Insider Threat Lead, Security Governance and Compliance Technology
3 days ago
Insider Threat Lead, Security Governance and Compliance Location: Team: Security Employment Type: Regular Job Code: A44530 Share this listing: Overview The Internal Threat Management team is responsible for managing and mitigating information security risks posed within the organisation. This team ensures that risk management and governance strategies are up to date and aligned across the organisation, performing regular risk assessments and working with stakeholders from cross-functional teams. The team also manages the optimization, operation, training, and data analysis of the internal threat platform and UEBA (User and Entity Behavior Analytics) and DLP (Data Loss Prevention) platforms within the company. Responsibilities Maintain a robust risk governance framework that supports internal threat management, ensuring it is aligned with the organization’s overall risk management and compliance strategies. Establish and manage processes for risk assessment, control testing, and risk mitigation related to internal threats, ensuring that these processes are effective and aligned with industry best practices. Develop and define key risk metrics to assess the effectiveness of internal threat detection and mitigation strategies. Continuously monitor and analyze internal threat data, identifying emerging trends, patterns, and areas of concern related to insider threats. Develop and deliver regular risk reports for senior management, providing insights on the status and effectiveness of internal threat programs, key risk indicators, and threat trends. Work closely with internal stakeholders to ensure that policies and procedures are properly followed and that risk management processes are integrated across departments. Qualifications Minimum Qualifications Bachelor's degree or above, with a preference for majors in Information Security, Computer Science, Information Technology, privacy, risk or a related field. Professional certifications such as CISSP, CISM, CRISC, or CGEIT are highly desirable. Minimum of 5 years of work experience, with at least 3 years of team management experience and a preference for experience in risk management and insider threat program. Strong experience in data analysis and the ability to extract insights from complex risk data to identify patterns and trends. Expertise in developing dashboards and reports that clearly communicate complex risk data to senior management and non-technical stakeholders. Proficient in risk governance frameworks and best practices for internal threat management, including risk assessments, control testing, and compliance. Solid understanding of insider threat risks, including data exfiltration, privilege abuse, policy violations, and insider fraud. Strong communication skills, with the ability to translate complex risk-related information into clear, actionable insights for diverse audiences. Preferred Qualifications Familiarity with regulatory requirements related to data protection and internal threat management (e.g., GDPR, CCPA, HIPAA). Experience with designing, implementation and operation of commercial or in-house UBA/UEBA solutions (e.g., Splunk, Exabeam) are highly desirable. Experience with threat modeling methodologies (e.g., STRIDE, PASTA) to analyze and assess security threats within software applications, systems, and networks. Job Information About Us Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok, Lemon8, CapCut and Pico as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create content. Why Join ByteDance Inspiring creativity is at the core of ByteDance's mission. Our innovative products are built to help people authentically express themselves, discover and connect – and our global, diverse teams make that possible. Together, we create value for our communities, inspire creativity and enrich life - a mission we work towards every day. As ByteDancers, we strive to do great things with great people. We lead with curiosity, humility, and a desire to make impact in a rapidly growing tech company. By constantly iterating and fostering an "Always Day 1" mindset, we achieve meaningful breakthroughs for ourselves, our Company, and our users. When we create and grow together, the possibilities are limitless. Join us. Diversity & Inclusion ByteDance is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At ByteDance, our mission is to inspire creativity and enrich life. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too. #J-18808-Ljbffr
-
Singapur, Singapore ByteDance Full timeInsider Threat Lead, Security Governance and Compliance 1 day ago Be among the first 25 applicants Responsibilities About the Team The Internal Threat Management team is responsible for managing and mitigating information security risks posed within the organisation. To ensure that the company's risk management and governance strategies are up to date and...
-
Singapur, Singapore BYTEDANCE PTE. LTD. Full timeResponsibilities About the Team The Internal Threat Management team is responsible for managing and mitigating information security risks posed within the organisation. To ensure that the company's risk management and governance strategies are up to date and aligned across the organisation, this team is responsible for regular industry benchmarking and...
-
Singapur, Singapore ByteDance Full timeInsider Risk Specialist, Security Governance and Compliance Location: Team: Security Employment Type: Regular Job Code: A81144 Share this listing: Responsibilities About the TeamThe team is responsible for managing and mitigating information security risks posed within the organisation. To ensure that the company's risk management and governance strategies...
-
Security Operations Associate
7 days ago
Singapur, Singapore JPMorganChase Full timeSecurity Operations Associate - Data Loss Prevention and Insider Threat Analyst Join to apply for the Security Operations Associate - Data Loss Prevention and Insider Threat Analyst role at JPMorganChase Security Operations Associate - Data Loss Prevention and Insider Threat Analyst Join to apply for the Security Operations Associate - Data Loss Prevention...
-
Singapur, Singapore Bank of America Full timeOverview Vice President, Insider Threat Investigations, Global Information Security, Australia. Bank of America seeks a veteran insider threat investigator to join the Cyber Security Operations (CSO) function within Global Information Security. The role conducts data analysis of insider threat auditing and monitoring resources, performs investigations, and...
-
Singapur, Singapore Bank of America Singapore Full timeJob Description Bank context : At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work is core to how we drive Responsible Growth. This...
-
Security Operations Associate
4 weeks ago
Singapur, Singapore JPMorganChase Full timeSeize the opportunity to elevate cybersecurity by leveraging your expertise in threat analysis and incident response to safeguard critical data and systems. As a Security Operations Associate - Data Loss Prevention and Insider Threat within the Cybersecurity team, you will be pivotal in safeguarding the organization's digital assets and infrastructure. Your...
-
Manager, Information Technology
7 days ago
Singapur, Singapore Millennium Hotels and Resorts Full timeOverview The Manager, Information Technology (Cloud Security and Collaboration) is responsible for leading and managing security across Microsoft 365 services, identity protection, email security, and cloud platform governance. With a focus on strengthening the security of collaboration tools, coordinating threat detection and response, and overseeing...
-
Agency Chief Information Security Officer
2 weeks ago
Singapur, Singapore Singpass Full timeWhat the role is GovTech is the lead agency driving Singapore’s Smart Nation initiatives and public sector digital transformation. As the Centre of Excellence for Infocomm Technology and Smart Systems (ICT & SS), GovTech develops the Singapore Government’s capabilities in Data Science & Artificial Intelligence, Application Development, Smart City...
-
Agency Chief Information Security Officer
2 weeks ago
Singapur, Singapore Economic Development Board Full timeWhat the role is: (What the role is) GovTech is the lead agency driving Singapore’s Smart Nation initiatives and public sector digital transformation. As the Centre of Excellence for Infocomm Technology and Smart Systems (ICT & SS), GovTech develops the Singapore Government’s capabilities in Data Science & Artificial Intelligence, Application...