Cybersecurity Engineer (Governance, Risk & Compliance)

XIAOMI TECHNOLOGIES SINGAPORE PTE. LTD.

Singapore

On-site

SGD 120,000 - 180,000

Full time

11 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Xiaomi Technologies Singapore Pte. Ltd. is seeking a seasoned Information Security and Privacy Compliance Lead to drive global data protection programs locally.

You will work with engineering, product, legal, and DevOps teams to embed security by design in new and existing solutions across the data lifecycle. You will lead risk assessments against ISO 27001/27701, GDPR, SOC 2, and PCI DSS, govern security architecture, and oversee international operations to align with local requirements.

Qualifications

  • Bachelor’s degree or higher in Computer Science, Information Systems, Cybersecurity, or a related field.
  • CISSP, CISA, PMP, CIPM, ISO 27XXX Lead Auditor or equivalent certifications.
  • Minimum 2 years of hands-on information security, with focus on data security, compliance, risk and governance.
  • Strong understanding of encryption, tokenization, data masking, and access controls.
  • Familiarity with GDPR and PDPA regulations and international data privacy rules.
  • Proven project management and cross-functional collaboration skills.
  • Ability to manage multiple priorities in a fast-paced environment.

Responsibilities

  • Lead compliance initiatives by tracking, implementing, and validating controls aligned with security and privacy frameworks.
  • Serve as the primary compliance expert on data security and cross-border transfer projects.
  • Collaborate with engineering, product, legal, and DevOps to guide compliant solutions across the data lifecycle.
  • Develop and maintain information security policies, standards, and guidelines.
  • Lead internal risk assessments against ISO 27001/27701, GDPR, SOC2, PCI DSS, and others.
  • Manage the full lifecycle of cybersecurity risk remediation activities.
  • Oversee international security operations, incident response, and regional coordination.
  • Provide governance on security architecture for new and existing technology solutions.

Skills

Data security principles
Encryption & tokenization
Data masking
Access controls
GRC experience
Project management
Multicultural teamwork
Mandarin fluency
English fluency

Education

Bachelor’s degree or higher in Computer Science, Information Systems, Cybersecurity, or related field
CISSP
CISA
PMP
CIPM
ISO 27XXX Lead Auditor

Job description

Responsibilities
  • Lead compliance initiatives by tracking, implementing, and validating controls aligned with security and privacy frameworks to protect sensitive data throughout its lifecycle
  • Serve as the primary compliance expert on projects involving data security, cross-border data transfer compliance, and personal data protection, ensuring security requirements are integrated by design
  • Collaborate with engineering, product, legal, and DevOps teams to guide the development and deployment of compliant technical solutions across the data lifecycle
  • Develop, maintain, and enhance information security policies, standards, procedures, and guidelines to uphold compliance and security best practices
  • Lead and conduct internal risk assessments across frameworks such as ISO/IEC 27001/27701, GDPR, SOC2, PCI DSS, and other relevant standards to identify and mitigate risks
  • Manage the full lifecycle of cybersecurity risk remediation activities, ensuring timely mitigation of identified risks
  • Oversee international security operations, incident response, and regional coordination to tailor global security strategies to local requirements
  • Provide governance and oversight on security architecture for new and existing technology solutions to ensure compliance and risk mitigation
Preferred competencies and qualifications
  • Professional certifications such as CISSP, CISA, PMP, CIPM, ISO 27XXX Lead Auditor, or equivalent credentials
  • Bachelor’s degree or higher in Computer Science, Information Systems, Cybersecurity, or related field, or equivalent practical experience
  • Minimum 2 years of hands-on experience in information security, with at least 2 years focused on data security, compliance, risk, and governance (GRC)
  • Strong understanding of data security principles including encryption, tokenization, data masking, and access controls, as well as international data privacy regulations such as GDPR and PDPA
  • Proven project management and organizational skills with experience collaborating effectively within multicultural and cross-functional teams
  • Ability to manage multiple priorities effectively in a fast-paced environment under tight deadlines
  • Proficiency in Mandarin to support coordination and collaboration with Mandarin-speaking stakeholders and regional teams
  • Proficiency in English for effective communication and collaboration across teams
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer (Governance, Risk & Compliance) (A233302)
Cybersecurity Engineer (Governance, Risk & Compliance) (A233302)

Xiaomi Technology • Singapore

On-site
SGD 150,000 - 190,000
Data & Cybersecurity Governance Manager
Data & Cybersecurity Governance Manager

RECRUIT EXPRESS PTE LTD • Singapore

On-site
SGD 110,000 - 180,000
Manager, Compliance
Manager, Compliance

SMRT Corporation, Ltd. • Singapore

On-site
SGD 120,000 - 180,000
IT Compliance Manager
IT Compliance Manager

Bank Of China Limited • Singapore

On-site
SGD 120,000 - 180,000
Head of Cybersecurity / Security Engineering Manager
Head of Cybersecurity / Security Engineering Manager

Charterhouse Pte Ltd • Singapore

On-site
SGD 180,000 - 240,000
Cybersecurity and Technology Risk Manager, Global MNC
Cybersecurity and Technology Risk Manager, Global MNC

Kerry Consulting • Singapore

On-site
SGD 150,000 - 220,000
GENERAL MANAGER, CYBERSECURITY
GENERAL MANAGER, CYBERSECURITY

Rikvin Capital Pte. Ltd. • Singapore

On-site
SGD 260,000 - 380,000
Information Security Engineer
Information Security Engineer

HAIER SINGAPORE INVESTMENT HOLDING PTE. LTD. • Singapore

On-site
SGD 60,000 - 80,000
Cybersecurity Manager (Governance, Risk and Compliance) (JD#11267)
Cybersecurity Manager (Governance, Risk and Compliance) (JD#11267)

SCIENTE INTERNATIONAL PTE. LTD. • Singapore

On-site
SGD 90,000 - 140,000
Cyber Security Specialist
Cyber Security Specialist

LANDI Global • Singapore

On-site
SGD 90,000 - 130,000