead Ai Security

    1 week ago


    Singapore Singtel Full time

    **Lead AI Security & Governance Specialist**: **Date**:9 Jul 2025 **Location**: Singapore, Singapore **Company**:Singtel Group - An empowering career at Singtel begins with a Hello. Our purpose, to Empower Every Generation, connects people to the possibilities they need to excel. Every "hello" at Singtel opens doors to new initiatives, growth, and BIG...


  • Singapore AIA Full time

    At AIA we’ve started an exciting movement to create a healthier, more sustainable future for everyone. - As pioneering innovators for over 100 years, we’re now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live...


  • Singapore Willet Partners Full time

    **Key Responsibilities** - **Policy Implementation and Governance**:Oversee the adoption and execution of global information security policies and procedures across the APAC region. - **Risk Awareness and Training**:Design and deliver training and communication programs to cultivate a culture of risk awareness and compliance. - **Third-Party Risk...