Job Search and Career Advice Platform

Enable job alerts via email!

Head of Information Security

ECARX TECHNOLOGY PTE. LTD.

Serangoon Garden Circus

On-site

SGD 100,000 - 130,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading technology firm in Singapore is seeking an experienced information security professional with over 15 years in the field. The role involves optimizing compliance audits, connecting with regulatory bodies, and implementing security solutions. Candidates with experience in the automotive or high-tech industry are preferred. This position requires a strategic mindset to manage security risks effectively and stay updated with the latest technologies.

Qualifications

  • Experience in designing and deploying information security technology solutions.
  • Knowledge of information security regulatory laws (e.g., GDPR, PDPA).
  • Familiarity with operating system security hardening (Linux/Windows).

Responsibilities

  • Break down and support information security compliance requirements.
  • Interface with business departments for security compliance inspections.
  • Connect with third-party organizations for various audits.

Skills

Information security compliance
Audit strategy optimization
Security risk assessment
Incident response handling
Security training development

Education

15+ years experience in information security technology

Tools

SIEM tools
IDS/IPS
Firewall technologies
Vulnerability scanning tools
Job description
Job Responsibilities
  • Able to break down detailed information security compliance technical requirements and rules, and can support the identification, improvement, tracking, and post‑event evaluation of security risks associated with related business.
  • Interface with and organize business departments to participate in non‑China regulatory agencies' security compliance inspections of the company, and track the closed‑loop rectification of identified issues.
  • Connect with third‑party audit and certification bodies to assist in completing audit work for ISO 27001, ISO 27701, ISO 21434, TISAX, ESG, etc.
  • Keep track of and summarize the dynamic changes in laws, regulations, and industry policies related to information security within the scope of global business operations, and optimize and improve business processes regularly in accordance with business development needs.
  • Responsible for optimizing the audit strategy of SOC to improve efficiency;
  • Have practical experience in SOC operation, such as security scenario planning and optimization, security response incident handling,Familiar with major SOC platforms and SIEM tools.
  • Design and deploy information security technology solutions, including firewalls, intrusion detection and prevention systems, endpoint security, etc.
  • Monitor security incidents, promptly respond to and handle various information security threats and vulnerabilities.
  • Assess security risks of corporate information systems and develop corresponding security protection strategies.
  • Manage the configuration, administration, and maintenance of security devices to ensure their effective operation.
  • Support information security audits and compliance inspections, and contribute to the improvement of the security management system.
  • Conduct security awareness training to enhance employees' information security protection capabilities.
  • Stay updated on the latest information security technologies and threat trends, and continuously optimize security measures.
  • Prepare information security‑related documentation and reports to support management decision‑making.
Job Requirements
  • Over 15 years of relevant work experience in information security technology.
  • Experience in constructing information security systems and conducting security operations in large enterprises is preferred.
  • Candidates with security experience in the automotive or high‑tech industries are preferred.
  • Familiarity with information security architecture and mainstream security technologies (e.g., firewalls, IDS/IPS, VPN, DLP, etc.).
  • Proficient in protection technologies and implementation methods for network security, application security, and system security.
  • Knowledgeable in operating system security hardening (Linux/Windows) and security vulnerability management.
  • Capable of handling security incident response and emergency measures, with familiarity with security event analysis tools.
  • Skilled in using security management and monitoring platforms (e.g., SIEM, vulnerability scanning tools, etc.).
  • Familiar with non‑China information security regulatory laws and regulations (such as GDPR, PDPA), understand regional special requirements, and have experience in responding to non‑China regulatory audits.
  • Capable of leading and conducting information security system audits, such as ISO 27001, ISO 27701, ISO 21434, TISAX, ESG, etc.
  • Those with certificates such as Exin DPO/CISO/ISO 27701 Lead Auditor/CISSP/CISA are preferred.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.