Singapore
On-site
SGD 70,000 - 90,000
Full time
Job summary
A leading IT security firm in Singapore is seeking an IT Security Officer (ITSO) to develop and maintain security policies, ensure compliance with industry standards, and manage security incidents. Candidates must have a Bachelor's degree in Computer Science or a related field and relevant certifications such as CISSP or CISM. Excellent analytical and communication skills are essential for success in this role.
Qualifications
- Proven experience in IT security, focusing on infrastructure security.
- Strong understanding of information security principles and regulations.
- Experience liaising with external partners on security matters.
Responsibilities
- Develop and maintain IT security policies and action plans.
- Implement and manage risk assessment methodologies.
- Collaborate with partners to resolve IT security incidents.
Skills
Analytical skills
Problem-solving skills
Written communication skills
Verbal communication skills
Teamwork
Education
Bachelor's degree in Computer Science, IT, or Cybersecurity
Tools
Security tools and technologies
Forensic investigation tools
Overview
IT Security Officer (ITSO)
Responsibilities
- Develop and maintain IT security policies and action plans, reviewing them at least annually or as required by the Customer.
- Evaluate and recommend IT security products and solutions for implementation within the Customer's IT infrastructure.
- Implement and manage risk assessment methodologies, ensuring compliance with relevant service management requirements and industry standards.
- Develop and implement security management frameworks and governance structures as specified by the Customer.
- Establish and manage IT Security Incident Management processes, including detection, response, and handling of security incidents according to Customer guidelines.
- Collaborate with external partners and suppliers to resolve IT security incidents effectively.
- Participate in and contribute to industry-wide IT security incident response simulations and technical assessment exercises.
- Conduct forensic investigations when required, including secure disk image acquisition and analysis within specified timeframes.
- Monitor, analyse, and report on emerging security threats, vulnerabilities, and solutions relevant to the Customer's IT infrastructure.
- Conduct regular meetings with key stakeholders to highlight security issues and propose improvements to the Customer's IT infrastructure.
- Liaise and coordinate with external suppliers, security organisations, and the Government on IT security matters related to the Customer's infrastructure.
- Perform additional activities as necessary to secure the Customer's I infrastructure.
- Review and follow up on security reports generated from central security tools, providing timely updates to the Customer.
- Manage the inventory of IT assets to be monitored by central security tools, ensuring compliance and proper onboarding of servers, networks, and databases.
Qualifications
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field
- Proven experience in IT security, with a focus on infrastructure security
- Strong understanding of information security principles, best practices, and relevant regulations
- Experience with a range of security tools and technologies
- Familiarity with forensic investigation techniques and tools
- Excellent analytical and problem-solving skills
- Strong written and verbal communication skills
- Ability to work effectively both independently and in a team environment
- Experience in liaising with external partners and suppliers on security matters
Certifications
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- GIAC Certified Incident Handler (GCIH)