Tdi - Technology Information Security Officer

1 day ago


Singapore Deutsche Bank Full time

**Details of the Division and Team**:
TISO is assigned a set of Application Software Assets and associated Databases, Infrastructure Software Assets, IT Services, Hardware Assets or IT Assets. TISO assumes ownership for these assets from an IT Security perspective. It includes IT services outsourced to an external vendor and TISO is responsible to ensure compliance. TISO executes all tasks that are assigned to this role based on defined and approved internal policy, procedure, processes & controls.

**What we will offer you**:
A healthy, engaged and well-supported workforce is better equipped to do their best work and, more importantly, enjoy their lives inside and outside the workplace. That’s why we are committed to providing an environment with your development and wellbeing at its center.

**You can expect**:

- Flexible benefits plan including virtual doctor consultation services
- Comprehensive leave benefits
- Gender Neutral Parental Leave
- Flexible working arrangements
- 25 days of annual paid leave, plus public holiday & Flexible Working Arrangement

**Your key responsibilities**:
TISO’s responsibilities within the assigned Division or Function comprise:

- To accept the ownership and responsibility for the information security of the assigned IT Assets.
- To carry out the Information Security Risk and Compliance Assessments for the assigned IT Assets and processes.
- To remain fully trained and skilled by completing the required Information Security training provided by CSO or as requested by the Principal TISO or the Divisional TISO.
- To provide guidance to key role holders such as ITAOs (IT Asset Owner) and ISOs (Information Security Officer) to develop a secure environment by evaluating the IT Security requirements as early as possible in the system development life cycle to select the applicable information security controls for implementation.
- To guide ITAOs on the implementation of compensating controls in case of deviations from the applicable information security controls.
- To approve the access control and user authorization setup of the assigned IT Assets.
- To execute and document periodical recertification of access rights in compliance with the DB Group Identity and Access Processes.
- To cooperate with key role holders such as ITAOs and ISOs to put monitoring capabilities for IT Assets in place. To review the output of the monitoring jointly with the key role holders such as ITAOs and ISOs to avoid degradation of the required security level.
- To analyze and review the configuration of IT Assets where required and to advise on the remediation of gaps according to the applicable Information Security policies.
- To contribute to the Information Security Incident Management Process in the case of a security breach for their IT Assets, if requested.
- To assess and document the IT Risk associated with outsourcing engagements with external vendors
- To actively participate in the discussion with external vendors to ensure that proper due diligence is performed on IT Risk & Controls as per Bank’s and Regulatory framework
- To maintain the Information Security related documentation of assigned IT Assets in the DB Group IT Asset inventory.
- First point of escalation and conflict resolution internal as well as with central functions or parties outside DB (eg. Regulator).
- Pre-empt changes in the legal/ regulatory environment and support and advise senior management of potential impacts.
- Oversees the performance and quality assurance of assessment executions for upcoming audits and/or execution of legal/ regulatory.
- Ensures appropriate senior management awareness/oversight to follow-up on action items to resolve identified issues.

**Your skills and experience**:

- 7 years’ experience in Information Security risk and compliance management
- Should possess a strong technical knowledge & experience in Cyber security, shell scripting, Unix/Windows/Linux systems, Oracle, SQL, Network protocols & security, Multi-factor authentication
- Should possess a strong experience in performing analysis/review/monitoring from cyber security risk management perspective, deeper understanding and exposure on MAS, HKMA TRM guidelines, OSPAR and Technology outsourcing
- Expert knowledge & experience in the following fields: Information Security, Data Protection, Software Development, Audit Management, DevOps Security, Broker solutions, Designing alert mechanisms & Monitoring, Recertification.
- Strong understanding of MAS & HKMA TRM guidelines.
- Strong understanding of MAS & HKMA Outsourcing guidelines
- Strong experience in Vendor Risk Management
- Excellent analytical skills to evaluate problem, root cause and suggest a solution
- Experience in translating very complex topics in clear and crisp messages/ visions
- Fluent in English (written/verbal)

**Technical skill**:
Must have a strong experience and knowledge in the following.
- Cyber security, HSM, Cryptography, encryption/decryption so



  • Singapore Deutsche Bank Full time

    **TDI - Technology Information Security Officer (TISO) - VP**: **Job ID**:R0381168 **Full/Part-Time**:Full-time **Regular/Temporary**:Regular **Listed**:2025-04-15 **Location**:Singapore **Position Overview**: **Details of the Division and Team**: TISO is assigned a set of Application Software Assets and associated Databases, Infrastructure Software...


  • Singapore Deutsche Bank Full time $90,000 - $120,000 per year

    Job Description:Details of the Division and Team:TISO is assigned a set of Application Software Assets and associated Databases, Infrastructure Software Assets, IT Services, Hardware Assets or IT Assets. TISO assumes ownership for these assets from an IT Security perspective.It includes IT services outsourced to an external vendor and TISO is responsible to...


  • Singapore Deutsche Bank Full time

    **TDI - Information Security Analyst - AVP**: **Job ID**:R0364090 **Full/Part-Time**:Full-time **Regular/Temporary**:Regular **Listed**:2024-12-12 **Location**:Singapore **Position Overview**: **Details of the Division and Team**: We are looking for a knowledgeable Information Security Analyst to operating as a member of the Chief Security Office (CSO)...


  • Singapore Deutsche Bank Full time

    Join to apply for the TDI - Technology Service Analyst - NCT role at Deutsche


  • Singapore SMART INFORMATION MANAGEMENT SYSTEMS PRIVATE LIMITED Full time

    **Key Responsibilities**: **Cybersecurity Risk Assessment & Mitigation**: - **Cyber Risk Assessment**:Conduct comprehensive cyber risk assessments in support of technology initiatives, identifying IT-related risks and recommending appropriate security controls to mitigate those risks. - **Risk Monitoring & Management**:Continuously track and manage risk...


  • Singapore Deutsche Bank Full time

    Details of the Division and Team : TISO is assigned a set of Application Software Assets and associated Databases, Infrastructure Software Assets, IT Services, Hardware Assets or IT Assets. TISO assumes ownership for these assets from an IT Security perspective. It includes IT services outsourced to an external vendor and TISO is responsible to ensure...


  • Singapore Deutsche Bank Full time

    Details of the Division and Team : TISO is assigned a set of Application Software Assets and associated Databases, Infrastructure Software Assets, IT Services, Hardware Assets or IT Assets. TISO assumes ownership for these assets from an IT Security perspective. It includes IT services outsourced to an external vendor and TISO is responsible to ensure...


  • Singapore JONES LANG LASALLE TECHNOLOGY SERVICES PTE. LTD. Full time

    The JLLT Business Information Security Officer (BISO) serves as the trusted advisor to the JLL business units for all information security issues. This role is a senior member of the JLLT Global Information Security team that works collaboratively with other information security leaders (e.g., Cyber Defense, Application Security, Property Security, etc.) and...


  • Singapore Citi Full time

    Support ICG Asia Sr. Technology Information Security Officer to govern and manage information security operations for ICG Technology business in Asia. Lead Asia ICG Technology Information Security team engagement in internal/external audits and regulatory enquiries. Manage Third Party Information Security Assessments and Business Process Outsourcing reviews....


  • Singapore Deutsche Bank Full time

    **Details of the Division and Team**: Everyday DB observes thousands of cyber security intrusion attempts. Deutsche Bank’s COO Chief Security Office (CSO) integrates both Corporate Security (CS) and Information Security (CISO) as both teams are responsible for mitigating these risks. The CSO team enables the business of Deutsche Bank by providing agile...