SVP, Identity Security Management & Governance
Job Description
Singlife is a leading homegrown financial services company, offering consumers a better way to financial freedom. Through innovative, technology-enabled solutions and a wide range of products and services, Singlife provides consumers coantrol over their financial wellbeing at every stage of their lives.
In addition to a comprehensive suite of insurance plans, employee benefits, partnerships with financial adviser channels and bancassurance, Singlife offers investment and advisory solutions through its GROW with Singlife platform. It also offers the Singlife Account, a mobile-first insurance savings plan.
Singlife is the exclusive insurance provider for the Ministry of Defence, Ministry of Home Affairs and Public Officers Group Insurance Scheme. Singlife is also an official signatory of the United Nations Principles for Sustainable Insurance and the United Nations-supported Principles for Responsible Investment, affirming its commitment to finding a better way to sustainability.
The merger of Aviva Singapore and Singlife was announced in September 2020 and created one of the largest homegrown financial services companies in Singapore in a deal valued at S$3.2 billion. It was the largest insurance deal in Singapore at the time. Singlife was subsequently acquired by Sumitomo Life in March 2024, one of Japan's leading life insurers, which valued Singlife at S$4.6 billion, making the transaction one of the largest insurance deals in Southeast Asia.
Purpose
Provide senior strategic leadership and executive ownership of the enterprise Identity & Access Management (IAM) and Privileged Access Management (PAM) function, spanning System Access Management, Identity Governance & Administration (IGA), IAM platform operations and identity lifecycle management.
As a Senior Vice President, the role leads and develops the IAM/PAM leadership and delivery teams, and is accountable for defining and executing the enterprise IAM/PAM strategy, operating model and multi-year transformation roadmap in alignment with business, technology and regulatory objectives.
The role provides executive oversight of audit and regulatory engagements relating to identity controls, ensures secure, compliant and resilient identity services, drives automation and continuous improvement across the IAM ecosystem, and represents the function to executive management, regulators, auditors and governance committees.
Responsibilities
Team Leadership & People Management
In addition to a comprehensive suite of insurance plans, employee benefits, partnerships with financial adviser channels and bancassurance, Singlife offers investment and advisory solutions through its GROW with Singlife platform. It also offers the Singlife Account, a mobile-first insurance savings plan.
Singlife is the exclusive insurance provider for the Ministry of Defence, Ministry of Home Affairs and Public Officers Group Insurance Scheme. Singlife is also an official signatory of the United Nations Principles for Sustainable Insurance and the United Nations-supported Principles for Responsible Investment, affirming its commitment to finding a better way to sustainability.
The merger of Aviva Singapore and Singlife was announced in September 2020 and created one of the largest homegrown financial services companies in Singapore in a deal valued at S$3.2 billion. It was the largest insurance deal in Singapore at the time. Singlife was subsequently acquired by Sumitomo Life in March 2024, one of Japan's leading life insurers, which valued Singlife at S$4.6 billion, making the transaction one of the largest insurance deals in Southeast Asia.
Purpose
Provide senior strategic leadership and executive ownership of the enterprise Identity & Access Management (IAM) and Privileged Access Management (PAM) function, spanning System Access Management, Identity Governance & Administration (IGA), IAM platform operations and identity lifecycle management.
As a Senior Vice President, the role leads and develops the IAM/PAM leadership and delivery teams, and is accountable for defining and executing the enterprise IAM/PAM strategy, operating model and multi-year transformation roadmap in alignment with business, technology and regulatory objectives.
The role provides executive oversight of audit and regulatory engagements relating to identity controls, ensures secure, compliant and resilient identity services, drives automation and continuous improvement across the IAM ecosystem, and represents the function to executive management, regulators, auditors and governance committees.
Responsibilities
Team Leadership & People Management
- Lead, mentor and develop the IAM/PAM leadership team and delivery functions, including System Access Operations, PAM Operations, IGA Engineering & Operations and 24x7 IAM/PAM support.
- Set direction, performance objectives and delivery standards across all IAM/PAM teams, fostering a culture of accountability, collaboration and continuous improvement.
- Build long-term organisational capability through succession planning, talent development, leadership coaching and workforce planning.
- Manage vendors and managed service providers, ensuring performance, value and service quality across a 24x7 operating model.
- Define and own the enterprise IAM/PAM strategy, operating model and multi-year transformation roadmap across System Access Management, PAM and IGA capabilities.
- Set the strategic direction for identity modernisation, automation and Zero Trust adoption across on-premise, cloud and SaaS environments.
- Extend identity governance to machine and non-human identities (service accounts, workloads, API and AI/agentic identities), and drive cryptographic-agility and post-quantum readiness across IAM/PAM secrets and credentials.
- Own IAM/PAM financial planning, including budget management, vendor contracts, licence optimisation and investment prioritisation.
- Drive enterprise onboarding, entitlement modelling, role engineering and access governance design to support digital transformation initiatives.
- Provide executive oversight of, and act as senior point of contact for, internal and external audit engagements
- relating to IAM/PAM controls, including evidence provision and remediation management.
- Act as the technology risk owner for IAM/PAM platforms and services, ensuring risks are identified, assessed, mitigated and reported appropriately.
- Ensure compliance with MAS TRM guidelines, FSM-N04 Cyber Hygiene requirements, internal policies and industry best practices.
- Establish IAM/PAM standards, policies and governance frameworks, and advocate identity hygiene and compliance with Singlife security policies and standards.
- Provide strategic oversight of System Access operations (Joiner, Mover, Leaver), PAM operations (CyberArk onboarding, privileged credential and session management, breakglass) and IGA operations (HR-to-AD integration, birthright provisioning).
- Ensure continuity, effectiveness and resilience of IGA and PAM solutions, including disaster recovery, business continuity and cyber recovery capabilities.
- Provide regular executive reporting on IAM/PAM operational health, risk posture, audit status and strategic initiatives to the CISO, CIO and relevant governance committees.
- Bachelor's degree in Computer Science, Information Security, Information Systems, Engineering or a related discipline.
- Minimum 10 years of experience in Information Technology, Cyber Security or Identity & Access Management disciplines.
- Minimum 8 years of direct experience across IAM domains including System Access Management, Privileged Access Management (PAM), Identity Governance & Administration (IGA) and Identity Lifecycle Management.
- Minimum 5 years of senior leadership experience managing IAM/PAM teams, leaders, vendors or managed service providers.
- Proven track record defining and executing enterprise IAM/PAM strategy and multi-year transformation roadmaps in highly regulated environments such as financial services, insurance or banking.
- Demonstrated experience providing executive oversight of audit and regulatory engagements relating to identity controls.
- Strong understanding of identity concepts, including:
- Joiner, Mover and Leaver (JML)
- Birthright access
- Enterprise roles and role hierarchy
- Entitlements and fine-grained permissions
- Role Based Access Control (RBAC)
- Attribute Based Access Control (ABAC)
- Segregation of Duties (SoD)
- Access certification and recertification
- Machine and Human identities
- Secret Management
- Privileged Access Management
- Good understanding of SAML, OAuth2, OpenID Connect (OIDC), LDAP and SCIM.
- Able to contribute to IAM solutioning, role engineering, entitlement modelling and access governance design.
- Experience supporting audit and regulatory requirements including MAS TRM, FSM-N04, Internal Audit and External Audit activities.
- Professional certifications such as CISSP, CISM, CyberArk or Saviynt certifications are highly desirable.
More Info
Job Type:
Industry:
Employment Type:
Key Skills
Machine and Human identities
OpenID Connect (OIDC)
Attribute Based Access Control (ABAC)
Role engineering
Segregation of Duties (SoD)
System Access Management
Identity Lifecycle Management
SCIM
Entitlement modelling
Secret Management
Access governance design
Privileged Access Management (PAM)
Role Based Access Control (RBAC)
Access certification and recertification

