Job Search and Career Advice Platform

Enable job alerts via email!

IT Security Officer

UNISOFT INFOTECH PTE LTD

Singapore

On-site

SGD 70,000 - 90,000

Full time

2 days ago
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading technology firm in Singapore is looking for a professional in System Security and Compliance. The role involves conducting security reviews, managing alerts, providing governance support, and preparing reports. Candidates should possess a relevant bachelor’s degree and at least 2 years of experience in Cloud cybersecurity, alongside recognized security certifications. Strong analytical and communication skills are essential for effective collaboration within the team and with external vendors.

Qualifications

  • Degree in computer science, IT, Cybersecurity, or a related science.
  • 2+ years of experience in Cloud cybersecurity.
  • Proven expertise in security assessment and vulnerability management.

Responsibilities

  • Conduct security reviews and system hardening checks.
  • Monitor phishing alerts and support audit activities.
  • Provide vulnerability monitoring and implement mitigation actions.
  • Prepare monthly reports on security tasks and issues.
  • Coordinate IT security awareness training for users.

Skills

Cloud cybersecurity
Security assessment
Vulnerability management
Analytical skills
Communication skills

Education

Bachelor's degree in computer science, IT, Cybersecurity, or related field
Internationally recognized security certifications (CISSP, CISM, CRISC, CISA)

Tools

Azure Log Analytics
AWS CloudWatch
AWS Security Hub CSPM
Microsoft Defender for Cloud
Job description
System Security and Compliance
  • The team will conduct security reviews, system hardening checks and conduct risk assessment based on deviations to hardening requirements (e.g. CIS Benchmarks).
  • The team will also create PUB hardening baselines using available benchmarks (e.g. CIS Benchmarks or those provided by the manufacturer).
  • Responsibilities include create, review and maintain Standard Operation Procedures (SOPs), planning and scheduling annual reviews of security hardening documents, performing compliance reviews, and ensuring remediation of findings.
Management and responding to security alerts
  • Monitoring phishing alerts and communicating with staff regarding malicious emails, supporting audit activities, vulnerability scans, and penetration tests. Communicating and following SOP to perform malware scans on endpoints with anti-virus alerts.
  • PUB has cloud security engineers that manage cloud security tools like Cloud Security Posture Management.
  • The ITSO shall work with the cloud security engineers to communicate with System Managers to follow up on findings identified in CSPM and Government in‑house CSPM tool (Cloudscape).
  • The ITSO shall perform routine review of the findings flagged by the CSPM tools, monitoring of the suppression expiry to ensure its validity, following up directly with system Officers‑in‑Charge and infrastructure teams.
Technical Support and Governance
  • The role involves providing vulnerability monitoring and recommending and implementing mitigation actions to system Officers‑in‑Charge and infrastructure teams.
  • The team will also provide security advice or proposals on security measures for new projects and functionalities and monitor governance compliance tools, such as Cloudscape.
  • The team will also provide their risk‑based assessments to prioritize rectification of alerts (e.g. Cloudscape).
Reporting and Training
  • Monthly reports to summarise the progress of tasks and to flag outstanding non‑remediated issues/alerts across the key security domains will be compiled collaboratively by the team and presented to the Board's Cybersecurity team.
  • The team will coordinate monthly IT security awareness training and briefings for users to enhance organisational security posture, with team members contributing their specialised expertise to deliver comprehensive training programmes.
Qualifications
  • All candidates must possess a bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field along with minimally an internationally recognised security certifications such as CISSP, CISM, CRISC, or CISA.
  • Proven experience of at least 2 years in Cloud cybersecurity is required, including security assessment, vulnerability management within cloud and on‑prem environments, particularly GCC.
  • Familiarity with security platforms such as Azure Log Analytics, AWS CloudWatch, AWS Security Hub CSPM, and Microsoft Defender for Cloud are preferred.
  • Strong analytical and problem‑solving skills are necessary to resolve security related issues, along with excellent communication skills in both spoken and written English to effectively collaborate with team members, system Officers‑in‑Charge, infrastructure teams, and external vendors.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.