jobs in PEAK ENGINEERING & CONSULTANCY PTE. LTD.

Kerja Sepenuh Masa Cybersecurity Analyst – AI - Automation [CCP for ICT Professionals (Cybersecurity), Gaji tinggi SGD 8,000 di PEAK ENGINEERING & CONSULTANCY PTE. LTD. North-east Region (Singapore) - Maukerja

Cybersecurity Analyst – AI - Automation [CCP for ICT Professionals (Cybersecurity)

PEAK ENGINEERING & CONSULTANCY PTE. LTD.

Ang Mo Kio, North-east Region (Singapore)

Kongsi
Simpan

Lokasi Kerja

  • Ang Mo Kio North-east Region (Singapore) Singapore

Penerangan Kerja

Tanggungjawab

1. Job Purpose

The Cybersecurity Analyst – AI &Automation is responsible for supporting the Company's cybersecurity operations, information security controls, cyber risk management, data protection and secure adoption of AI and automation technologies.

The role will support the protection of the Company's IT systems, networks, endpoints, cloud services and business information, while identifying opportunities to use AI and workflow automation to improve cybersecurity, compliance monitoring and operational efficiency.

The employee will undergo structured on-the-job development to strengthen practical competencies in cybersecurity operations, cyber risk management, incident response, vulnerability management, security governance and secure AI-enabled automation.

A. Cybersecurity Monitoring & Operations

Monitor security alerts, system logs, endpoints and other security events for potential cybersecurity threats.

Identify, analyse and escalate suspicious activities and potential cybersecurity incidents.

Support monitoring of endpoint, network, email and cloud security controls.

Assist in detecting phishing, malware, unauthorised access and compromised accounts.

Maintain records of cybersecurity alerts, incidents, investigations and corrective actions.

Coordinate with external IT and cybersecurity service providers where necessary.

B. Cyber Risk & Vulnerability Management

Conduct and support cybersecurity risk assessments across the Company's IT environment.

Identify security vulnerabilities, control weaknesses and potential cyber risks.

Coordinate vulnerability remediation and track outstanding corrective actions.

Maintain cybersecurity risk and vulnerability registers.

Assist in assessing security risks associated with new systems, applications, vendors and technology changes.

Monitor remediation deadlines and escalate overdue or high-risk issues.

C. Security Controls & Access Management

Support implementation and review of cybersecurity controls, including user access, passwords, multi-factor authentication, endpoint protection and firewall controls.

Conduct periodic user access and privilege reviews.

Support secure employee onboarding, transfer and offboarding processes.

Review administrative and privileged access where applicable.

Monitor compliance with the Company's IT and cybersecurity requirements.

D. Cybersecurity Incident Response

Assist in responding to cybersecurity incidents such as phishing, malware, compromised accounts, unauthorised access and suspected data breaches.

Conduct preliminary investigations and support evidence collection.

Escalate significant cybersecurity incidents to Management.

Coordinate containment, recovery and corrective actions with relevant internal and external parties.

Maintain incident registers and supporting documentation.

Participate in post-incident reviews and track preventive actions.

E. Data Protection & Information Security

Support appropriate safeguards for personal, confidential and commercially sensitive information.

Assist with cybersecurity controls supporting the Company's PDPA and applicable data-protection requirements.

Review controls relating to data access, storage, transmission, retention and disposal.

Support information-security assessments and compliance reviews.

Assist in maintaining appropriate documentation and evidence for audits and management reviews.

F. AI & Process Automation

Identify suitable opportunities to use AI and workflow automation to improve cybersecurity, compliance and internal operational processes.

Develop and maintain approved automated workflows for security alerts, compliance tracking, document management and management reporting.

Support automation of repetitive cybersecurity and IT administration activities.

Explore appropriate AI-assisted applications for threat analysis, phishing identification, security-event triage, vulnerability management and reporting.

Develop automated dashboards for cybersecurity risks, incidents, vulnerabilities and remediation actions.

Support integration between approved business applications, cybersecurity systems and workflow automation platforms.

Test automated workflows before deployment and periodically review their accuracy, security and effectiveness.

Maintain process documentation, access permissions, data sources, control points and change records for automated workflows.

G. AI Governance & Security

Support the Company's secure and responsible adoption of generative AI and other AI technologies.

Identify cybersecurity and data-protection risks arising from the use of public or third-party AI platforms.

Assist in establishing controls for confidential information, personal data and company information used with AI systems.

Maintain an inventory of approved AI tools and AI-enabled workflows where required.

Support access controls, human-review requirements and approval processes for AI-enabled activities.

Assist in developing internal AI acceptable-use guidelines and employee awareness materials.

Monitor emerging AI-related cybersecurity risks and recommend appropriate safeguards.

H. Cybersecurity Governance &Documentation

Develop and maintain cybersecurity policies, SOPs, guidelines and operational procedures.

Maintain cybersecurity registers, records and supporting evidence.

Support internal and external audits, customer requirements and certification activities.

Prepare cybersecurity dashboards and periodic reports for Management.

Track cybersecurity action items, responsible persons, deadlines and closure status.

Support periodic management reviews of cybersecurity risks and controls.

I. Cybersecurity Awareness

Support employee cybersecurity awareness programmes.

Prepare guidance on phishing, passwords, data protection, AI usage and other cybersecurity risks.

Coordinate cybersecurity awareness activities and exercises.

Promote good cybersecurity and information-handling practices throughout the organisation.

J. Business Continuity & Recovery

Support IT backup, recovery and business-continuity controls.

Assist with periodic testing of backup and recovery procedures.

Maintain recovery documentation and records.

Track gaps identified during recovery testing and follow up on corrective actions.

3. Requirements

Diploma or Degree in Information Technology, Computer Science, Cybersecurity, Engineering or a related discipline; candidates with relevant transferable technical experience may also be considered.

Strong interest in developing a professional career in cybersecurity.

Basic understanding of IT systems, computer networks, operating systems and information-security principles.

Interest in AI, workflow automation and emerging technologies.

Good analytical, problem-solving and troubleshooting skills.

Ability to maintain accurate technical documentation and records.

Good communication and stakeholder coordination skills.

Ability to handle confidential and sensitive information appropriately.

Willingness to undergo structured cybersecurity training and on-the-job development.

4. Preferred Knowledge / Skills

Knowledge or exposure in the following areas would be advantageous:

Cybersecurity monitoring and incident response

Security Operations Centre (SOC) concepts

Endpoint Detection and Response (EDR)

Vulnerability management

Network and firewall security

Microsoft 365 and cloud security

Identity and access management

Multi-factor authentication

Cyber risk assessment

Phishing and malware analysis

Backup and disaster recovery

PDPA and information-security principles

ISO/IEC 27001 concepts

Generative AI and Large Language Model (LLM) applications

Microsoft Power Automate / Power Platform or similar automation tools

API and system integration concepts

AI governance and responsible AI practices

Basic Python, PowerShell or other scripting knowledge would be advantageous

5. Key Performance Indicators

Performance may be assessed based on:
Timely monitoring and escalation of cybersecurity alerts and incidents.

Completion of scheduled security, vulnerability and access reviews.

Timely closure of cybersecurity remediation actions.

Accuracy and completeness of cybersecurity records and documentation.

Effectiveness of cybersecurity incident response and follow-up.

Completion of cybersecurity risk assessments.

Implementation of approved cybersecurity improvements.

Development of appropriate AI and workflow automation solutions.

Effectiveness and reliability of implemented automated workflows.

Employee cybersecurity and AI-security awareness activities.

Compliance with cybersecurity policies and procedures.

Progress against the employee's structured training and development plan.

6. Training & Development

The employee will undergo structured training and On-the-Job Training in areas including cybersecurity operations, security monitoring, cyber risk assessment, vulnerability management, incident response, information-security controls, cybersecurity governance and secure AI-enabled automation.

The employee is expected to progressively develop the competencies required to independently manage assigned cybersecurity responsibilities and support the Company's ongoing cybersecurity and digital-transformation initiatives.

PEAK ENGINEERING & CONSULTANCY PTE. LTD.

Peringatan Penting

Jangan pernah kongsikan maklumat bank atau kad kredit anda semasa memohon pekerjaan. Elakkan membuat sebarang pembayaran atau mengisi survey yang tidak berkaitan. Jika ada yang mencurigakan, sila laporkan iklan pekerjaan ini segera.

Lebih Lanjut