IT Security Manager (ITSM)
Lenovo PCCW Solutions Singapore River Full-time
Job Summary:
We're seeking an experienced IT Security Manager (ITSM) to lead our cybersecurity efforts and ensure the confidentiality, integrity, and availability of our IT systems and data. As a key member of our team, you'll be responsible for managing incident response, vulnerability management, and compliance with IT security policies and regulations.
Key Responsibilities:
- Cyber Vigilance:
- Monitor and analyze security event logs to identify potential security incidents.
- Respond to security incidents in a timely and effective manner, ensuring minimal disruption to business operations.
- Risk Management:
- Conduct risk assessments and vulnerability management to identify potential security threats.
- Develop and implement mitigation strategies to minimize risk.
- Compliance and Governance:
- Ensure compliance with IT security policies, regulations, and standard e.g IM8 , PDPA.
- Develop and maintain security policies, procedures, and guidelines.
- Incident Response:
- Develop and maintain incident response plans and procedures.
- Coordinate incident response efforts with stakeholders, including IT teams and management.
- Security Awareness and Training:
- Promote security awareness and training programs for employees.
- Develop and deliver security training sessions to enhance employee knowledge and skills.
- Resolution for Preventing Recurrence of Security Incidents
- For cases where workarounds are implemented, the ITSM shall identify the root causes and implement permanent resolutions according to the Problem Management process.
- To assist with management/containment/remediation/eradication of security incident
- To assist with Risk assessment and ensure minimising the risk exposure of IT asset and improve the cyber security posture.
- The ITSM shall be responsible to close all IT security incidents in accordance with the Incident Management process.
- For every IT security incident, the ITSM shall submit to the client an incident report in draft within one (1) day and a final version within three (3) days of incident resolution, unless otherwise agreed by the client.
- The incident record shall be closed only when the incident report is accepted by the client. The client reserved the right to verify the details in the incident report against the associated incident record maintained by the ITSM. The incident report shall be in the format defined by the client.
- He/ She is required to participate in following audit activities performed by client’s 3rd party auditors or internal auditors:
(b) IT Vulnerability Assessment
(c) IT Security Penetration Testing
(d) IT Security Compliance Review
You bring:
- Minimum 5 -7 years of IT experience in cybersecurity management, with a focus on incident response, vulnerability management, with governance risk and compliance.
- Hands-on experience with security technologies, either one of the following
- Application Security
- Open Web Application Security
- Penetration Testing
- Vulnerability management systems (e.g., Tenable, Nessus)
- Security information and event management (SIEM) systems
- Identity and access management (IAM/PAM/MFA) systems
- Industry-recognized certifications, must have at least one of :
- CISSP
- CISM
- GIAC/CISA
- CEH, or any other professional security certification will have an added advantage
- Strong analytical and problem-solving skills, with the ability to analyze complex security issues and develop effective solutions.
- Excellent communication and interpersonal skills, with the ability to communicate technical information to non-technical stakeholders.
Prefer to Have:
- Experience with cloud security, including AWS or Azure or GCP
- Knowledge of federal information security regulations, such as FISMA or FIPS.
- Experience and knowledgeable in security frameworks, such as ISO 27001, Zero Trust framework, NIST Cybersecurity Framework , CIS hardening etc.
Lenovo PCCW SolutionsSingapore River
Job Summary:
We are seeking an experienced Azure Security SOC Manager to lead our Security Operations Center (SOC) team in protecting our Azure environment from cyber threats. The successful candidate will be responsible for managing the SOC team...
TRUST RECRUIT PTE. LTD.Bukit Merah, 2 km from Singapore River
Job Responsibilities:
Operational Management
• Support daily operations of security systems and services, including CCTV, access control, and alarm systems.
• Coordinate across internal teams (technical, logistics, sales) to ensure on-time project...
ConvergintBukit Merah, 2 km from Singapore River
to the Global Data Center Security Systems Program Manager who is based in the UK.
Responsibilities:
• Works closely with the Security Op’s, Data Center Op’s and providers to identify Security System needs; develops security designs, providing marked-up design...