Search by job, company or skills

keppel technology solutions

IT Security Officer (Service Delivery & Governance)

2-4 Years
Save
new job description bg glownew job description bg glownew job description bg svg
  • Posted an hour ago
  • Be among the first 10 applicants
Early Applicant

Job Description

Employment Type: Contract (12–24 months)

Overview

We are seeking an experienced SaaS Security Program Manager / IT Security Officer to lead security delivery, remediation governance, and security tooling implementation for a large-scale SaaS platform supporting a regulated public-sector account. This role focuses on execution, coordination, reporting, and risk governance across engineering teams, security vendors, and stakeholders. Hands-on code remediation is not required; strong security domain knowledge, project management capability, and managed services delivery experience are essential.

Key Responsibilities

  • Own and drive the security remediation and tooling delivery program, including WAF and SIEM implementation.
  • Maintain the security roadmap, milestone tracker, risk register, and vulnerability register.
  • Coordinate remediation tracking, retesting, evidence collection, and risk acceptance workflows.
  • Lead delivery coordination with platform engineers, security vendors, and external assessors.
  • Prepare remediation status reports, risk summaries, and audit response packs.
  • Manage vendors, track delivery commitments, and escalate risks or delays proactively.
  • Maintain security documentation, compliance mapping, and audit trails.
  • Coordinate incident response and support CISO and Red Team reviews as required.

Requirements

  • Minimum 2 years of experience in IT security and cybersecurity operations
  • Strong background in vulnerability management, incident handling, security audits, and risk management.
  • Proven track record delivering security remediation or tooling implementation programs in multi-vendor environments.
  • Experience in project management, vendor management, and executive reporting skills.
  • Experience in managed services and/or SOC operations is a strong advantage.
  • Knowledge of security standards such as IM8, PCI DSS, HIPAA, CIS, or ISO/NIST preferred.
  • Security or project management certifications (CISSP, CISM, CRISC, PMP, PRINCE2, etc.) are advantageous.

What Success Looks Like

  • High and medium security findings closed or formally risk accepted.
  • Stable remediation cadence and audit-ready documentation.
  • Security posture maintained with no further regulatory or contractual escalation.

More Info

Job Type:
Industry:
Function:
Employment Type:

Job ID: 147147373

Similar Jobs