Enable job alerts via email!

Information Security Officer - Scientific IT, ITSS (3 years renewable contract)

Agency for Science, Technology and Research (A*STAR)

Singapore

On-site

SGD 80,000 - 100,000

Full time

25 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking an Information Security Officer to enhance the security posture of scientific IT endpoints. This role involves responding to security incidents, performing risk assessments, and ensuring compliance with IT security policies. The ideal candidate will collaborate closely with research entities, implement security controls, and provide training on cybersecurity hygiene. Join a forward-thinking organization dedicated to advancing scientific research while safeguarding sensitive information. This position offers an opportunity to make a significant impact in the realm of IT security and compliance.

Qualifications

  • Bachelor's degree in IT or Computer Science is required.
  • Professional certifications like CISSP or CISM are preferred.

Responsibilities

  • Maintain security posture of IT endpoints and respond to incidents.
  • Conduct briefings on cybersecurity practices for staff.

Skills

Incident Response
Risk Assessment
Security Policy Implementation
Communication Skills
Cybersecurity Hygiene Practices

Education

Bachelor’s degree in Information Technology
Bachelor’s degree in Computer Science

Tools

Security Tools

Job description

Role Summary

The Information Security Officer (ISO) will be responsible for maintaining the security posture of scientific IT endpoints, responding to security incidents, and ensuring compliance with IT security policies and standards. The ISO will work closely with the Research Entities (REs) to provide comprehensive support in various security operations.

Key Responsibilities

  • Perform security patching, hardening, and remediation for scientific IT endpoints as per A*STAR’s IT Security policy and CIS recommended benchmarks.
  • Act as the first responder to investigate security incidents reported by users or detected by ITSS CERT team, including phishing email analysis, coordinating mitigative measures and preparing official incident reports.
  • Analyse advisories published by ITSS CERT and/or product manufacturers, perform risk assessments, and execute recommendations.
  • Provide consultation, evaluation, and implementation of security controls, including cross-border travel evaluations and pre-emptive checks against IT security policies.
  • Conduct briefings to reinforce cybersecurity hygiene practices, policy updates, and control implementation for new hires and existing staff.
  • Evaluate and implement security tools, processes, and procedures, provide extended support for security applications, and handle software whitelisting requests.
  • Responsible for evaluating risk statements based on security measures, providing recommendations on security strategies, assessing compliance with SOPs and guidelines, and conducting vulnerability checks to ensure effective risk mitigation.

Qualifications

  • Bachelor’s degree in information technology, Computer Science, or related field.
  • Professional certifications such as CISSP, CISM, or equivalent is preferred.
  • Experience in endpoint security, incident response, & IT security policy implementation.
  • Familiarity with industry security standards and compliance requirements.
  • Strong communication and presentation skills.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.