To develop, implement, and monitor a strategic and comprehensive enterprise information security program for the organization.
Develop, implement, and monitor a strategic and comprehensive enterprise information security program for the organization.
Managing the development and delivery of information security standards, best practices, architecture, and systems to ensure information system security across the enterprise
Assist in the management of all projects in the company’s global information security programme, provide input and analysis at appropriate stage-gates of projects including planning and implementation of the Information Security Committee and Information Security Management Cycle (PDCA) Promotion
Liaising with management, business users and the Information Systems Department to understand business goals, priorities, and information needs, and recommending information security practices and solutions in line with local and global business requirements
Provide leadership to the company’s information security organization
Keep abreast of the current security threat landscape and provide relevant and up to date guidance on proposed information security risks to the business, including guiding and training colleagues to increase skill sets and knowledge
Responsible for consulting with senior management, and the global information security response team in times of a cyber or information security crisis to ensure that the crisis is managed properly, both internally and externally
Advise senior management of changes in the technical, legal and regulatory arenas affecting information security and cybercrime
Conduct regular security reviews to ensure that risk controls are functioning correctly and that use of the company’s systems and processes is conforming with security standards (e.g., NIST)
Degree in Computer Science/Information Technology, Computer Engineering or its equivalent
Recognised Information Security qualifications (eg. CISA, CISM, CISSP, CRISC, GCCC or CGEIT)
5 years or more implementing information security practices within a large, multi-national and diverse organization, including experience of implementing information security within cloud-based environments
Significant and demonstrable experience of building control/compliance frameworks from the ground-up
Extensive knowledge of application, data storage, platform, network and physical security, including the following: access management, security testing and operations as well as secure software development
Strong information system operations skills (e.g. servers, PCs, network, applications, databases)
Strong working knowledge of privacy frameworks and regulations (eg. GDPR)
Good knowledge and usage experience of technical measures for information security (FW / IPS / AV / EDR, etc.)
A solid background in designing and implementing information security solutions
Knowledge of Governance, Risk and Compliance are required
Detailed understanding of NIST essential. In addition, an understanding of other security standards e.g., ISO27001, Cyber Essentials, CIS20, FFIEC is beneficial
Internal audit qualifications and/or experience will be an added advantage
Strong communication, social awareness and good interpersonal skills
To apply, please visit [ Link removed ] and search for Job Reference: 19664
To learn more about this opportunity, please contact Yingying at [ Link removed ]
We regret that only shortlisted candidates will be notified.
GMP Technologies (S) Pte Ltd | EA Licence: 11C3793 | EA Personnel: Lai Yingying | Registration No: R1110239
Help us improve Jobscentral by providing feedback about this job:
Report this Job
Once a job has been reported, we will investigate it further. If you require a response, submit your question or concern to ourTrust and Site Security Team
Job ID: LY19664
privacy and protection,
when applying to a job online, never give your social security number to a prospective employer, provide credit card or bank account information, or perform any sort of monetary transaction.Learn more.
By applying to a job using Jobscentral you are agreeing to comply with and be subject to the Jobscentral
Terms and Conditions
for use of our website. To use our website, you must agree with the
Terms and Conditions
and both meet and comply with their provisions.