
AVP/VP (12 months contract), Cybersecurity (Governance, Risk & Compliance)
4 days ago
Location: Singapore, SG,
Group: Corporate Group
Department: Cybersecurity
Section: Cybersecurity
Job Type: Contract
Temasek is a global investment company headquartered in Singapore, with a net portfolio value of S$389 billion (US$288b, €267b, £228b, RMB2.08t) as at 31 March 2024. Our Purpose “So Every Generation Prospers ” guides us to make a difference for today’s and future generations.
You'll be working in the Cybersecurity Department under the Governance, Risk, and Compliance unit, which reports directly to the CISO. The increasing reliance of businesses on technology means that cybersecurity and IT risk management is a strategically important function within Temasek.
Responsibilities- Operationalizing the IT risk management framework, policies and standards, as well as conduct of compliance assurance activities, which include identifying and hunting for gaps and non-compliances in systems and other suppliers/vendors we use for IT operations.
- Maintain cybersecurity and IT risk management policies and standards, third-party vendor management as well as system criticality frameworks for the firm to ensure effective IT risk compliance and cyber defence.
- Modernise and optimize conduct of governance and oversight role through adoption of new/emerging technology and application to enable real-time update and maintenance of risk register, third party vendor assessment, leveraging on advanced analytics for trending and compliance monitoring.
- Ensure the conduct of risks assessment and implementation of secure System Development Life cycle (SDLC) by Technology and Business units in their development and maintenance of IT infrastructure and applications.
- Conduct periodic and ad-hoc assessments to monitor compliance with cybersecurity and technology policies and security controls design and operating effectiveness; review cybersecurity and technology risks; audit and operational risk issues to identify root causes and trends, and recommend appropriate remediation.
- Provide independent IT and cyber risk management advice to the business, technical & operations groups to contribute towards secure implementation of technology initiatives.
- Support the review and enhancement of third-party vendor risk management and establish a holistic framework and structure to manage this risk. Contribute to assessment of vendor risks via pre-contract due diligence processes and ensure development of mitigation plans by Business units.
- Identify and assess the impact of technology risks on projects and ensure effective controls are established by business/technology units to mitigate technology risks arising from change requests, new initiatives and processes.
- Proactively partner risk owners and manage risks to minimize impact from incidents, breaches or non-compliance. Conduct regular communication and refresher trainings to maintain a good level of cybersecurity and information risk awareness.
- Support incident response and carry out any other tasks as assigned.
- At least 7 years of relevant experience in the field of cybersecurity and IT risk management, policy formulation, governance oversight, audits and risk management.
- Bachelor degree (and higher) in information security, engineering, cybersecurity and related field. Professional information security certifications such as CISA, CRISC, CISSP, CCSK/CCSP, CGEIT, CDPSE, are an advantage.
- Possess strong prior experience and knowledge in cyber and IT standards and policy review, oversight and governance, risk management and audit. Experience in cyber strategy and policy formulation and cyber programme execution will be an advantage.
- Strong technical background is important, with proven ability in technical security design and implementation.
- Possess cyber domain knowledge across areas such as AI, cybersecurity technology architecture and solutioning, SOC/MSS, application & infrastructure security, data & information protection, supply chain security, cyber architecture, quantum, cloud computing security and has knowledge of cyber regulations and compliance.
- Good knowledge in industry security practices, frameworks, and standards such as MAS TRM, ISO27001, Cybersecurity Code of Practice, and NIST Cybersecurity Framework including emerging AI related requirements and standards.
- Strong communication, interpersonal and leadership skills, with proven ability to manage multiple priorities, drive project teams and collaborate across business units and partners to achieve desired end-goals.
-
VP/SVP, Operational Risk Management
4 days ago
Singapur, Singapore GIC Full timeJoin to apply for the VP/SVP, Operational Risk Management (contract) role at GIC Join to apply for the VP/SVP, Operational Risk Management (contract) role at GIC Get AI-powered advice on this job and more exclusive features. GIC is one of the world’s largest sovereign wealth funds. With over 2,000 employees across 11 locations around the world, we...
-
Singapur, Singapore DBS Bank Full timeVP, Technology Risk Manager, SRE&Governance, Group Technology Join to apply for the VP, Technology Risk Manager, SRE&Governance, Group Technology role at DBS Bank VP, Technology Risk Manager, SRE&Governance, Group Technology 1 day ago Be among the first 25 applicants Join to apply for the VP, Technology Risk Manager, SRE&Governance, Group Technology role...
-
Singapur, Singapore DBS Bank Full timeAVP/VP, Sales and Trading Governance-Centre of Excellence, Chief Operating, Digital Business & Strategy, GFM Join to apply for the AVP/VP, Sales and Trading Governance-Centre of Excellence, Chief Operating, Digital Business & Strategy, GFM role at DBS Bank AVP/VP, Sales and Trading Governance-Centre of Excellence, Chief Operating, Digital Business &...
-
AVP - IT Incident Manager
4 days ago
Singapur, Singapore Mizuho Full timeJoin to apply for the AVP - IT Incident Manager role at Mizuho Join to apply for the AVP - IT Incident Manager role at Mizuho Get AI-powered advice on this job and more exclusive features. We are seeking an experienced and results-driven Incident Manager to oversee and lead incident management processes. To ensure timely resolution of incidents,...
-
AVP, Cybersecurity Risk
4 days ago
Singapur, Singapore DBS Bank Full timeAVP, Cybersecurity Risk & Control, ISS, Group Technology Join to apply for the AVP, Cybersecurity Risk & Control, ISS, Group Technology role at DBS Bank . Business Function Group Technology enables and empowers the bank with an efficient, nimble and resilient infrastructure through a strategic focus on productivity, quality & control, technology, people...
-
Governance, Risk and Compliance Specialist
4 days ago
Singapur, Singapore AvePoint Full timeGovernance, Risk and Compliance Specialist About AvePoint Securing the Future. AvePoint is a global leader in data management and data governance, and over 21,000 customers worldwide rely on our solutions to modernize the digital workplace across Microsoft, Google, Salesforce and other collaboration environments. AvePoint’s global channel partner program...
-
Principal/Lead Consultant
4 days ago
Singapur, Singapore National Trades Union Congress (NTUC) Full timePrincipal/Lead Consultant (Cybersecurity), Transformation Office Principal/Lead Consultant (Cybersecurity), Transformation Office Pioneering workers' rights since 1961, the National Trades Union Congress (NTUC) unites 59 trade unions, seven trade associations, 12 social enterprises, and other enterprise partners as we create better lives for workers here in...
-
VP, Third Party Risk Management
4 days ago
Singapur, Singapore Empower Partners Singapore Full timeDirect message the job poster from Empower Partners Singapore Associate Director, Financial Services | Risk and Compliance, Financial Services Executive Search Our client is a leading financial institution with a strong regional presence, providing a broad range of products and services across capital markets. Recognised for its innovation and resilience,...
-
Governance, Risk, and Compliance
4 days ago
Singapur, Singapore Kulicke & Soffa Full timeGovernance, Risk, and Compliance (GRC) Lead Governance, Risk, and Compliance (GRC) Lead Get AI-powered advice on this job and more exclusive features. The GRC Lead will be responsible for responsible for initiating, running, and managing information security governance, risk management, audits, and compliance with SOX and other relevant regulations....
-
AVP/Director Risk Management
4 days ago
Singapur, Singapore Manulife Full timeJoin to apply for the AVP/Director Risk Management role at Manulife Join to apply for the AVP/Director Risk Management role at Manulife Get AI-powered advice on this job and more exclusive features. Take on a pivotal role as AVP/Director of Risk Management at Manulife Singapore, where you'll have the opportunity to shape and enhance our risk management...