Search by job, company or skills

VP, Security Governance & Assurance

10-12 Years
  • Posted 4 hours ago
  • Be among the first 10 applicants

Job Description

Job description:

Key Responsibilities

  • Information Security Governance & Compliance

    • Support the development, review, and enforcement of Information Security policies, standards, and procedures.
    • Monitor compliance with regulatory requirements and industry standards (e.g. MAS TRM, Cyber Hygiene, ISO 27001, PCI DSS).
    • Conduct security risk assessments, control reviews, and gap assessments, and track remediation activities.
    • Provide cybersecurity governance and compliance advisory to stakeholders.
    • Prepare security governance reports, KRI metrics, and updates for management and governance committees.
    • Drive security awareness and promote a strong security culture across the organization.

    Information Security Risk & Audit Management

    • Manage Information Security audit activities, including internal, external, regulatory, and certification audits.
    • Coordinate audit requests, review findings, facilitate remediation plans, and track issues to closure.
    • Support security risk management activities, including risk assessments, risk registers, and exception management.
    • Act as a liaison between Information Security, Risk, Compliance, auditors, and regulators.

Requirements

    • Degree in Computer Science, Engineering or any other related disciplines with at least 10 years of experience in Information security, including experience in security policy development, risk assessment, compliance implementation & monitoring and governance function (preferably from financial/banking/payment industry).
    • Good working knowledge of enterprise security risk management methods and techniques to successfully deliver the security risk management and assessment outcome.
    • Prior experience in implementing a program which includes the collation, management and reporting of security metrics (KRI) such as vulnerability management, open software security vulnerabilities, penetration testing findings, security alerts and incidents
    • Strong knowledge of regulatory requirements and industry practices (e.g. NIST framework, MAS TRM Guidelines, MAS Cyber Hygiene, ISO 27001 standard)
    • Ability to work in a team environment and work independently and produce results that meet standards of quality, timeliness and acceptability
    • Strong writing, communication and inter‐personal skills
    • Attention to details, with the ability to thoroughly and accurately review IT policies, process and audit responses.
    • Excellent problem-solving skills and ability to prioritize and manage multiple tasks

More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 153478557

Similar Jobs

Singapore

Skills:

compliance implementation Vulnerability ManagementPenetration TestingTechnology Risk Management GuidelinesISO27000 standardRisk AssessmentCyber Hygiene NoticeMonitoring and governanceNIST frameworkPersonal Data Protection ActEnterprise security risk management

Singapore

Skills:

Oraclecredit milestonesdatabase management skillsRegulatory Reportingfinancial covenantsMAS Notice 637time-dependent covenantscredit conditionsEnvironmental Social and Governance conditionsverification of covenantssecurity covenantsMAS Notice 642regulatory and legal compliancelending credit treasury and trade financing regulationsCredit Control

Singapore

Skills:

it controls technology risk Vulnerability ManagementDevopsTogafenterprise architecture frameworksoperational risk methodologiespreventative shift-left control designOperational RiskCI CDAI ML riskcontrol frameworksIt Auditaccess managementCOSOportfolio risk managementCobitORSAsecure SDLC practicespipeline controlscloud data governancedeveloper tooling

Singapore

Skills:

compliance advisory policy development Asset ManagementTestingregulatory changeStakeholder Managementcross-border activitiesInvestment ManagementMonitoringinvestment productsRegulatory Requirements

Singapore

Skills:

Data Analyticsrisk managementAI toolsinternal control frameworksrelevant software systemsfinancial services auditaudit toolsrisk assessment techniquesTreasury Markets SecuritiesInternal Auditaudit methodologies

Beware of Scammers

We don’t charge money for job offers