about the company
Founded in 2011, my client is a leading cybersecurity company headquartered in Singapore. It provides comprehensive cybersecurity solutions and services to a wide range of clients, including government agencies, financial institutions, healthcare organizations, and enterprises across various industries.
...
With expansion plans, they are looking to hire a Deputy Director, Information Security to implement security policies and standards, drive Governance, Risk and Compliance (GRC) processes and monitor information security controls, exceptions, risks and testings.
about the job
- Develop and implement frameworks for managing incidents, vulnerabilities, scans, patching, and related processes.
- Assess and provide recommendations for application design, controls, and compliance to prevent unauthorized activities and protect information systems and assets.
- Establish and enhance cyber Threat Intelligence management, including methodologies for threat analysis, intelligence dissemination, and vulnerability management services.
- Design and implement the cyber Threat Intelligence strategy, conducting cybersecurity reviews and proposing vulnerability management recommendations to top executives.
- Communicate the threat landscape, actor tactics, active campaigns, and risks to business leadership and IT teams.
- Support incident response and threat hunting activities by leveraging cyber intelligence expertise, providing guidance, and recommending appropriate remediation.
- Utilize cyber Threat Intelligence to prioritize and address vulnerabilities in IT operations.
- Oversee the Intelligence cycle to generate actionable insights for operational advantages and organizational changes in areas such as physical and cyber security, insider threats, governance, risk and compliance, reputation protection, and crisis communications.
- Stay updated on emerging cyber threats and provide awareness to the business leadership team, including writing reports and advisories on evolving threats, existing risk mitigations, and proposing additional measures to address gaps.
skills and experience required
- Minimally Diploma/ Degree in Information Technology or equivalent.
- Minimally 8 to 10 years of working experience in a relevant Information Security position, with proven track record in vulnerability management and patch frameworks.
- Experienced in cyber incident response management is an added advantage.
- Proficient in cyber threat intelligence frameworks e.g. Mitre ATT&CK, Cyber Kill Chain, Diamond Model and able to develop relevant threat models.
- Professional accreditation such as CISSP, CISA, GCIA or GCIH is an added advantage.
- Strong communication and stakeholder management skills.
To apply online please use the 'apply' function, alternatively you may contact Joey at joey.lam(at)randstad.com.sg.
(EA: 94C3609/ R1879086)