- Evaluate, perform proof-of-value/proof-of-concept, design, build and implement enterprise-class cybersecurity systems
- Identify and recommend improvement areas in existing enterprise security architecture to address evolving cybersecurity threats
- Align and balance business requirements with cybersecurity and IT requirements, based on the organization's risk appetite
- Develop integrated security operating models and documentations to ensure operational efficiency, scalability, and sustainability
- Act as a domain expert and trusted partner in Cyber Security & Resilience; work closely with stakeholders in other groups on cybersecurity engineering related matters
- Manage cybersecurity projects with virtual teams and ensure successful implementation to meet organisational objectives
What qualifications or skills should you possess in this role
- Bachelor's Degree in Information Technology, Computer Engineering or equivalent.
- At least 10 years of relevant experience preferably in financial services or asset management industries, with minimum 2 years related work experience with AI, computer vision, natural language processing or machine-learning in a cybersecurity context.
- Hands-on experience with related cloud services (e.g. AWS SageMaker, Azure ML Studio) and Large Language Models (e.g. GPT, Llama, Claude).
- Knowledge of machine learning frameworks such as TensorFlow, PyTorch, or Keras.
- Strong programming skills in Python, Java, C++, or similar languages, and good understanding of REST API's and JSON.
- Experience with security assessment tools and techniques
- Working knowledge of Waterfall, Agile, and DevOps development methodologies, and deployment to public cloud environments.
- Knowledge of DevSecOps tools, design, automation and CI/CD tools, including IaC (Infrastructure as Code), GitLab/GitHub, application security tools (SCA, SAST, DAST), automated security testing and validation processes.
- Knowledge of risk assessment and threat modelling techniques, static and dynamic code security analysis and testing, software composition analysis, and API security.
- Experience with cloud platforms (e.g., AWS, GCP, Azure) and containerization technologies (e.g., Docker, Kubernetes).
- Ability to produce detailed documentation, including design diagrams and process flows.
- Desire to learn, working in a diverse environment, interacting with multiple teams and functions to support strategic goals.Be a good team player and excellent communicator.
- Professional qualification in information security, such as CISSP / CISM / CEH will be advantageous.