Job Search and Career Advice Platform

Enable job alerts via email!

IT Security Officer

ETEAM WORKFORCE PTE. LTD.

Singapore

On-site

SGD 60,000 - 80,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading IT services company is seeking IT Security Officers to serve as experts in IT security. The role involves ensuring IT infrastructure security, compliance with policies, and overseeing cyber operations. Candidates must have a degree in a relevant field and security certification, along with at least 2 years of experience in cloud cybersecurity. Strong analytical skills and effective communication are essential. Join our team to enhance cybersecurity strategy in a dynamic environment.

Qualifications

  • Bachelor’s degree and internationally recognised security certification required.
  • Experience of at least 2 years in Cloud cybersecurity.
  • Familiarity with Azure, AWS, and security platforms is preferred.
  • Strong analytical skills for resolving security issues.
  • Excellent communication skills necessary.

Responsibilities

  • Conduct security reviews and risk assessments.
  • Monitor security alerts and support audit activities.
  • Collaborate with cloud security engineers on findings.
  • Provide security advice for new projects.
  • Compile monthly reports and conduct security awareness training.

Skills

Cloud cybersecurity
Security assessment
Vulnerability management
Analytical skills
Communication skills
Collaborative skills

Education

Bachelor’s degree in computer science, IT, Cybersecurity or related field
CISSP, CISM, CRISC, or CISA certification

Tools

Azure LogAnalytics
AWS CloudWatch
AWS Security Hub CSPM
Microsoft Defender for Cloud
Job description
Working Hours

Monday to Friday, 8:30 am to 6 pm.

Job Summary

We are seeking a team of IT Security Officers (ITSOs) who will serve as IT security subject matter experts, providing comprehensive support for system managers and the Board’s Cybersecurity team. The team will be responsible for ensuring the security of the IT infrastructure, compliance with security policies and standards, and overseeing cyber operations across all hosting environments (On premise, GDC, GCC, GCC+ and etc). The scope of responsibilities will be distributed among the team members to ensure comprehensive coverage and effective security operations.

Team Structure and Scope Distribution

The ITSO team will divide responsibilities across key security domains to ensure comprehensive coverage. The team will directly report to the Board’s Cybersecurity Team. Team members will focus on specialised areas including security monitoring, system security and compliance activities, technical support, risk assessments, and governance functions. This distribution ensures specialised expertise whilst maintaining collaborative oversight across all security functions.

Key Responsibilities
  • System Security and Compliance: conduct security reviews, system hardening checks and risk assessments based on deviations to hardening requirements (e.g., CIS Benchmarks). Create PUB hardening baselines using available benchmarks (e.g., CIS Benchmarks or those provided by the manufacturer). Create, review and maintain Standard Operation Procedures (SOPs), plan and schedule annual reviews of security hardening documents, perform compliance reviews, and ensure remediation of findings.
  • Management and responding to security alerts: monitor phishing alerts and communicate with staff regarding malicious emails, support audit activities, vulnerability scans, and penetration tests. Follow SOP to perform malware scans on endpoints with anti‑virus alerts.
  • PUB has cloud security engineers that manage cloud security tools like Cloud Security Posture Management. The ITSO shall work with the cloud security engineers to communicate with System Managers, follow up on findings identified in CSPM and the Government in‑house CSPM tool (Cloudscape). The ITSO shall perform routine review of the findings flagged by the CSPM tools, monitor suppression expiry to ensure its validity, follow up directly with system Officers‑in‑Charge and infrastructure teams, and provide recommended actions to rectify in a timely manner. Maintain a tracking system to monitor the status of remediation efforts, document whether recommended actions have been completed, are in progress, or require escalation, ensuring accountability and timely resolution of security issues. Make assessment if security recommendations are required or false alarms using the GenAI tool provided by PUB to aid assessment.
  • Technical Support and Governance: provide vulnerability monitoring and recommend and implement mitigation actions to system Officers‑in‑Charge and infrastructure teams. Provide security advice or proposals on security measures for new projects and functionalities and monitor governance compliance tools, such as Cloudscape. Provide risk‑based assessments to prioritise rectification of alerts (e.g., Cloudscape). Manage and update governance compliance tools with relevant information to suppress affected findings when approval is sought. Respond to auditors’ RFI on security monitoring.
  • Reporting and Training: compile monthly reports summarising the progress of tasks and flag outstanding non‑remediated issues/alerts across the key security domains, and present them to the Board’s Cybersecurity team. Coordinate monthly IT security awareness training and briefings for users to enhance organisational security posture, with team members contributing their specialised expertise to deliver comprehensive training programmes.
Qualifications
  • All candidates must possess a bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field and at least an internationally recognised security certification such as CISSP, CISM, CRISC, or CISA.
  • Proven experience of at least 2 years in Cloud cybersecurity is required, including security assessment and vulnerability management within cloud and on‑prem environments, particularly GCC.
  • Familiarity with security platforms such as Azure LogAnalytics, AWS CloudWatch, AWS Security Hub CSPM, and Microsoft Defender for Cloud is preferred.
  • Strong analytical and problem‑solving skills are necessary to resolve security‑related issues, and excellent communication skills in both spoken and written English are required to effectively collaborate with team members, system Officers‑in‑Charge, infrastructure teams, and external vendors.
  • Strong collaborative skills are essential to ensure seamless coordination between the specialised roles whilst maintaining comprehensive security coverage.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.