IT Security Specialist (Identity & AI)

Government Technology Agency (GovTech)

Singapore

On-site

SGD 90,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

GovTech is seeking an Identity & AI Security Specialist to strengthen identity security and enable secure adoption of Generative AI across on-premises, cloud, and AI-enabled environments.

You will design, implement, operate and monitor IAM/IGA/PAM/PIM/MFA/SSO, manage lifecycle of privileged and service identities, and collaborate with owners, architects and vendors to deliver secure, resilient solutions while maintaining strong documentation and audit readiness.

Qualifications

  • Have a degree in cybersecurity, computer science, information systems, engineering or a related discipline, or equivalent relevant professional experience.
  • Have at least 3 years of relevant experience in identity security, cybersecurity engineering, infrastructure operations or security architecture, including hands-on experience implementing, administering or supporting enterprise identity and AI security platforms and their underlying infrastructure.
  • Have practical knowledge of enterprise infrastructure operations, including Windows Server or Linux administration, platform monitoring, system hardening, patching, backup and recovery, high availability, capacity management, change management and technical troubleshooting.
  • Understand identity lifecycle management, authentication, authorisation, Zero Trust, least privilege, segregation of duties, privileged access, access reviews and identity-related threat scenarios.
  • Have working knowledge of enterprise identity technologies and integration patterns, including Active Directory or Microsoft Entra ID, SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, LDAP, Kerberos, federation and REST APIs.

Responsibilities

  • Strengthen identity and AI security across hybrid environments.
  • Design, implement, and operate IAM, IGA, PAM, PIM, MFA, SSO, and access governance controls.
  • Govern identity lifecycle including credential rotation and decommissioning.
  • Assess risk and conduct security risk assessments; recommend remediation measures.
  • Automate identity discovery, provisioning, access reviews and credential management via scripts and workflows.
  • Monitor health, performance and security of identity and AI security platforms and their infrastructure.
  • Coordinate configuration, testing, deployment and operational handover with teams and vendors.
  • Communicate risks and recommendations to technical and non-technical stakeholders.

Skills

Identity security
Cybersecurity engineering
Infrastructure operations
Security architecture
Windows Server
Linux administration
Active Directory
Microsoft Entra ID
SAML 2.0
OAuth 2.0/OpenID Connect
SCIM/REST APIs
Kerberos
PowerShell
Python
DevSecOps
CISSP/CISM/CCSP

Education

Cybersecurity-related degree or equivalent experience

Tools

Active Directory
Microsoft Entra ID
SAML 2.0
OAuth 2.0
OpenID Connect
SCIM
LDAP
REST APIs

Job description

What the role is

As an Identity & AI Security Specialist, you will strengthen HDB's identity security capabilities and enable the secure adoption of Generative AI and agentic AI. Working with system owners, architects, operations teams, governance functions, and partners, you will design, implement, administer, and operate security controls and the supporting infrastructure for human identities, privileged accounts, service and workload identities, application credentials and AI agents across on-premises, cloud and AI-enabled environments. You will also help maintain the security, availability, performance and resilience of enterprise identity and AI security platforms and their underlying infrastructure.

What you will be working on

Shape identity and AI security: Review and improve policies, standards, reference architectures and control requirements in line with the threat landscape, regulatory obligations and industry practices. Assess and reduce risk: Identify gaps affecting human, privileged, machine and AI identities; conduct security risk assessments; and recommend practical remediation measures and security solutions. Engineer identity controls: Design, implement and enhance IAM, IGA, PAM, PIM, MFA, SSO, Conditional Access, RBAC, just-in-time access and access-governance capabilities across hybrid environments. Govern the identity lifecycle: Establish controls for privileged accounts, service accounts, application identities, API credentials, workload identities and AI agents, including discovery, onboarding, recertification, credential rotation and decommissioning. Secure AI use cases: Review Generative AI and agentic AI solutions and define controls for agent authentication and authorisation, tool and data access, secrets, prompt injection, excessive agency, data leakage, human approval, logging and auditability. Maintain identity and AI security infrastructure: Administer, operate and maintain enterprise identity and AI security platforms and their underlying infrastructure. Monitor system health, capacity, availability, performance, security and integration dependencies; perform patching, upgrades, hardening, backup and recovery activities; troubleshoot technical issues; and coordinate maintenance and technology refreshes with internal teams and vendors. Deliver secure and resilient solutions: Translate business, infrastructure and security requirements into solution designs and implementation plans; coordinate configuration, integration, testing, deployment and operational handover; and manage lifecycle upgrades, capacity needs, resilience and technology refresh activities. Automate and integrate: Develop scripts, API integrations and workflows to improve identity discovery, provisioning, access reviews, credential management, monitoring and remediation. Operate and respond: Monitor the health, availability, performance and security posture of identity and AI security platforms and their supporting infrastructure. Investigate alerts, service disruptions and security incidents; perform root-cause analysis; and implement timely recovery, containment, remediation and preventive measures. Support assurance: Maintain technical documentation, operating procedures and control evidence; support audits and assessments; and ensure excessive, dormant or unauthorised access is remediated promptly. Communicate outcomes: Analyse risks, trends and control effectiveness, and present clear recommendations and management reports to technical and non-technical stakeholders.

What we are looking for

Have a degree in cybersecurity, computer science, information systems, engineering or a related discipline, or equivalent relevant professional experience. Have at least 3 years of relevant experience in identity security, cybersecurity engineering, infrastructure operations or security architecture, including hands-on experience implementing, administering or supporting enterprise identity and AI security platforms and their underlying infrastructure. Have practical knowledge of enterprise infrastructure operations, including Windows Server or Linux administration, platform monitoring, system hardening, patching, backup and recovery, high availability, capacity management, change management and technical troubleshooting. Understand identity lifecycle management, authentication, authorisation, Zero Trust, least privilege, segregation of duties, privileged access, access reviews and identity-related threat scenarios. Have working knowledge of enterprise identity technologies and integration patterns, including Active Directory or Microsoft Entra ID, SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, LDAP, Kerberos, federation and REST APIs. Can analyse complex security and operational issues, translate requirements into practical controls, and troubleshoot identity integrations and access-related incidents. Can work effectively with system owners, architects, operations teams, auditors and vendors, and communicate technical risks and recommendations clearly to different audiences. Are organised, outcome-focused and able to maintain clear technical documentation, operating procedures and implementation records. Good to have Experience with identity governance, privileged access and secrets-management platforms. Experience with cloud IAM, CIEM, identity threat detection and response, non-human identity governance, workload identities or hybrid identity environments. Experience conducting security architecture reviews, threat modelling or risk assessments for Generative AI, agentic AI or other emerging technologies. Proficiency in PowerShell, Python or similar languages for security automation, API integration and orchestration; exposure to infrastructure as code or DevSecOps practices is an advantage. Relevant certifications such as CISSP, CISM, CCSP or equivalent.

http://jobs.careers.gov.sg The Singapore Public Service plays a key role in the economic growth, progress and stability of Singapore by formulating and implementing government policies, as well as providing key public services. Whether you are a fresh graduate joining the workforce or an experienced professional, the Singapore Public Service offers a great variety of job opportunities for you. The work in the Public Service can be broadly categorised into the following sectors: Economic, Social, Security & External Relations, and Administration & Corporate Development.

Be part of the team that shapes the future of Singapore.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Specialist (Identity & AI)
IT Security Specialist (Identity & AI)

Housing and Development Board • Singapore

On-site
SGD 90,000 - 150,000
IT Security Specialist (Identity & AI)
IT Security Specialist (Identity & AI)

sggovterp • Singapore

On-site
SGD 90,000 - 130,000
IT Security Specialist (Identity & AI)
IT Security Specialist (Identity & AI)

Public Service Division • Singapore

On-site
SGD 90,000 - 150,000
Identity governance experience
Privileged access management
Hybrid/cloud environments
Security Operations Engineer
Security Operations Engineer

DADACONSULTANTS PTE. LTD. • Singapore

On-site
SGD 90,000 - 150,000
IT Security Specialist (Cloud)
IT Security Specialist (Cloud)

Government Technology Agency (GovTech) • Singapore

On-site
SGD 90,000 - 150,000
SENIOR PLATFORM & SECURITY ENGINEER - DIGITAL SERVICES & TECHNOLOGY OFFICE
SENIOR PLATFORM & SECURITY ENGINEER - DIGITAL SERVICES & TECHNOLOGY OFFICE

Government Technology Agency (GovTech) • Singapore

Hybrid
SGD 90,000 - 150,000
Senior AI Security Consultant
Senior AI Security Consultant

GovTech Singapore • Singapore

On-site
SGD 90,000 - 120,000
Assistant Manager, Data & AI
Assistant Manager, Data & AI

Government Technology Agency (GovTech) • Singapore

On-site
SGD 75,000 - 110,000
IT Security Specialist (Governance)
IT Security Specialist (Governance)

Housing & Development Board • Singapore

On-site
SGD 90,000 - 130,000
Identity & AI Security Engineer
Identity & AI Security Engineer

Public Service Division • Singapore

On-site
SGD 90,000 - 150,000
Identity governance experience
Privileged access management
Hybrid/cloud environments