- Tampines East Region (Singapore) Singapore
Lokasi Kerja
Penerangan Kerja
Tanggungjawab
The role will be responsible for driving secure-by-design assessments and MAS Technology Risk Management Guidelines reviews across system architectures, technology projects, applications, and infrastructure changes. As part of the IT Security team, the role will provide cyber assurance by assessing architecture designs, identifying security and regulatory gaps early in the technology lifecycle, and ensuring appropriate controls are embedded before implementation. You will act as a trusted advisor to IT project, infrastructure and application teams, promoting secure design principles, MAS TRM alignment, and practical risk mitigation across the organization.
The key responsibilities of the role include:
1. Governance Framework Management
Develop and maintain cybersecurity governance framework aligned with MAS Technology Risk Management Guidelines, with emphasis on translating regulatory expectations into practical architecture review criteria, secure design standards, and control requirements.
2. Risk Management & Assessment
Lead secure-by-design assessments for new systems, major enhancements, infrastructure changes, cloud services, APIs, and third-party technology integrations; identify architecture risks, control gaps, and remediation actions before production implementation.
3. Regulatory & Compliance Management
Perform MAS TRM Guidelines reviews for system architectures and technology initiatives, ensuring compliance with regulatory expectations for technology risk governance, security controls, resilience, access management, data protection, and third-party dependencies.
4. Security Policy & Standards Development
Develop and update security policies, standards, architecture review checklists, and secure design guidelines; drive awareness and adoption across IT and business project teams.
5. Third-Party Risk Management
Manage vendor security assessments and review third-party solution architectures to ensure security, resilience, data protection, and MAS TRM-related requirements are adequately addressed.
6. Security Awareness & Training
Promote a secure-by-design culture and conduct practical training for IT teams on architecture risk assessment, MAS TRM considerations, and early security engagement in project delivery.
7. Metrics, Reporting & Dashboards
Track KRIs and security KPIs and prepare GRC reports for management updates.
8. Incident Management Support
Support incident response and maintain documentation for audit purposes.
9. Stakeholder Engagement
Act as a trusted security advisor to project, application, infrastructure, and architecture teams by providing timely guidance on secure design, regulatory alignment, and pragmatic risk mitigation options.
Qualifications & Skills:
The successful candidate can expect a competitive package that includes an attractive basic salary, annual bonus and variable bonus. Please submit your detailed resume, including expected salary and contact number.
(We regret that only shortlisted candidates will be notified)
Peringatan Penting
Jangan pernah kongsikan maklumat bank atau kad kredit anda semasa memohon pekerjaan. Elakkan membuat sebarang pembayaran atau mengisi survey yang tidak berkaitan. Jika ada yang mencurigakan, sila laporkan iklan pekerjaan ini segera.