Consultant/Senior Consultant
DACTA SG PTE. LTD.
Singapore
On-site
SGD 60,000 - 90,000
Full time
Job summary
A leading cybersecurity firm in Singapore is seeking a Risk Assessment Specialist to conduct assessments and implement compliance strategies. You'll develop risk mitigation plans and ensure compliance with regulations such as ISO 27001 and GDPR. The ideal candidate has a background in Information Security with relevant certifications and 3-5 years of experience. Strong communication skills and independence in project management are essential.
Qualifications
- At least 3-5 years of experience in Risk Assessment and compliance delivery.
- Excellent communication skills for technical and non-technical audiences.
- Commitment to staying updated with cybersecurity trends.
Responsibilities
- Conduct comprehensive risk assessments.
- Develop risk mitigation strategies and controls.
- Serve as the primary contact for DPO duties.
Skills
Risk assessment
Data protection
Project management
Communication
Problem-solving
Education
Bachelor’s degree in Computer Science or related field
Industry certifications (CISSP, CISA, CISM)
Responsibilities
- Conduct comprehensive risk assessments to identify potential threats and vulnerabilities within the organization's systems, processes, and policies.
- Develop and implement risk mitigation strategies and controls to minimize the impact of identified risks.
- Stay abreast of evolving security frameworks, regulations, and standards, such as ISO 27001:2022, Cyber Trust Mark, GDPR, PDPA, and NIST.
- Collaborate with cross-functional teams to integrate security requirements into business processes and technology solutions.
- Assist in the development and implementation of security policies, procedures, and guidelines to ensure alignment with regulatory requirements and industry best practices.
- Serve as the primary point of contact for Data Protection Officer (DPO) duties, including overseeing data protection activities, ensuring compliance with relevant data protection regulations, and acting as a liaison between the organization and regulatory authorities or data subjects.
- Provide guidance and support to internal stakeholders on security and compliance-related matters.
- Conduct regular audits and assessments to monitor compliance with established security policies, procedures, and standards.
- Develop and deliver training programs to raise awareness of security risks and compliance requirements among employees.
Qualifications
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent work experience).
- Industry-recognized certifications such as CISSP, CISA, CISM, CRISC, or equivalent.
- Extensive experience of at least 3-5 years in performing Risk Assessment and delivering compliance standards across diverse environments, from SME to Enterprise.
- Excellent written and verbal communication skills, with the ability to convey complex technical concepts to both technical and non-technical audiences.
- Ability to work independently, manage multiple projects simultaneously, and meet tight deadlines.
- Strong problem-solving skills and attention to detail.
- A commitment to staying up to date with the evolving cybersecurity landscape.