Lead Software Engineer (Cybersecurity Specialist)

Capgemini

Singapore

On-site

SGD 180,000 - 260,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Capgemini Singapore is seeking a Senior Security Architect to lead the secure architecture across platforms and services. You will influence design decisions, work closely with engineering teams, and drive secure-by-design practices within delivery lifecycles.

You will apply deep cybersecurity expertise to regulated environments, balance risk with operational needs, and contribute to resilience initiatives across Capgemini's client engagements in Singapore.

Qualifications

  • 10+ years in Cybersecurity as a Software Engineer, not limited to auditing.
  • Hands-on design experience to build secure systems and write code when needed.
  • Experience designing security architecture in regulated/critical systems.
  • Familiarity with Singapore regulatory frameworks for critical systems.
  • Strong systems thinking for a national platform and complex ecosystems.
  • Depth across cloud security, identity, encryption, zero-trust, and secure SDLC.
  • Knowledge of MITRE ATT&CK, NIST, ISO 27001, CIS benchmarks.
  • Proficiency in at least one scripting language for policy-as-code.

Responsibilities

  • Own the reference security architecture: trust boundaries, identity, segmentation.
  • Embed secure-by-design controls within design and engineering teams.
  • Maintain a living threat model aligned to MITRE ATT&CK and related threats.
  • Engineer platform recoverability and degraded-mode operation.
  • Map dependencies and concentration risk across the ecosystem.
  • Design for cyber resilience exercises and incorporate lessons learned.

Skills

Cybersecurity
Security architecture
Coding skills
Scripting languages
Kotlin/JVM
TypeScript

Tools

Kotlin/JVM
TypeScript

Job description

About Capgemini

Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem. The Group reported 2024 global revenues of €22.1 billion.



About Capgemini

Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem. The Group reported 2024 global revenues of €22.1 billion.



Responsibilities

Secure and Resilient Architecture (Core Mandate)


  • Own the reference security architecture: trust boundaries, identity architecture, segmentation and trust-zone strategy, east-west controls, encryption and key management, and blast-radius containment.

  • Embed secure-by-design controls by working inside product and engineering teams throughout the delivery lifecycle, at design, solutioning, and implementation stages rather than as post-build validation.

  • Maintain a living threat model for systems and trust boundaries, referenced to MITRE ATT&CK and relevant adversary classes (including supply-chain threats), and use it to drive architecture and segmentation decisions rather than solely remediation prioritization.



Resilience and Business Continuity


  • Engineer platform recoverability and graceful degradation, including degraded-mode operation, recovery objectives, and containment designs that preserve critical business operations during cyber incidents.

  • Map and manage dependency and concentration risk across the ecosystem, including customers, partners, third‑party providers, and supply‑chain integrations.

  • Design for and participate in cyber resilience exercises, incorporating lessons learned into the architecture.



Defensive Terrain


  • Partner with security leadership as the technical design authority to define digital architecture and security boundaries using multi‑layered defence, translating security and regulatory requirements into practical architecture decisions.

  • Co‑develop defensible architecture and resilience strategies to support stakeholder, audit, and regulatory engagements.



Platform Leverage and Control Inheritance


  • Determine and document which security controls are inherited from enterprise platforms and shared services (e.g., cloud platforms, centralized monitoring, CI/CD guardrails, baseline security controls) versus those that application teams must build and maintain.

  • Maintain shared responsibility models as architectural artefacts to clearly define ownership and audit boundaries.



Continuous Assurance and Secure Delivery


  • Express security control intent as code through pipeline guardrails, policy‑as‑code, and continuous control monitoring so conformance can be observed continuously.

  • Champion secure SDLC and agile security practices within engineering teams, enabling teams rather than creating delivery bottlenecks.



Transitional / Day‑2 Scope (Explicitly Secondary)

Role

The following are transitional and not the primary remit. Operational validation of architecture designs should be performed by an independent assurance function to preserve control independence. The role provides engineering guidance rather than self‑validation:



  • Advisory and incident response engineering support in coordination with security and operational stakeholders.

  • Scoping and engineering guidance for external security assessments and penetration testing, with validation of remediation performed independently.



Requirements


  • 10+ years in Cybersecurity as a Software Engineer and not just in the capacity of auditing, pen‑testing, operational triage, etc.

  • We need someone that is hands on where the ideal candidate is someone that can design systems to be secure and can sit down to write code if they need to, someone that can coach our engineering teams on how to write better and more secure code, and someone that understands the cybersecurity tooling landscape to help us choose the right tools, we are not looking for a high level theorist / academic.

  • Demonstrated experience with designing security architecture into regulated / critical systems and platforms at the national or whole enterprise level, not just providing testing and assurance but actually designing and implementing.

  • Working command of Singapore regulatory frameworks for critical systems: e.g. WOG IM8 (Reform), with the ability to translate obligation into architecture and to delineate control inheritance for audit scoping.

  • Strong systems thinking: able to reason about a national platform as an interdependent whole — boundaries, failure modes, recoverability, and concentration risk — not as a checklist of controls.

  • Depth across cloud and platform security architecture (IaaS/PaaS/SaaS), identity, encryption and key management, segmentation and zero‑trust patterns, and secure SDLC / policy‑as‑code.

  • Fluency with architectural and adversary frameworks (MITRE ATT&CK, NIST, ISO 27001, CIS benchmarks) used to drive design decisions.

  • Ability to operate as a technical design authority alongside a CISO, clearly within the first line, and to produce architecture that withstands regulatory and audit scrutiny.

  • Proficiency in at least one scripting/automation language (e.g. Python, TypeScript, Shell/Bash, et) for policy‑as‑code and tooling.

  • Preferably proficient in both Kotlin/JVM stack and TypeScript.

  • Architecture‑leaning certifications are advantageous (e.g. CISSP / CISSP‑ISSAP, SABSA, cloud security architecture). Incident‑response and offensive certifications are useful but not the primary signal for this role.

  • Subject to the nature of the role, onsite presence during fixed hours may be required.



Let’s talk about what’s in it for you!

Passionate people are Capgemini’s Ace of Spades - join us to discover a career that will challenge, support and inspire you. Working at Capgemini you’ll find the rewards are more than just financial. You will work alongside some very smart and inspiring people on exciting projects and you will also enjoy incredible benefits. We offer flexible work practices and 40 hours of self‑development every year with a huge selection of learning opportunities to choose from.



As ‘Architects of Positive Futures’, Capgemini actively supports the community in 3 ways:



Diversity and Inclusion

- we believe diversity of thought fuels excellence and innovation, which is why we positively encourage applications from suitably qualified candidates regardless of their gender identity, ethnicity, sexual orientation, religion, ability, intersex status or age. To support our commitment to diversity and inclusion, we celebrate special events and days of significance that are important to our employees such as Diwali, Bastille Day, Pride, IDAHOBIT, IWD and International day of people with Disabilities. Our Employee Resource Groups Women@Capgemini and OutFront support the grassroots passion of employees to drive our diversity agenda and effect change.



Digital inclusion

- at Capgemini we are using our skills to drive social impact initiatives focusing on helping society address the impact of the digital and automation revolution. We also provide employees with opportunities to give back to the community through charity projects and volunteer days.



Environmental Sustainability

- Capgemini joined the CDP’s (Carbon Disclosure Project) prestigious ‘A list’ for its commitment to the Net‑Zero economy. We are focusing on helping our clients transform towards more sustainable business models and committing to reduce our own carbon emissions (GHG) by 20% per employee by 2020.



World’s Most Ethical Companies

for the last 8 years in a row, ethics and values are at the heart of Capgemini’s corporate culture and business. Embedded in our DNA, our seven values – Honesty, Boldness, Trust, Team Spirit, Freedom, Fun and Modesty – have remained the same since company inception in 1967. To see how we bring these values to life, click here to listen to some of our employee’s stories.



Come join us, bring your whole self to work, create new possibilities for you, your customers and your community and help us to be Architects of Positive Futures.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Software Engineer (Java)
Software Engineer (Java)

Capgemini • Singapore

On-site
SGD 90,000 - 150,000
Flexible work practices
Learning opportunities
40 hours self-development annually
DevSecOps Engineer
DevSecOps Engineer

Capgemini • Singapore

On-site
SGD 90,000 - 140,000
Flexible work practices
40 hours of self‑development per year
Senior Backend Engineer
Senior Backend Engineer

CAPGEMINI SINGAPORE PTE. LTD. • Singapore

On-site
SGD 90,000 - 180,000
Senior Software Engineer (Kotlin and React)
Senior Software Engineer (Kotlin and React)

CAPGEMINI SINGAPORE PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Software Developer
Software Developer

CAPGEMINI SINGAPORE PTE. LTD. • Singapore

On-site
SGD 60,000 - 120,000
Senior Frontend Engineer
Senior Frontend Engineer

Capgemini • Singapore

On-site
SGD 120,000 - 180,000
IT System / Business Analyst
IT System / Business Analyst

Capgemini • Singapore

On-site
SGD 70,000 - 90,000
Business Analyst
Business Analyst

Capgemini • Singapore

On-site
SGD 80,000 - 110,000
Flexible work practices
Self-development opportunities
Learning incentives
Account Executive
Account Executive

CAPGEMINI SINGAPORE PTE. LTD. • Singapore

On-site
SGD 180,000 - 300,000
Flexible work practices
40 hours self-development yearly
Learning opportunities
Project Manager (Government Digital Products)
Project Manager (Government Digital Products)

Capgemini • Singapore

On-site
SGD 120,000 - 180,000
Flexible work practices
Learning & development opportunities
Diversity & inclusion culture