Search by job, company or skills

Ocbc Bank

Security Configuration Management Engineer

3-7 Years
new job description bg glownew job description bg glownew job description bg svg
  • Posted 5 hours ago
  • Be among the first 10 applicants
Early Applicant

Job Description

Who We Are

As Singapore's longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How By taking the time to truly understand people. From there, we provide support, services, solutions, and career paths that meet their individual needs and desires.

Today, we're on a journey of transformation. Leveraging technology and creativity to become a future-ready learning organisation. But for all that change, our strategic ambition is consistently clear and bold, which is to be Asia's leading financial services partner for a sustainable future.

We invite you to build the bank of the future. Innovate the way we deliver financial services. Work in friendly, supportive teams. Build lasting value in your community. Help people grow their assets, business, and investments. Take your learning as far as you can. Or simply enjoy a vibrant, future-ready career.

Your Opportunity Starts Here.

Why Join

Imagine being part of a team that powers the technology behind one of Singapore's longest established banks. As a Technology Infrastructure Specialist at OCBC, you'll play a critical role in ensuring our systems and infrastructure are secure, efficient, and always available. You'll be part of a team that's driving innovation and transformation in the banking industry.

How you succeed

The Security Configuration Management resource is responsible for establishing, maintaining, and continuously improving the organization's IT security configuration management framework across infrastructure, platforms, applications, and endpoints. This role ensures secure-by-default baselines are defined, implemented, evaluated, and enforced, reducing the attack surface and strengthening overall cyber resilience.

The resource will collaborate closely with infrastructure teams, system owners, cybersecurity governance, and audit functions to drive compliance with internal policies, regulatory requirements, and industry frameworks such as the CIS and NIST.

What you do

Configuration Standards & Baseline Management

  • Ensure secure configuration baselines are developed and maintained for servers, endpoints, databases, network devices, cloud platforms, and other IT assets.
  • Align configuration standards to industry best practices (eg. CIS Benchmarks, NIST).
  • Ensure baselines are updated regularly to reflect new threats, vulnerabilities, and technology changes.

Configuration Compliance & Control Enforcement

  • Track and update the implementation of automated configuration compliance checks using security tools (eg. BigFix, Ansible, Automated Fixing).
  • Monitor compliance posture and track drift from approved baselines.
  • Identify non-compliant systems and work with product owners to remediate gaps.
  • Provide metrics, dashboards, and reports for management, auditors, and regulators.

Continuous Improvement & Automation

  • Identify opportunities to automate configuration enforcement and compliance workflows.
  • Support DevSecOps initiatives by integrating configuration controls into CI/CD pipelines.
  • Evaluate new technologies, tools, and methodologies to enhance configuration security.

Security Control Governance

  • Support risk assessments to evaluate adherence to configuration requirements.
  • Participate in policy reviews and contribute to security standards documentation.

Who you are

  • Bachelor's degree in Information Security, Computer Science, Engineering, or related field.
  • 37 years of experience in security configuration management, systems hardening, or cybersecurity operations
  • Strong knowledge of operating systems (Windows, Linux, Unix) and their hardening practices.
  • Familiarity with CIS Benchmarks, NIST, ISO 27001, MAS TRM, or equivalent frameworks.
  • Experience with configuration management tools such as:
  • Microsoft Intune / SCCM
  • Tanium
  • Ansible, Chef, or Puppet
  • Azure Policy / AWS Config
  • Vulnerability scanners (Tenable, Qualys)
  • Understanding of cloud platforms (Azure, AWS, GCP) and cloud security controls.
  • Strong analytical and problem-solving abilities.
  • Excellent communication skills for cross-team collaboration.
  • Ability to work independently and manage multiple priorities.
  • Strong attention to detail with a focus on accuracy and quality.

Who we are

As Singapore's longest established bank, we have been dedicated to enabling individuals and businesses to achieve their aspirations since 1932. How By taking the time to truly understand people. From there, we provide support, services, solutions, and career paths that meet their individual needs and desires.

Today, we're on a journey of transformation. Leveraging technology and creativity to become a future-ready learning organisation.

But for all that change, our strategic ambition is consistently clear and bold, which is to be Asia's leading financial services partner for a sustainable future.

We invite you to build the bank of the future. Innovate the way we deliver financial services. Work in friendly, supportive teams. Build lasting value in your community. Help people grow their assets, business, and investments. Take your learning as far as you can. Or simply enjoy a vibrant, future-ready career. Your Opportunity Starts Here.

What We Offer

Competitive base salary. A suite of holistic, flexible benefits to suit every lifestyle. Community initiatives. Industry-leading learning and professional development opportunities. Your wellbeing, growth and aspirations are every bit as cared for as the needs of our customers.

More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 145422977