jobs in Hong Leong Finance Limited

Kerja Sepenuh Masa, AVP, IT Security di Hong Leong Finance Limited East Region (Singapore) - Maukerja

AVP, IT Security

Hong Leong Finance Limited

Undisclosed

Tampines, East Region (Singapore)

Kongsi
Simpan

Lokasi Kerja

  • Tampines East Region (Singapore) Singapore

Penerangan Kerja

Tanggungjawab

The role will be responsible for driving secure-by-design assessments and MAS Technology Risk Management Guidelines reviews across system architectures, technology projects, applications, and infrastructure changes. As part of the IT Security team, the role will provide cyber assurance by assessing architecture designs, identifying security and regulatory gaps early in the technology lifecycle, and ensuring appropriate controls are embedded before implementation. You will act as a trusted advisor to IT project, infrastructure and application teams, promoting secure design principles, MAS TRM alignment, and practical risk mitigation across the organization.

The key responsibilities of the role include:


1. Governance Framework Management

Develop and maintain cybersecurity governance framework aligned with MAS Technology Risk Management Guidelines, with emphasis on translating regulatory expectations into practical architecture review criteria, secure design standards, and control requirements.


2. Risk Management & Assessment

Lead secure-by-design assessments for new systems, major enhancements, infrastructure changes, cloud services, APIs, and third-party technology integrations; identify architecture risks, control gaps, and remediation actions before production implementation.


3. Regulatory & Compliance Management

Perform MAS TRM Guidelines reviews for system architectures and technology initiatives, ensuring compliance with regulatory expectations for technology risk governance, security controls, resilience, access management, data protection, and third-party dependencies.


4. Security Policy & Standards Development

Develop and update security policies, standards, architecture review checklists, and secure design guidelines; drive awareness and adoption across IT and business project teams.


5. Third-Party Risk Management

Manage vendor security assessments and review third-party solution architectures to ensure security, resilience, data protection, and MAS TRM-related requirements are adequately addressed.


6. Security Awareness & Training

Promote a secure-by-design culture and conduct practical training for IT teams on architecture risk assessment, MAS TRM considerations, and early security engagement in project delivery.


7. Metrics, Reporting & Dashboards

Track KRIs and security KPIs and prepare GRC reports for management updates.


8. Incident Management Support

Support incident response and maintain documentation for audit purposes.


9. Stakeholder Engagement

Act as a trusted security advisor to project, application, infrastructure, and architecture teams by providing timely guidance on secure design, regulatory alignment, and pragmatic risk mitigation options.


Qualifications & Skills:

  • Bachelor’s degree in Computer Science, Information Security, or related field.
  • 7+ years of experience in cybersecurity roles (security architecture, or GRC).
  • Strong knowledge of security frameworks (ISO 27001, NIST, CIS).
  • Hands-on experience with vulnerability management and compliance monitoring platforms.
  • Familiarity with MAS requirements and secure-by-design principles.
  • Excellent analytical and problem-solving skills.
  • Relevant certifications (e.g., CISSP, CISM, CISA) are a plus.
  • Strong communication and collaboration skills.
  • Proactive mindset with attention to detail.


The successful candidate can expect a competitive package that includes an attractive basic salary, annual bonus and variable bonus. Please submit your detailed resume, including expected salary and contact number.


(We regret that only shortlisted candidates will be notified)

Peringatan Penting

Jangan pernah kongsikan maklumat bank atau kad kredit anda semasa memohon pekerjaan. Elakkan membuat sebarang pembayaran atau mengisi survey yang tidak berkaitan. Jika ada yang mencurigakan, sila laporkan iklan pekerjaan ini segera.

Lebih Lanjut