Enable job alerts via email!

Lead Consultant, GRC

Singtel Group

Singapore

On-site

SGD 60,000 - 100,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a Lead Consultant in GRC to join their dynamic team. This role involves conducting information security risk assessments, developing security frameworks, and managing compliance audits. The ideal candidate will have extensive experience in information security governance and risk management, with a strong understanding of relevant standards and frameworks. This is a fantastic opportunity to work on impactful projects across the Asia Pacific region, where you can leverage your expertise to enhance compliance and security initiatives. Join a forward-thinking firm that values adventure, excellence, and integrity in its mission to create extraordinary outcomes.

Qualifications

  • 5+ years in information security governance, risk management, and audit.
  • Knowledge of ISO 27001, NIST CSF, and security technologies.

Responsibilities

  • Conduct information security risk assessments and compliance reviews.
  • Manage multiple projects ensuring timely service delivery.
  • Provide consultation on standards and policies.

Skills

Information Security Governance
Risk Management
Audit
Interpersonal Skills
Oral Communication
Written Communication

Education

Bachelor’s degree in Information Systems
Bachelor’s degree in Computer Science
Bachelor’s degree in Engineering

Tools

ServiceNow IRM
RSA Archer

Job description

NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to achieve extraordinary things, creating lasting value and impact for our communities, partners, and people. Our diverse workforce of 13,000 has delivered large-scale, mission-critical, and multi-platform projects for governments and enterprises in Singapore and the APAC region.

We’re searching for a Lead Consultant, GRC to be part of our diverse team of talents here at NCS!

If you believe in going above and beyond, want to exemplify the best, and wish to bring people and technology together like never before, then we would love to have a conversation with you!

Responsibilities:
  • Conduct information security risk assessments, compliance reviews and/or audits on client’s systems, which include IT and/or OT infrastructure and applications
  • Develop and review client’s information security framework and policies
  • Work with internal and external stakeholders to deliver consultancy and advisory services
  • Manage multiple projects to ensure that services are completed in a timely manner
  • Evaluate applicable changes on standards, policies, directives and guidelines from the Client and disseminate to project teams for adherence.
  • Conduct Annual Self Attestation for project teams to gather compliance posture, track remediation to closure and provide timely updates to Client.
  • Plan and conduct Independent Reviews (IT process audits) on selected Applications/ Infrastructure with approval from Client to uncover gaps, improvement areas with the inclusion of tracking & reporting of remediation status to closure.
  • Conduct quarterly briefing sessions to project teams on frequently used policies/ directives and common observations/improvement area from audits to enhance compliance and create awareness.
  • Provide consultation to project teams on queries related to standards/ policies/ directives.
  • Provide advisory and QA to project teams and stakeholders on their responses, evidence, remediation plan to auditors or compliance related declarations during external audit exercise.
  • Propose and implement improvement initiatives to enhance audit processes and compliance readiness.
A little bit about you:
  • Bachelor’s degree in Information Systems, Computer Science, Engineering or equivalent
  • Minimum of 5 years working in areas of information security governance, risk management, and audit; experience in other areas of cybersecurity will be considered
  • Experience in Singapore based Government projects will have an added advantage
  • Knowledge of
    • Information security standards and frameworks such as ISO 27001/2, MAS TRM, NIST CSF, GovTech IM8, and CIS Controls
    • Security technologies and operations
    • GRC tools (ServiceNow IRM, RSA Archer)
  • Preferable to be certified in CISSP, CISM, CISA, CRISC, ISMS Lead Auditor, ServiceNow IRM, COBIT, ITIL
  • Team player with interpersonal skills
  • Excellent in oral and written communication

We are driven by our AEIOU beliefs—Adventure, Excellence, Integrity, Ownership, and Unity—and we seek individuals who embody these values in both their professional and personal lives. We are committed to our Impact: Valuing our clients, Growing our people, and Creating our future.

Together, we make the extraordinary happen.

Learn more about us at ncs.co and visit our LinkedIn career site.

We handle all profiles with the highest level of confidentiality.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.