IT Security Specialist (Identity & AI)

Public Service Division

Singapore

On-site

SGD 90,000 - 150,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Identity governance experience
Privileged access management
Hybrid/cloud environments

Job summary

Public Service Division seeks an Identity & AI Security Specialist to strengthen identity security and enable secure Generative AI adoption across on-premises, cloud, and AI-enabled environments. You will design, implement and operate security controls for human, privileged, service, workload identities and AI agents.

You will collaborate with system owners, architects, operations teams, governance, and vendors to ensure governance, risk and compliance while maintaining platform resilience and

Qualifications

  • Have a degree in cybersecurity, computer science, information systems, engineering or a related discipline, or equivalent relevant professional experience.
  • Have at least 3 years of relevant experience in identity security, cybersecurity engineering, infrastructure operations or security architecture.
  • Hands-on experience implementing, administering or supporting enterprise identity and AI security platforms and their infrastructure.
  • Understanding of identity lifecycle management, authentication, authorization, Zero Trust and least privilege.
  • Experience with enterprise identity technologies and integration patterns (AD/Entra ID, SAML 2.0, OAuth 2.0, OIDC, SCIM, LDAP, Kerberos).
  • Ability to analyze complex security issues, translate requirements into practical controls, and troubleshoot identity integrations.
  • Ability to communicate risks and recommendations clearly to technical and non-technical audiences.
  • Organized, outcome-focused with clear documentation and records.

Responsibilities

  • Shape identity and AI security policies, standards, and reference architectures.
  • Assess risks, identify gaps, and recommend remediation for identities and AI systems.
  • Engineer IAM, PAM, MFA, SSO, Conditional Access, RBAC in hybrid environments.
  • Govern the identity lifecycle including privileged, service, and AI identities.
  • Review Generative AI and agentic AI use cases; define access controls and data access.
  • Maintain security platforms and infrastructure; monitor health, performance, and incidents.
  • Deliver secure and resilient solutions; coordinate deployment and handover.
  • Automate discovery, provisioning, credential management, and remediation.
  • Respond to incidents with root-cause analysis and containment measures.
  • Support audits with documentation and control evidence.

Skills

Identity security
Cybersecurity engineering
Infrastructure operations
Security architecture
Active Directory / Entra ID
SAML 2.0
OAuth 2.0 / OpenID Connect
REST APIs
Zero Trust
Auditors & vendors

Education

Cybersecurity degree or related discipline

Tools

PowerShell
Python
Cloud IAM
CIEM

Job description

[What the role is]

As an Identity & AI Security Specialist, you will strengthen HDB’s identity security capabilities and enable the secure adoption of Generative AI and agentic AI. Working with system owners, architects, operations teams, governance functions and partners, you will design, implement, administer and operate security controls and the supporting infrastructure for human identities, privileged accounts, service and workload identities, application credentials and AI agents across on-premises, cloud and AI-enabled environments. You will also help maintain the security, availability, performance and resilience of enterprise identity and AI security platforms and their underlying infrastructure.

[What you will be working on]
  • Shape identity and AI security: Review and improve policies, standards, referencearchitecturesand control requirements in line with the threat landscape, regulatoryobligationsand industry practices.
  • Assess and reduce risk: Identifygaps affecting human, privileged, machine and AI identities; conduct securityriskassessments; and recommend practical remediation measures and security solutions.
  • Engineer identity controls: Design, implement and enhance IAM, IGA, PAM, PIM, MFA, SSO, Conditional Access, RBAC, just-in-time access and access-governance capabilities across hybrid environments.
  • Govern the identity lifecycle: Establishcontrols for privileged accounts, service accounts, application identities, API credentials, workloadidentitiesand AI agents, including discovery, onboarding, recertification, credentialrotationand decommissioning.
  • Secure AI use cases: Review Generative AI and agentic AI solutions and define controls for agent authentication and authorisation, tool and data access, secrets, prompt injection, excessive agency, data leakage, human approval,loggingand auditability.
  • Maintain identity and AI security infrastructure: Administer,operateand maintain enterprise identity and AI security platforms and their underlying infrastructure. Monitor system health, capacity, availability, performance,securityand integration dependencies; perform patching, upgrades, hardening,backupand recovery activities; troubleshoot technical issues; and coordinate maintenance and technology refreshes with internal teams and vendors.
  • Deliver secureand resilientsolutions: Translate business, infrastructureand security requirements into solution designs and implementation plans; coordinate configuration, integration, testing,deploymentandoperational handover;andmanagelifecycle upgrades, capacity needs,resilienceand technology refresh activities.
  • Automate and integrate: Develop scripts, APIintegrationsand workflows to improve identity discovery, provisioning, access reviews, credential management,monitoringand remediation.
  • Operate and respond: Monitorthe health, availability, performance and security posture ofidentity and AI securityplatforms and their supporting infrastructure. Investigatealerts, servicedisruptionsand securityincidents; performroot-cause analysis;and implementtimelyrecovery,containment,remediationand preventivemeasures.
  • Support assurance: Maintaintechnical documentation, operatingproceduresand control evidence; support audits and assessments; and ensure excessive,dormantor unauthorised access is remediated promptly.
  • Communicate outcomes: Analyse risks, trends and control effectiveness, and present clear recommendations and management reports to technical and non-technical stakeholders.
[What we are looking for]
  • Have a degree in cybersecurity, computer science, information systems, engineering or a related discipline, or equivalent relevant professional experience.
  • Have at least 3 years of relevant experience in identity security, cybersecurity engineering, infrastructureoperationsor security architecture, including hands-on experience implementing,administeringorsupporting enterprise identity and AI security platforms and their underlying infrastructure.
  • Have practical knowledge of enterprise infrastructure operations, including Windows Server or Linux administration, platform monitoring, system hardening, patching, backup and recovery, high availability, capacity management, changemanagementand technical troubleshooting.
  • Understand identity lifecycle management, authentication, authorisation, Zero Trust, least privilege, segregation of duties, privileged access, accessreviewsand identity-related threat scenarios.
  • Have working knowledge of enterprise identity technologies and integration patterns, including Active Directory or Microsoft Entra ID, SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, LDAP, Kerberos,federationand REST APIs.
  • Can analyse complex security and operational issues, translate requirements into practical controls, and troubleshoot identity integrations and access-related incidents.
  • Can work effectively with system owners, architects, operations teams,auditorsand vendors, and communicate technical risks and recommendations clearly to different audiences.
  • Are organised, outcome-focused and able tomaintainclear technical documentation, operatingproceduresand implementation records.
Good tohave
  • Experience with identity governance, privilegedaccessand secrets-management platforms.
  • Experience with cloud IAM, CIEM, identity threat detection and response, non-human identity governance, workloadidentitiesor hybrid identity environments.
  • Experience conducting security architecture reviews, threat modelling or risk assessments for Generative AI, agenticAIor other emerging technologies.
  • Proficiencyin PowerShell, Python or similar languages for security automation, APIintegrationand orchestration; exposure to infrastructure as code orDevSecOpspractices is an advantage.
  • Relevant certifications such as CISSP, CISM, CCSP or equivalent.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Specialist (Identity & AI)
IT Security Specialist (Identity & AI)

sggovterp • Singapore

On-site
SGD 90,000 - 130,000
IT Security Specialist (Identity & AI)
IT Security Specialist (Identity & AI)

Government Technology Agency (GovTech) • Singapore

On-site
SGD 90,000 - 150,000
IT Security Specialist (Identity & AI)
IT Security Specialist (Identity & AI)

Housing and Development Board • Singapore

On-site
SGD 90,000 - 150,000
Identity & AI Security Architect
Identity & AI Security Architect

Housing and Development Board • Singapore

On-site
SGD 90,000 - 150,000
Identity & AI Security Architect (IAM, PAM, MFA)
Identity & AI Security Architect (IAM, PAM, MFA)

sggovterp • Singapore

On-site
SGD 90,000 - 130,000
Identity & AI Security Engineer
Identity & AI Security Engineer

Public Service Division • Singapore

On-site
SGD 90,000 - 150,000
Identity governance experience
Privileged access management
Hybrid/cloud environments
IT Security Specialist (Risk Assessment)
IT Security Specialist (Risk Assessment)

HDB Housing & Development Board • Singapore

On-site
SGD 90,000 - 150,000
Assistant Director, AI Enablement & Security Engineering
Assistant Director, AI Enablement & Security Engineering

A*STAR - Agency for Science, Technology and Research • Singapore

On-site
SGD 180,000 - 240,000
AI Security Architect (Senior - Lead)
AI Security Architect (Senior - Lead)

Morgan McKinley • Singapore

On-site
SGD 120,000 - 190,000
Cybersecurity Consultant – Access & Identity (IAM)
Cybersecurity Consultant – Access & Identity (IAM)

Ensign InfoSecurity (Singapore) Pte. Ltd. • Singapore

On-site
SGD 90,000 - 140,000