Head of Information and Cyber Security

Tech Aalto Pte ltd

Singapore

On-site

SGD 250,000 - 350,000

Part time

12 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Tech Aalto Pte ltd in Singapore is seeking Head of Information and Cyber Security for a contract role. You will be part of the founding core team, reporting to the CIO and shaping the enterprise security strategy across on-prem and cloud environments.

You will lead risk assessments, drive compliance with CIS, NIST, PCI/DSS, SOC 2, and coordinate with MAS regulators while mentoring teams and establishing security awareness.

Qualifications

  • 10+ years in IT Security with Enterprise InfoSec architecture and risk management.
  • 5+ years hands-on architecting security solutions for on-prem and cloud (AWS, GCP, Azure).
  • Experience designing secure cloud architectures across multiple platforms.
  • Experience with Technology Security Risk Assessments and risk mitigation.
  • Familiar with CIS, NIST, PCI/DSS, SOC 2 and MAS regulatory expectations.

Responsibilities

  • Define and implement the Enterprise InfoSec landscape and roadmap.
  • Architect and develop security solutions on on-premise and cloud platforms.
  • Design and implement secure cloud architecture across providers.
  • Provide security advisory as trusted partner for cloud platforms.
  • Develop and maintain IT Security checklists and guidelines.
  • Manage third-party IS due diligence, including onsite assessments.
  • Conduct Technology Security Risk Assessments across system lifecycles.
  • Ensure compliance with frameworks such as CIS, NIST, PCI/DSS, SOC 2.
  • Lead incident response and regulators communications (MAS).

Skills

Cloud security
Cloud-native tools
Security leadership
Stakeholder comms

Education

Bachelor's in Information Security
Master's in Information Security
InfoSec certifications (CISSP, CISM, CCSP)

Job description

Role: Head of Information and Cyber Security
Position Type: Contract
Job Responsibilities

We are looking for an Information and Cyber Security Lead. You will be part of the founding key team member, reporting to the Chief Information Officer (CIO) and working closely with team leads in the transformation of the business. If you are passionate about technology and digital transformation for business and want to be in a team where your views matter, learning and collaboration is part of the culture, we would love to talk to you!

  • Define and implement the Enterprise InfoSec (IS) landscape and roadmap.
  • Architect and develop security solutions on on-premise and cloud platforms (AWS, GCP, or Azure) using cloud-native security services.
  • Design and implement secure cloud architecture for various cloud platforms.
  • Provide security advisory as a trusted partner and subject matter expert cloud platforms.
  • Develop, maintain, and enhance IT Security checklists and guidelines.
  • Manage third-party IS due diligence on service suppliers, including onsite assessments.
  • Conduct Technology Security Risk Assessments on systems throughout their lifecycle to identify and mitigate security risks.
  • Ensure compliance with security frameworks and processes such as CIS, NIST, PCI/DSS, SOC 2.
  • Implement process improvements for effective IT Security risk management.
  • Identify security risks in the Tech Obsolescence Risk program.
  • Perform periodic risk analysis, vulnerability scanning, and testing.
  • Drive enterprise initiatives for comprehensive security posture analysis across different layers and sources within the network environment.
  • Respond to security incidents and manage incident response.
  • Communicate with regulators such as MAS and ensure solutions meet external and internal requirements and guidelines.
  • Conduct security awareness training and programs for employees.
  • Stay updated on security trends and new threats to safeguard the organization.
Qualifications & Experience Requirements:
Education:

Bachelor's or Master's degree in Information Security, Computer Science, or a related field. Industry certifications such as CISSP, CISM, CCSP, or relevant cloud certifications (AWS Certified Security, Azure Security Engineer, etc.) are highly desirable.

Experience:
  • Minimum 10+ years of experience in IT Security, with a focus on Enterprise InfoSec architecture and risk management.
  • 5+ years of hands‑on experience architecting and developing security solutions for both on‑premise and cloud platforms (AWS, GCP, or Azure) using cloud-native security services.
  • Proven experience in designing and implementing secure cloud architectures across multiple platforms.
  • Strong experience in conducting Technology Security Risk Assessments throughout the lifecycle of systems and implementing risk mitigation strategies.
  • Experience in third‑party IS due diligence assessments, including managing supplier audits and onsite evaluations.
  • Familiarity with security frameworks and regulatory compliance standards such as CIS, NIST, PCI/DSS, SOC 2, and experience working with regulators like MAS.
  • Experience in incident response and security operations, including vulnerability scanning, periodic risk analysis, and handling security incidents.
  • Track record of leading enterprise security initiatives to enhance the overall security posture, including process improvements in IT Security risk management.
  • Experience conducting security awareness training and staying updated with emerging security threats.
Skills:
    • Strong knowledge of cloud security architecture, cloud‑native security tools, and multi‑cloud environments.
    • Ability to communicate complex security concepts effectively to both technical and non‑technical stakeholders.
    • Proficiency in security tools and technologies used for vulnerability management, risk analysis, and incident response.
    • Strong leadership and advisory skills with the ability to serve as a trusted security partner within the organization.

Confidentiality is assured, and only shortlisted candidates will be notified for interviews.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Security Consultant - #1655
IT Security Consultant - #1655

JOBSTER PRIVATE LTD. • Singapore

On-site
SGD 120,000 - 180,000
Senior Manager, Cybersecurity Operations
Senior Manager, Cybersecurity Operations

GOLDTECH RESOURCES PTE LTD • Singapore

On-site
SGD 80,000 - 130,000
Cyber and IT Security Advisory Principal Specialist SG
Cyber and IT Security Advisory Principal Specialist SG

CIMB Singapore • Singapore

On-site
SGD 120,000 - 180,000
GENERAL MANAGER, CYBERSECURITY
GENERAL MANAGER, CYBERSECURITY

Rikvin Capital Pte. Ltd. • Singapore

On-site
SGD 260,000 - 380,000
Senior Security Consultant (Security Architecture & AI Security)
Senior Security Consultant (Security Architecture & AI Security)

aryan solutions pte. ltd. • Singapore

On-site
SGD 120,000 - 180,000
Agency Chief Information Security Officer
Agency Chief Information Security Officer

JJ CONSULTING SERVICES • Singapore

On-site
SGD 120,000 - 180,000
Senior Security Consultant (Security Architecture & AI Security)
Senior Security Consultant (Security Architecture & AI Security)

Aryan-Solutions-Pte.-Ltd. • Singapore

On-site
SGD 120,000 - 180,000
Cybersecurity Consultant, CISOaas
Cybersecurity Consultant, CISOaas

Ensign InfoSecurity • Singapore

On-site
SGD 70,000 - 110,000
Associate Director, Information Security Operations
Associate Director, Information Security Operations

AIA Singapore • Singapore

On-site
SGD 120,000 - 160,000
Head of Information Security
Head of Information Security

JAC Recruitment Pte Ltd • Singapore

On-site
SGD 250,000 - 360,000