Security Manager

4 days ago


Singapur, Singapore ST Engineering Full time

Overview

We are seeking an experienced Security Engineer/Manager to strengthen the security of our enterprise systems, applications, and cloud platforms. In this position, you will lead efforts in security architecture reviews, threat modelling, risk assessments, and the review and analysis of vulnerability assessment and penetration testing reports, with a strong focus on cloud security across SaaS, PaaS, and IaaS environments. This role requires a blend of technical expertise, the ability to interpret and validate security testing outcomes, and strong collaboration skills to work with stakeholders in designing and implementing secure solutions.

Key Responsibilities
  • Perform security architecture reviews for on-premises, cloud (SaaS, PaaS, IaaS), and hybrid environments.
  • Lead threat modelling exercises to proactively identify risks in system designs and application workflows.
  • Conduct risk assessments and provide actionable recommendations aligned with business priorities and compliance standards.
  • Support vulnerability assessments and penetration testing on web apps, APIs, networks, and cloud services.
  • Partner with engineering and DevOps teams to design and implement secure cloud configurations (e.g., AWS, Azure, GCP).
  • Establish and maintain security baselines for SaaS platforms and third-party integrations.
  • Collaborate with stakeholders to ensure alignment with frameworks such as NIST CSF, ISO 27001, OWASP, and CIS Benchmarks.
  • Support incident response investigations and post-incident remediation.
  • Continuously monitor emerging security threats, vulnerabilities, and best practices in cloud security.
Qualifications & Skills Requirements
  • Bachelor’s degree in computer science, cybersecurity, or a related discipline (or equivalent experience).
  • 3–5+ years of experience in security engineering, threat modelling, or cloud security.
  • Strong expertise in SaaS, PaaS, and IaaS security models, including shared responsibility frameworks.
  • Proven ability to review and interpret penetration testing and vulnerability assessment reports, with familiarity in common tools (e.g., Burp Suite, Metasploit, Nessus, Nmap) and vulnerability management platforms.
  • Familiarity with DevSecOps practices, CI/CD pipelines, and infrastructure-as-code (e.g., Terraform, CloudFormation).
  • Experience in hardening and securing workloads on AWS, Azure, or GCP.
  • Industry certifications preferred but not mandatory. (e.g., OSCP, CISSP, CCSK, CCSP, CEH, GIAC).
  • Excellent communication and problem-solving skills, with the ability to translate technical findings into business impact.
  • Familiarity with implementing cryptographic solutions aligned with industry standards such as NIST, ISO/IEC, and FIPS 140-3
What We Offer

A dynamic and inclusive working environment committed to innovation and continuous improvement.

Opportunities for professional development and career progression within a global engineering leader.

Access to cutting-edge tools and technologies to support your work. A collaborative culture that values diverse perspectives and encourages creativity and initiative.

ST Engineering IHQ Pte. Ltd. is dedicated to providing equal employment opportunities and creating a workforce that reflects a variety of backgrounds, perspectives, and experiences. We warmly welcome applicants from all walks of life and are committed to cultivating an inclusive environment for all team members.

If you are passionate about information security and ready to take on a leadership role within a forward-thinking, globally respected organisation, we encourage you to apply for the Manager, GISO position at ST Engineering Hub.

Additional Information
  • We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr

  • Singapur, Singapore PEREGRINE SECURITY PTE. LIMITED Full time

    Overview Responsible and accountable for effectively managing the day-to-day operations / allocated contract sites, and staff by providing the highest quality, complaint-free, and professional security service to its customers Responsibilities Conduct security and safety risk assessment surveys of the assignments Conduct investigations and vet incident...


  • Singapur, Singapore HENDERSON SECURITY SERVICES PTE. LTD. Full time

    Responsibilities Oversee the secure integration of components such as base stations, controllers, and related network elements. Ensure that the integration of both hardware and software follows industry-leading security best practices to prevent unauthorized access and data breaches. Implement strong security protocols in the integration of new features,...


  • Singapur, Singapore HENDERSON SECURITY SERVICES PTE. LTD. Full time

    Job Summary: We are seeking a highly skilled Network & Cybersecurity Engineer with experience in securing enterprise and government infrastructures, including IM8-aligned environments. The ideal candidate will have hands-on expertise in managing firewalls, performing vulnerability assessments, and implementing secure hybrid (on-prem/cloud) network solutions....

  • Security Manager

    4 days ago


    Singapur, Singapore NESST SINGAPORE LIMITED Full time

    About NESST At NESST Singapore Limited , we are dedicated to building thriving, supportive environments for migrant workers.As a leading dormitory operator, we focus not just on providing safe housing, but on promoting well-being, dignity, and community spirit .Through innovation, collaboration, and care, we aim to set the benchmark for modern dormitory...

  • Sales Manager

    4 days ago


    Singapur, Singapore Intelligent Digital Security Full time

    As an Enterprise Sales professional in the field of Cyber Security Services & Products, your primary responsibility will be to drive sales and key account management for a new cyber security platform. You will be tasked with achieving sales targets on a quarter-on-quarter basis, with a focus on managing monthly goals for accurate forecasting. Collaboration...


  • Singapur, Singapore BIPO Full time

    Overview BIPO: Shaping the Future of HR with Innovation and Global Reach At BIPO, we are a global leader in HR services, offering innovative solutions that empower businesses to streamline and scale their operations effortlessly. Our award-winning cloud-based Human Resource Management System (HRMS) revolutionizes HR processes, making them simpler, more...


  • Singapur, Singapore Internal Security Department Full time

    Join to apply for the ICT Infrastructure Project Management role at Internal Security Department . What The Role Is ISD confronts and addresses threats to Singapore’s internal security and stability. For over 75 years, ISD and its predecessor organisations have played a central role in countering threats such as foreign subversive elements, spies, racial...


  • Singapur, Singapore Canonical Full time

    Overview Join to apply for the Security Risk Management Specialist role at Canonical . In security risk management we're looking to harness the power of industry best practice combined with driving new innovation on how we do security risk assessments and modelling. Our security risk management team is the primary owner of the strategy and practices of...


  • Singapur, Singapore Cyber Security Agency of Singapore Full time

    What the role is As a member of the Communications and Engagement team, you will play an instrumental role in communicating CSA's policies and programmes to the public. In partnership with stakeholders from the public and private sectors such as businesses, media outlets and other government agencies, the officer will specialise in managing media relations...

  • Sales Engineer

    4 days ago


    Singapur, Singapore Armis Security Full time

    Overview Armis, the cyber exposure management & security company, protects the entire attack surface and manages an organization’s cyber risk exposure in real time. In a rapidly evolving, perimeter-less world, Armis ensures that organizations continuously see, protect and manage all critical assets - from the ground to the cloud. Armis secures Fortune 100,...