Information Technology Security Officer

SEDHA CONSULTING PTE. LTD.

Singapore

On-site

SGD 120,000 - 180,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

SEDHA CONSULTING PTE. LTD.

is seeking an Information Technology Security Officer to support governance, assurance, and security management across architecture, vulnerability assessment and risk management, cloud security posture management, software clearance, firewall and network deviation management, and policy standards documentation. This role requires strong coordination, analytical, documentation, and stakeholder management skills with a solid understanding of enterprise cybersecurity

Qualifications

  • Experience with enterprise cybersecurity controls and governance processes.

Responsibilities

  • Maintain security architecture diagrams, records, and approved designs.
  • Coordinate and schedule VAPT engagements with owners and testers.
  • Maintain VAPT tracker and remediation milestones.
  • Coordinate cybersecurity risk assessment exercises and track risk treatment.
  • Maintain hardening compliance records and track remediation progress.
  • Monitor CSPM findings and remediation status.
  • Receive, log, and track software security clearance requests.
  • Coordinate firewall rule changes and network deviation reviews.
  • Assist in drafting and updating cybersecurity policies, standards, and procedures.
  • Collate cybersecurity data and prepare routine security metrics and reports.

Job description

Information Technology Security Officer

The Information Technology Security Officer will support the cybersecurity governance, assurance, and security management activities across security architecture, vulnerability assessment and penetration testing, risk assessment, system hardening, cloud security posture management, software clearance, firewall and network deviation management, cybersecurity policies and standards, and security metrics reporting.

The officer will coordinate security reviews and assessments, maintain cybersecurity registers and trackers, follow up on remediation and outstanding actions with relevant stakeholders, prepare security reports and management dashboards, and support the upkeep of cybersecurity policies, standards, specifications, and documentation.

This role requires strong coordination, analytical, documentation, and stakeholder management skills, with a good understanding of enterprise cybersecurity controls, risk management, and governance processes.

Roles and Responsibilities
Security Architecture
  • Assist in maintaining security architecture diagrams, records, and approved design documentation.
  • Track security architecture review requests and coordinates input from project teams and relevant stakeholders.
  • Maintain records of architecture decisions, recommendations, and approved designs.
  • Support preparation of security advisory materials and architecture review documentation.
Vulnerability Assessment & Penetration Testing
  • Coordinate and schedule VAPT engagements with system owners, vendors, and security testers.
  • Maintain the VAPT tracker and follow up on remediation of identified vulnerabilities.
  • Coordinate re-testing activities and update finding closure status.
  • Assist in preparing VAPT reports, summaries, and presentation materials.
Risk Assessment
  • Coordinate cybersecurity risk assessment exercises with system owners and stakeholders.
  • Maintain the cybersecurity risk register and track risk treatment and remediation actions.
  • Support preparation of risk reports and management review materials.
  • Facilitate risk acceptance, exception, and approval processes in accordance with the requirements.
Hardening Compliance
  • Coordinate security hardening compliance assessments with system and infrastructure teams.
  • Track hardening gaps and follow up on remediation progress.
  • Maintain hardening compliance records, checklists, and trackers.
  • Support preparation of periodic hardening compliance reports.
Cloud Security Posture Management
  • Monitor and triage findings generated by Cloud Security Posture Management tools.
  • Track cloud security misconfigurations and follow up on remediation with system and cloud owners.
  • Maintain CSPM findings and remediation status records.
  • Prepare periodic cloud security posture reports and summaries.
Software Clearance
  • Receive, log, and track software security clearance requests.
  • Coordinate with requestors and vendors to obtain required technical and security documentation.
  • Maintain the software clearance register and approval status.
  • Support preparation of software security evaluation summaries and monitor expiring clearances.
Firewall & Network Deviation Management
  • Receive, track, and maintain firewall rule change and network security deviation requests.
  • Follow up with requestors and network teams on outstanding actions and expiring deviations.
  • Maintain deviation registers and prepare review summaries for approval.
  • Coordinate periodic firewall rule and network deviation reviews with relevant teams.
Policy, Standards & Governance / Cyber Specifications
  • Assist in drafting, reviewing, and updating cybersecurity policies, standards, guidelines, and procedures.
  • Maintain the cybersecurity policy and standards documentation repository.
  • Track document review cycles, approvals, and expiry dates.
  • Support preparation and review of cybersecurity specifications for projects, procurements, and tenders.
Security Metrics & Reporting
  • Collate and consolidate cybersecurity data and status updates from relevant teams and systems.
  • Maintain cybersecurity dashboards covering vulnerabilities, risks, deviations, compliance, and audit items.
  • Prepare routine security metrics and management reports.
  • Follow up with responsible parties on outstanding cybersecurity actions and remediation items.
Security & Compliance
  • Ensure activities are performed in accordance with the Board's cybersecurity policies, applicable regulatory requirements, and the Cybersecurity Code of Practice (CCoP).
  • Support cybersecurity assessments, internal and external audits, and evidence collection activities.
  • Maintain accurate and up-to-date cybersecurity records, reports, registers, and supporting documentation.
  • Protect sensitive and security-classified information in accordance with the Board's requirements.
Technical Requirements
  • Good understanding of enterprise cybersecurity concepts, including vuln
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Security Officer
IT Security Officer

User Experience Researchers Pte Ltd • Singapore

On-site
SGD 120,000 - 180,000
M01 - Information Technology Security Officer
M01 - Information Technology Security Officer

FPT Asia Pacific • Singapore

On-site
SGD 120,000 - 180,000
IT Security Officer (Cybersecurity)
IT Security Officer (Cybersecurity)

ITCAN PTE. LIMITED • Singapore

On-site
SGD 70,000 - 120,000
IT Security Officer
IT Security Officer

PCCW SOLUTIONS INSYS PTE. LTD. • Singapore

On-site
SGD 100,000 - 150,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC First Campus Co-operative Ltd • Singapore

On-site
SGD 90,000 - 150,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED • Singapore

On-site
SGD 70,000 - 120,000
IT Security Officer (ITSO)
IT Security Officer (ITSO)

CAPGEMINI SINGAPORE PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC First Campus • Singapore

On-site
SGD 90,000 - 130,000
SL2703 - Security Engineer
SL2703 - Security Engineer

FPT ASIA PACIFIC PTE. LTD. • Singapore

On-site
SGD 70,000 - 110,000
VP Security Operations (Cybersecurity)
VP Security Operations (Cybersecurity)

SBS Transit Limited • Singapore

On-site
SGD 180,000 - 260,000