IT Security GRC Manager

apartmentIntellipro Group placeBukit Merah scheduleFull-time calendar_month 
Location: Singapore

Department: IT Security – Governance

About the Role

Our Client is seeking an experienced IT Security GRC Manager to lead the organisation’s Governance, Risk, and Compliance (GRC) function. This role is responsible for ensuring security controls are well-designed, risks are identified and managed effectively, and compliance obligations are met across IT and operational environments.

You will work closely with IT, operations, legal, procurement, and third-party stakeholders to embed security practices into daily business processes within a logistics and supply chain environment.

Key Responsibilities

Governance & Policy Management
  • Develop, implement, and maintain information security policies, standards, and procedures aligned with regulatory and business requirements.
  • Establish governance frameworks integrating security across enterprise systems, warehouse technologies, transportation platforms, and corporate applications.
  • Lead organisation-wide security awareness initiatives for both office and operational personnel.
Risk Management
  • Manage the enterprise security risk program, including risk identification, assessment, mitigation planning, and reporting.
  • Maintain and monitor the risk register, Key Risk Indicators (KRIs), and risk heatmaps.
  • Prepare executive-level risk reports and support regulatory or customer assessments.
  • Monitor emerging threats and regulatory developments relevant to logistics and supply chain operations.
Compliance & Audit
  • Support compliance with recognised frameworks such as ISO 27001, SOC 2, NIST CSF, GDPR, PDPA, CTPAT, and PCI DSS (where applicable).
  • Coordinate internal and external audits, ensuring timely remediation of findings.
  • Maintain compliance documentation, control libraries, and audit evidence repositories.
  • Support incident response activities to ensure regulatory and contractual compliance obligations are met.
Third-Party Risk Management
  • Lead vendor security due diligence, risk assessments, and ongoing monitoring.
  • Collaborate with procurement and legal teams to incorporate security requirements into vendor agreements.
  • Assess security posture of logistics partners, carriers, and technology providers.
Incident Governance & Control Assurance
  • Develop and maintain incident response governance documentation and conduct tabletop exercises.
  • Oversee the design, testing, and monitoring of security controls across IT and operational technology environments.
  • Track control effectiveness and drive continuous improvement initiatives.
Stakeholder Engagement & Reporting
  • Deliver regular updates to senior leadership on risk posture and compliance status.
  • Respond to customer security questionnaires and supply chain security assessments.
  • Communicate technical security topics clearly to business stakeholders.
Requirements
  • Bachelor’s degree in Information Security, Computer Science, or a related discipline.
  • 5+ years of experience in IT Security, Governance, Risk, Compliance, or related roles.
  • Strong understanding of security frameworks such as ISO 27001, NIST CSF, and SOC 2.
  • Experience managing audits, compliance programs, and enterprise risk assessments.
  • Knowledge of data protection regulations (e.g., GDPR, PDPA).
  • Experience in logistics or supply chain environments is advantageous but not mandatory.
  • Professional certifications such as CISSP, CISM, CRISC, or CISA are preferred.
  • Strong analytical, communication, and stakeholder management skills.
thumb_up_altRecommended

IT Security Officer

placeBedok, 12 km from Bukit Merah
Perform IT security operations involving activities such as security log reviews, vulnerability assessments, security access review and security configuration review to ensure compliance based on customers' requirements. Critical Key Functions...
local_fire_departmentUrgent

IT Security Engineer

apartmentNEWTONE CONSULTING PTE. LTD.placeBukit Merah
We are seeking an IT Security Engineer to support mission-critical Defence sector systems. You will work closely with Solution Architects, Project Managers, and Technical Leads to ensure strong security governance, compliance, and operational...
electric_boltImmediate start

IT Security GRC Manager

apartmentIntellipro GroupplaceToa Payoh, 7 km from Bukit Merah
Location: Singapore Department: IT Security – Governance About the Role Our Client is seeking an experienced IT Security GRC Manager to lead the organisation’s Governance, Risk, and Compliance (GRC) function. This role is responsible for ensuring...