Enable job alerts via email!

IT Security Governance & Assurance Specialist

NETS

Singapore

On-site

SGD 70,000 - 90,000

Full time

22 days ago

Job summary

A financial services company in Singapore is seeking an IT Security Governance & Assurance Specialist. You will develop and maintain security policies, ensure regulatory compliance, conduct risk assessments, and manage third-party security. The ideal candidate has a degree in Cybersecurity and over 3 years of relevant experience. Certification in CISSP, CISA, or CRISC is preferred.

Qualifications

  • 3+ years of experience in security governance, risk management, and compliance.
  • Knowledge of industry security frameworks and regulatory requirements.
  • Experience with risk assessments and cybersecurity audits.

Responsibilities

  • Develop, implement, and maintain security policies and standards.
  • Ensure compliance with regulatory requirements.
  • Conduct risk assessments and monitor security threats.

Skills

Cybersecurity knowledge
Risk management
Analytical skills
Communication skills
Stakeholder management

Education

Bachelor's degree in Cybersecurity or related field

Tools

ISO 27001
NIST framework
CIS standards
Job description
IT Security Governance & Assurance Specialist

Develop, implement, and maintain security policies, procedures, and standards in line with industry best practices (ISO 27001, NIST, CIS, etc.).

Ensure compliance with regulatory requirements (MAS TRMG, CCoP).

Assist in internal audits and security assessments to identify gaps and recommend corrective actions.

Support third-party risk assessments and vendor security compliance.

Conduct risk assessments and identify potential security threats, vulnerabilities, and mitigation strategies.

Develop and maintain a security risk register, tracking risk treatment plans and progress.

Monitor emerging security threats and ensure proactive risk management strategies.

Assist in business continuity and disaster recovery planning related to security risks.

Security Awareness & Training:

Develop and deliver security awareness training programs for employees.

Promote a culture of security by advising stakeholders on best practices.

Required Qualifications & Skills:

Bachelor's degree in Cybersecurity, Information Security, IT, or a related field.

3+ years of experience in security governance, risk management, and compliance.

Knowledge of industry security frameworks (NIST, etc.).

Familiarity with regulatory requirements (MAS, CCoP).

Experience with risk assessments, cybersecurity audits and compliance monitoring.

Strong analytical and problem-solving skills.

Excellent communication and stakeholder management skills.

Relevant certifications such as CISSP, CISA or CRISC

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.