IT Security Analyst, Governance, Risk and
5 days ago
ABOUT THE NATIONAL INSTITUTE OF EDUCATION (NIE)
The National Institute of Education (NIE), Singapore, is Singapore’s national teacher education institute and we are proud to be an integral part of the nation’s education service. We play a key role in the preparation of teachers and in the provision of teacher professional and school leadership development programmes. We are committed to our vision of being An Institute of Distinction: Leading the Future of Education and our mission to Inspire Learning, Transform Teaching and Advance Research. Read more about NIE
here
Key Responsibilities:
Governance- Coordinate with internal and external audit teams and assist in audit planning.- Help deliver security awareness programs for staff and manage security governance efforts.- Stay updated on IT trends and recommend best practices to align with governance policies.- Support cybersecurity projects to ensure alignment with security objectives.
Risk Management- Assist in identifying and assessing IT risks and managing vulnerabilities and threats.- Support risk management in cybersecurity projects by focusing on threats and vulnerabilities.- Track and monitor audit remediation actions related to risk management.- Measure the effectiveness of security awareness programs to minimize risks from human error.
Compliance- Ensure compliance with internal standards (ISO 27001, ISO 22301) and external regulations.- Facilitate responses to internal and external IT audits.- Participate in audit engagements and report on audit issues and remediation.- Provide ongoing compliance reporting to ensure timely remediation of audit findings.
Requirements:
Educational Qualification(s)- A University Degree in Information Technology, Cybersecurity, Risk Management, or Compliance, or an equivalent qualification.- Desirable Certifications: CISSP, CISM, CISA, CRISC, or other relevant certifications.
Relevant Experience- 3-5 years of experience in Information Security, IT Risk Management, or Compliance, preferably in a higher education or similar environment.- Experience with IT security audits and compliance reviews in regulated industries.- Experience with vendor security assessments and managing third-party security risks.- Experience in security awareness training and working in cross-functional teams.
Knowledge Required-
- Regulatory Standards: Understanding of the Cybersecurity Bill, PDPA, and related security laws.- Risk Management: Knowledge of risk assessments, mitigation strategies, and identifying threats to information systems.- Audit Processes: Understanding security audit processes, compliance, and remediation.-
- GRC Tools: Experience with Governance, Risk, and Compliance platforms and software is advantageous.
Skills and Competencies- Analytical Skills: Ability to analyze security risks and make data-driven decisions.- Communication Skills: Ability to convey technical security concepts to non-technical audiences and document findings.- Problem-Solving: Strong problem-solving capabilities, particularly during security incidents.- Attention to Detail: High focus on detail in audits and risk assessments.- Project Management: Ability to manage multiple projects, prioritize tasks, and meet deadlines.- Team Collaboration: Proven ability to work with cross-functional teams (IT, legal, compliance, vendors).
Other Personal Attributes- Integrity and Confidentiality: High ethical standards and the ability to handle sensitive information.- Proactivity: Ability to act independently and proactively address security challenges.- Adaptability: Capable of adjusting to evolving security threats and changes in regulations.- Resilience under Pressure: Ability to make sound decisions under pressure, particularly during audits or security incidents.
Closing Date
Other Information
Hiring Institution: NIE
-
Singapore SSquad Global Full time $60,000 - $65,000 per yearOn-Premises GRC (Governance, Risk and Compliance) Analyst - (Associate level and not SME level)Governance & Compliance "Develop, implement, and maintain security policies, procedures, and standards in line with industry best practices (ISO 27001, NIST, CIS, etc.).Ensure compliance with regulatory requirements (MAS TRMG, CCoP).Assist in internal audits and...
-
Cyber Security Analyst
3 days ago
Singapore Zone IT Solutions Full timeWe is seeking a talented Cyber Security Analyst based in Singapore. As a Cyber Security Analyst, you will play a key role in ensuring the security and integrity of our organization's data and systems. **Requirements**: **Responsibilities**: - Monitor, detect, and respond to cyber threats and security incidents, - Conduct vulnerability assessments and...
-
Signal Analyst
6 days ago
Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full time**Fusion Signal Analyst** The role will be the first line support of the tactical intelligence function and crisis response initiative that enhances the situational awareness and operational readiness of the Global Security Operations (GSO) leadership and the outputs of the APAC Security Operation Centre (SOC). This is a 24/7 position; hence rotational...
-
Governance Risk Compliance Analyst
5 days ago
Singapore SEKURO OPERATIONS PTE. LTD. Full time**About the Role** As a GRC Analyst, you’ll be at the forefront of our cybersecurity initiatives, working closely with business and tech teams to: Conduct cybersecurity risk assessments using leading global frameworks Help shape cybersecurity roadmaps and policies aligned with real-world business risks Identify and analyse IT and business operational...
-
IT Security Governance Specialist
2 weeks ago
Singapore Housing and Development Board Full timeDescription What the role is: The mission of Housing & Development Board (HDB) is to provide affordable, quality housing and a great living environment where communities thrive. To achieve its mission, HDB aims to be data‑driven to the core and adopt evidence‑based decision making in developing better housing policies service, improving service delivery...
-
Threat Intelligence Analyst
5 days ago
Singapore Emergent Risk International Full time**Threat Intelligence Analyst - Singapore** Emergent Risk International (ERI) is seeking to hire a full-time **Threat Monitoring Specialist **to be embedded on an annual contract with one of our multinational clients in Singapore. **About US**: ERI is a global risk and security intelligence advisory firm headquartered in Dallas, Texas with offices in...
-
IT Security
1 week ago
Singapore ENDOW.US PTE. LTD. Full time**About us**: Endowus is Asia’s leading fee-only digital wealth platform. Headquartered in Singapore, we are the first digital advisor to span both private wealth and public pension savings (CPF & SRS), helping all investors grow their money with expert advice, institutional access to financial solutions, low & fair fees, and a delightful personalised...
-
Data Analyst
2 weeks ago
Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full timeThe role will be the first line of the tactical intelligence initiative that enhances the situational awareness and operational readiness of the Global Security Operations (GSO) leadership and the outputs of the Global Security Operation Centre - APAC (GSOC-APAC). The SOC Analyst is highly motivated, focused and should work well under pressure. Additionally,...
-
Data Analyst
3 days ago
Singapore SECURITY & RISK SOLUTIONS PTE. LTD. Full timeThe role will be the first line of the tactical intelligence initiative that enhances the situational awareness and operational readiness of the Global Security Operations (GSO) leadership and the outputs of the Global Security Operation Centre - APAC (GSOC-APAC). The SOC Analyst is highly motivated, focused and should work well under pressure. Additionally,...
-
Technical Analyst
6 days ago
Singapore Unison Consulting Pte Ltd Full time**Key Responsibilities**: - Ensure compliance with IT security policies, regulatory standards, and audit requirements. - Drive initiatives related to system governance and resiliency improvements. - Conduct risk assessments and support internal/external IT audits. - Coordinate with stakeholders to implement control measures and security enhancements. - Lead...