- Experience
- 5+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 2 days ago
- Work mode
- In office
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Role Overview
The Cyber Security Manager will spearhead the organization's initiatives to enhance its cybersecurity defenses and maintain adherence to data privacy laws, including Singapore's Personal Data Protection Act (PDPA). This pivotal role involves overseeing security monitoring tools, steering incident response procedures, advancing cybersecurity awareness programs, managing audits and certifications such as Cyber Trust Mark, and collaborating with cross-functional teams to safeguard IT systems and applications. Furthermore, the manager will work closely with the Data Protection Officer (DPO) to enforce privacy best practices, support audits, and champion data security across the enterprise.
Key Duties
- Continuously monitor TrendMicro and other related security apparatus covering servers, email, mobile, and endpoints to identify potential threats and escalate as needed.
- Collaborate with IT departments to investigate critical security issues and coordinate remediation activities.
- Regularly audit application security postures and work with application owners on patch management and vulnerability fixes.
- Organize and supervise penetration testing exercises and annual cybersecurity assessments, ensuring swift resolution of issues.
- Review and refine IT security policies, and maintain comprehensive security documentation and procedures.
- Ensure full compliance with security policies across all systems, assisting teams to close security gaps.
- Lead preparations and maintain readiness for external certifications such as Cyber Trust Mark.
- Execute monthly phishing simulations with actionable reports and improvement strategies.
- Deliver quarterly security awareness sessions to instill a cyber-secure culture among employees.
- Generate monthly updates detailing cybersecurity initiatives, status, and forthcoming focus areas.
- Ensure organizational compliance with PDPA and applicable data protection regulations.
- Partner with DPO and deputies for privacy audits, risk evaluations, and update related policies.
- Support development and enforcement of stringent data protection and secure data handling protocols.
- Maintain thorough documentation and assist with regulatory inquiries and reviews.
- Lead key security projects, including implementing new security tools, improving compliance measures, and managing vulnerability platforms.
- Assess third-party and vendor security, ensuring contracts include necessary security controls and audit provisions.
- Contribute strategically to cybersecurity initiatives aligning with the company's business objectives and regulatory demands.
Required Qualifications & Experience
- More than five years of comprehensive experience in cybersecurity or information security, encompassing security operations, risk management, and regulatory compliance.
- Proficiency in security monitoring and incident response, including managing tools like Trend Micro and handling threat detection, investigations, and mitigation.
- Expertise in vulnerability management and conducting security assessments such as penetration testing and risk analysis with effective follow-up on remediation efforts.
- Deep understanding of PDPA and other data protection standards, with hands-on experience supporting privacy audits and compliance checks.
- Strong track record in cybersecurity governance by crafting and enforcing policies, standards, and control frameworks.
- Experience managing cybersecurity audits and certifications including Cyber Trust Mark and ISO 27001 compliance.
- Capability to design and run security awareness and training programs like phishing simulations and employee education initiatives.
- Demonstrated leadership in steering security projects, vendor management, and collaborating with internal stakeholders while communicating security risks effectively to senior management.
Additional Information
Interested candidates who wish to apply must submit their applications as only shortlisted candidates will be contacted.
Employment Agent License Number: 01C4394 (PERSOL Singapore Pte Ltd)
By submitting personal and professional information, candidates consent to the use, collection, and disclosure of their data to potential employers internationally for recruitment evaluation and related administrative purposes.
Advanced technologies such as artificial intelligence and machine learning may be utilized during recruitment for resume screening, qualification assessment, and skill matching. Where applicable, personal data may also be used to enhance these AI systems pursuant to relevant laws.