This is a technical project delivery role. The successful candidate is expected to possess sufficient cybersecurity engineering and architecture knowledge to independently review solution designs, challenge vendor recommendations, assess implementation risks, participate in technical troubleshooting, and drive security solution deployment activities beyond traditional project management responsibilities.
1. Security Solution Delivery & Implementation
- Lead the end‑to‑end solutioning and implementation of cyber security projects.
- Coordinate detailed technical design discussions, solution architecture reviews, and integration planning with internal SMEs and vendors.
- Ensure the proposed solutions follow internal policy, standards, and procedures, as well as regulatory instruments.
- Review and validate solution architectures, technical designs, security controls, and integration approaches.
- Participate in solution configuration reviews, deployment planning, migration activities, and technical troubleshooting sessions.
- Validate implementation outcomes against security requirements, architecture standards, and operational readiness criteria.
- Work closely with engineering teams to resolve implementation blockers, security gaps, and integration issues.
2. Project Management & Governance
- Drive project planning, execution, monitoring, and closure in alignment with PMO framework and methodology.
- Manage project budgets, scope, resourcing, dependencies, and change requests.
- Prepare and maintain complete project documentation including RAIDs, implementation plans, UAT plans, cut‑over/runbooks, and post‑implementation reports.
- Provide timely and accurate reporting to management; elevate risks and showstoppers early.
- Engage and influence SMEs, architects, operations teams, users, and other stakeholders.
- Lead technical working groups and cross‑functional project discussions.
- Manage vendor deliverables, SLAs, product customisation, and implementation quality.
4. Transition to Operations
- Develop the BAU operating model for each security solution in partnership with Security Product Management Services team and Security Operations Centre.
- Ensure Day-2 teams are trained, onboarded, and ready for BAU prior to go‑live.
- Oversee documentation handover, operational playbooks, and Day‑2 readiness.
5. Risk, Compliance & Security Assurance
- Ensure all project activities comply with follow internal policy, standards, and procedures, as well as regulatory instruments.
- Support cybersecurity assessments, solution hardening activities, and risk remediation.
- Maintain awareness of emerging security threats, technologies, and industry best practices.
6. Implementation Support Activities
- Coordinate and escort vendors to data centres when required for deployment or migration tasks.
- Oversee implementation testing, including SIT, UAT, security validation, and performance testing
7. Cybersecurity Technical Leadership
- Act as the technical delivery lead for cybersecurity initiatives from design through production deployment.
- Review security architecture diagrams, network flows, authentication models, and security control designs.
- Conduct technical assessments of proposed solutions and identify implementation risks.
- Provide technical guidance during solution deployment, migration, testing, and operational transition activities.
- Participate in security reviews, threat modelling discussions, and technical design workshops
We are looking for people with
- Bachelor Degree in Information Security, Computer Science, Information Systems, or related field
- Minimum 8 years of experience managing cyber security or IT projects, preferably in the insurance or banking industry.
- Strong understanding of cyber security domains, controls, frameworks, and tools across infrastructure, endpoints, cloud, and network.
- Hands‑on experience with across cyber security solutions covering SIEM, IGA, PAM, Endpoint Security, ZTNA/SASE, Cloud and network security.
- Demonstrated hands‑on involvement in the deployment, integration, configuration, testing, migration, or operationalisation of enterprise cybersecurity technologies
- Practical experience delivering cloud security, Zero Trust, identity security, or endpoint protection projects within enterprise environments
- Strong ability to translate security requirements into technical deliverables and implementation plans.
- Proven track record managing large‑scale enterprise security implementations with cross‑functional stakeholders.
- Relevant certifications preferred: PMP, PRINCE2, Scrum Master, CISSP, CISM, CCSP, or vendor‑specific security certifications.
- Strong communication, issue resolution, negotiation, and stakeholder engagement abilities.
How you succeed
- Champion and embody our Core Values in everyday tasks and interactions.
- Demonstrate high level of integrity and accountability.
- Take initiative to drive improvements and embrace change.
- Take accountability of business and regulatory compliance risks, implementing measures to mitigate them effectively.
- Keep abreast with industry trends, regulatory compliance, and emerging threats and technologies to understand and highlight potential concerns/ risks to safeguard our company proactively.
Who we are
Founded in 1908, Great Eastern is a well-established market leader and trusted brand in Singapore and Malaysia. With over S$100 billion in assets and more than 16 million policyholders, including 12.5 million from government schemes, it provides insurance solutions to customers through three successful distribution channels – a tied agency force, bancassurance, and financial advisory firm Great Eastern Financial Advisers. The Group also operates in Indonesia and Brunei.
The Great Eastern Life Assurance Company Limited and Great Eastern General Insurance Limited have been assigned the financial strength and counterparty credit ratings of "AA-" by S&P Global Ratings since 2010, one of the highest among Asian life insurance companies. Great Eastern's asset management subsidiary, Lion Global Investors Limited, is one of the leading asset management companies in Southeast Asia.
Great Eastern is a subsidiary of OCBC, the longest established Singapore bank, formed in 1932. It is the second largest financial services group in Southeast Asia by assets and one of the world’s most highly-rated banks, with an Aa1 rating from Moody’s and AA- by both Fitch and S&P. Recognised for its financial strength and stability, OCBC is consistently ranked among the World’s Top 50 Safest Banks by Global Finance and has been named Best Managed Bank in Singapore by The Asian Banker.