IT Security Officer - JN
The Information Technology Security Officer (ITSO) is responsible for supporting the organization's cybersecurity governance, risk management, incident response, and security operations activities. The role ensures that IT systems, applications, and infrastructure are protected in accordance with organizational security policies, regulatory requirements, and industry best practices.
Key Responsibilities Security Governance & ComplianceDevelop, maintain, and review information security policies, standards, procedures, and implementation roadmaps.
Support the establishment and continuous improvement of cybersecurity governance frameworks and security management practices.
Conduct security risk assessments and recommend mitigation measures to address identified risks.
Ensure compliance with applicable cybersecurity policies, standards, and regulatory requirements.
Monitor security controls and provide recommendations to enhance the organization's security posture.
Support the monitoring, detection, investigation, and response of cybersecurity incidents.
Coordinate with internal stakeholders and external service providers to manage and resolve security incidents.
Participate in cybersecurity exercises, simulations, and readiness assessments.
Investigate security events and perform root cause analysis to identify corrective and preventive actions.
Review security alerts, reports, and audit findings, ensuring timely follow-up and remediation.
Monitor emerging cyber threats, vulnerabilities, and security trends.
Assess the impact of identified threats on the organization's environment and recommend mitigation strategies.
Support vulnerability management activities, including assessment, tracking, and remediation verification.
Evaluate security technologies and solutions to improve operational effectiveness and risk management.
Ensure security monitoring coverage across relevant infrastructure components, systems, and applications.
Maintain visibility of assets under security monitoring and support onboarding of new assets into security platforms.
Review security dashboards and reports, providing regular updates to stakeholders on risks and remediation status.
Support continuous improvement of security monitoring and incident detection capabilities.
Engage business, project, and technical teams on cybersecurity requirements and security best practices.
Conduct regular security reviews and recommend improvements to strengthen security controls.
Coordinate with external vendors, service providers, regulatory bodies, and industry partners on cybersecurity-related matters.
Provide cybersecurity advice and guidance to project teams during solution design and implementation.
Support cybersecurity initiatives, audits, assessments, and special projects as assigned.
Contribute to the development of security awareness and cybersecurity improvement programs.
Perform other cybersecurity-related duties as required.
Bachelor's Degree in Computer Science, Information Technology, Cybersecurity, Information Security, or a related discipline.
Minimum 7-10 years of experience in cybersecurity, information security, or IT infrastructure security roles.
Experience in security governance, risk management, security operations, or incident response.
Familiarity with enterprise security technologies and cybersecurity frameworks.
Experience working with cross-functional teams and external service providers.
Knowledge of:
Security Operations (SOC)
Incident Response
Vulnerability Management
Risk Assessment
Security Monitoring Tools
Endpoint, Network, and Infrastructure Security
Identity and Access Management (IAM)
Cloud Security concepts
Familiarity with security investigations and digital forensic processes is advantageous.
Skills & CompetenciesStrong analytical, problem-solving, and critical-thinking skills.
Good written, presentation, and communication skills.
Ability to engage stakeholders at different levels of the organization.
Strong organizational and documentation skills.
Ability to work independently and collaboratively in a team environment.
Applicants possessing one or more of the following certifications will have an advantage:
Certified Information Systems Security Professional (CISSP)
Certified Information Security Manager (CISM)
GIAC Certified Incident Handler (GCIH)
Certified Ethical Hacker (CEH)
CompTIA Security+
Certified Information Systems Auditor (CISA)
GIAC Security Essentials (GSEC)
GIAC Security Essentials (GSEC)
We are seeking one (1) IT Security Officer (ITSO) with minimum 7years ofrelevant experience in cybersecurity,information security, IM8 cybersecurity policy development andimplementation.
SINGAPOREANS ONLY
**We regret to inform that only shortlisted candidates will be notified. Personal data collected will be used for recruitment purposes**
Similar roles
Senior Brand Manager - Rare Disease
AstraZeneca·Singapore, Singapore
SENIOR BRAND MANAGER Do you have expertise in, and passion for, Marketing? Would you like to apply your expertise to impact the lives of patients in a company that follows the science and turns ideas into life changing medicines? Then AstraZeneca might be the one for you! ABOUT ASTRAZENECA AstraZeneca is a global, science-led, patient-focused biopharmaceutical company that focuses on…
- Full-time
- Tech.Pass — self-sponsored, 2-yr
Senior / Project Engineer (Based in Toa Payoh)
Sembcorp Industries Ltd·Singapore, Singapore
About Sembcorp Sembcorp is a leading energy and urban solutions provider headquartered in Singapore. Led by its purpose to drive energy transition , Sembcorp delivers sustainable energy solutions and urban developments by leveraging its sector expertise and global track record. About Sembcorp Sembcorp is a leading energy and urban solutions provider headquartered in Singapore. Led by its purpose to drive…
- Full-time
- SGD 720–SGD 1k / yr
- Employment Pass — tied to employer
Automation Manager (Industrial Robotic & Automation)
STAFFKING PTE. LTD.·Singapore, Singapore
Salary: Up to S$7,500 Working Hours: 5 Days Location: East Singapore Employment Type: Full-time About the Role We are looking for an experienced Manager – Robotics & Automation to lead automation and robotics initiatives within a technology-driven engineering and operations environment. The successful candidate will be responsible for identifying automation opportunities, developing and implementing robotic solutions, and driving continuous improvement…
- Full-time
- SGD 804–SGD 1k / yr
- Employment Pass — tied to employer
VP, Structured Receivables & Working Capital Finance
JPMorganChase·Singapore, Singapore
JPMorgan Chase is seeking a Transactor within its Trade & Working Capital team to design and manage structured receivables and inventory finance operations on a global scale. You will work with clients to understand objectives, identify opportunities and tailor structures, from bilateral to syndicated financing, enhancing their working capital flows while coordinating with cross-functional partners across risk, legal and operations.…
- Full-time
- SGD 1k–SGD 2k / yr
- Employment Pass — tied to employer
Solutions Engineer
Johnson Controls·Singapore, Singapore
Who we are: Johnson Controls, a global leader in thermal management, mission-critical building systems, energy efficiency, and decarbonization, helps customers use energy more productively, reduce carbon emissions, and operate with the precision and resilience required in rapidly expanding industries such as data centers, healthcare, pharmaceuticals, advanced manufacturing, and higher education. For more than 140 years, Johnson Controls has delivered performance…
- Full-time
- Tech.Pass — self-sponsored, 2-yr
Group Tax Director
OKX·Singapore, Singapore
Who We Are At OKX, we believe that the future will be reshaped by crypto, and ultimately contribute to every individual's freedom. OKX is a leading crypto exchange, and the developer of OKX Wallet, giving millions access to crypto trading and decentralized crypto applications...
- Full-time
- Tech.Pass — self-sponsored, 2-yr
Junior Controller
0g Labs·Singapore, Singapore
Junior Controller Key Responsibilities Controllership & Accounting Own the full accounting cycle for multiple entities across multiple countries, including accounts payable, accounts receivable, general ledger, and month-end/year-end close. Prepare accurate and...
- Full-time
- Tech.Pass — self-sponsored, 2-yr
AVP, Sales
QCP Capital·Singapore, Singapore
QCP is Asia's leading digital asset partner, empowering clients to seamlessly integrate digital assets into their portfolios. We offer a comprehensive range of solutions - from spot on/off ramping and fixed income strategies to vanilla options and bespoke exotics. ...
- Full-time
- Tech.Pass — self-sponsored, 2-yr