Manager, Cyber Engineering

StarHub

Singapore

On-site

SGD 80,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading telecommunications provider is looking for a Cyber Risk Specialist in Singapore. This role involves advising on security measures, managing compliance audits, and executing cyber risk assessments. Candidates should hold a relevant degree and have 8–10 years of experience in the Telecommunications sector. Key skills include risk management, strong analytical abilities, and excellent communication. Join a dynamic team to enhance cybersecurity frameworks while ensuring compliance with regulatory standards.

Qualifications

  • 8-10 years' experience in the Telecommunications sector.
  • Understanding of service risk and impact, SLAs, and cyber resilience.
  • Experience in compliance frameworks and regulatory requirements.

Responsibilities

  • Advise Business Unit Heads on security posture.
  • Lead threat modeling sessions for new systems.
  • Execute cyber risk assessments on identified gaps.
  • Coordinate with Control Performers for security activities.
  • Develop audit plans and verify technical evidence.

Skills

Strong analytical skills
Excellent communication
Team collaboration
Risk management
Project management

Education

Degree in Information Technology or Cybersecurity

Tools

CISA Certification
ISO 27001 Lead Auditor
Cloud Auditing Knowledge (CCAK)

Job description

Role Mission

Reporting to the Chief Technology Officer, the role plays a pivotal role in ensuring the organization's adherence to regulatory and internal policies, managing risk, and maintaining a robust governance framework.

Accountabilities

As a 1LoD Cyber Risk Specialist, you will be the dedicated technical partner for Business Unit Heads (Risk Owners) and Technical Leads (Control Owners). Your responsibility is to translate complex cyber threats into business impact, manage the system development lifecycle of security controls, and ensure full compliance with StarHub policies and Singaporean regulatory frameworks (IMDA TCS/BCS, CSA CCoP 2.0).

Responsibilities

Risk & Control Ownership Support

  • Advisory to Risk Owners: Assist Business Unit Heads in overseeing the security posture of critical assets. Translate technical vulnerabilities into "Business Impact" language to facilitate informed risk acceptance.
  • Control Lifecycle Management: Act on behalf of Control Owners to design, implement, and document the technologies required to mitigate risks.
  • Execution Oversight: Coordinate with Control Performers (Support Teams) to ensure daily security activities are executed according to defined standards.
  • Documentation: Maintain formalized standard operating procedures and plans that align with StarHub’s Information Security policies and national requirements.

Operational Cyber Risk Management

  • Threat Modelling: Lead threat modelling sessions during the design phase of new systems or infrastructure changes to identify attack vectors before they go live.
  • Risk Assessments: Execute cyber risk assessments on identified gaps and vulnerabilities — through security deviations, operational activities (including but not limited to vulnerability scans, penetration testing, and security events), external threats, or audit findings — to qualify the risk posed to IT and Operational environments.
  • Remediation Strategy: Propose risk mitigation/treatment strategies (in the context of cybersecurity- corrective action/remediation plans and proposed security controls – Directive, Deterrence, Preventive, Detective, Corrective, and Compensating) to remediate identified gaps and vulnerabilities and maintain compliance with the Starhub Information security policies, standards and Singapore's national/sectoral requirements (e.g., CSA/IMDA).
  • Transparency: Provide Risk Owners with operational impact assessments, ensuring they understand potential service disruptions before accepting the residual risks.
  • Continuous Monitoring: Track and report on the status of remediation plans to ensure they are completed within agreed-upon timelines.

Compliance (Audit & Assessment) Management

  • Collaborate with ISO to facilitate the end-to-end audit & assessment process (including but not limited to CII audits, Starhub control Self-assessment, or any ad-hoc assessment/testing). You will take the lead in ensuring Risk and Control Owners meet audit milestones and deadlines.
  • Support the selection and appointment of auditors, providing consultation on fees and operational feasibility.
  • Develop and execute a comprehensive audit plan—including scope, resource allocation, and budgeting—to verify that Starhub’s systems, infrastructure, and operations are resilient and fully compliant with all internal policies and regulatory requirements.
  • Take responsibility for the collection and verification of technical evidence (Request for information such as logs, screenshots, configurations). Ensure all artefacts are accurate, reflect the current state of critical assets, and meet the ISO’s standards before submission.
  • Collaborate with Risk and Control Owners to develop technically sound and operationally viable remediation plans for draft audit & assessment findings. This involves providing the necessary technical context to justify management’s response and ensuring that the proposed remediation actions are both effective and achievable within the business environment.
Qualifications
  • Degree in Information Technology, Cybersecurity or related field.
  • 8–10 years' experience, preferably in Telecommunications sector with deep understanding of service risk and impact, SLAs, network, knowledge of balancing service delivery vs cyber risks and must be able to balance availability and cyber resilience.
  • Certified Information Systems Auditor (CISA), Certificate of Cloud Auditing Knowledge (CCAK) or equivalent, ISC2 or SSCP/CISSP.
  • ISO 20000, 22301 and/or ISO 27001 Lead Auditor or equivalent.
  • Knowledge of compliance frameworks and regulatory requirements (NIST, ISO 27001, Cybersecurity Act, Personal Data Protection Act, Payment Card Industry Data Security Standard, IMDA Code of Practice for Broadcasting & Telecommunications, etc).
  • Experience in cloud and operational technology environments and / or critical information infrastructures will be an added advantage.
  • Highly disciplined and diligent in driving deliverables strictly within defined timelines.
  • A sharp, analytical mind and able to pro-actively anticipate problems and risks to mitigate ahead of time.
  • Logical and methodological, with good planning & organizational skills.
  • An excellent communicator, strong team player, promotes a collaborative working environment and relationship building.
  • Able to work independently and handle multiple projects at the same time.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Cyber Engineering
Manager, Cyber Engineering

Starhub Ltd • Singapore

On-site
SGD 120,000 - 180,000
Lead, Cyber Engineering
Lead, Cyber Engineering

Starhub Ltd • Singapore

On-site
SGD 80,000 - 120,000
Senior Manager, Cybersecurity Operations
Senior Manager, Cybersecurity Operations

GOLDTECH RESOURCES PTE LTD • Singapore

On-site
SGD 80,000 - 130,000
Manager, Risk Management
Manager, Risk Management

SMRT Corporation, Ltd. • Singapore

On-site
SGD 90,000 - 120,000
Solution Sales Manager, Cybersecurity
Solution Sales Manager, Cybersecurity

StarHub • Singapore

On-site
SGD 70,000 - 100,000
Senior Security Engineer
Senior Security Engineer

Starhub Ltd • Singapore

On-site
SGD 90,000 - 150,000
Assistant Manager, IT Governance
Assistant Manager, IT Governance

Jurong Port • Singapore

On-site
SGD 60,000 - 90,000
Cyber Risk & Governance Lead - 1LoD
Cyber Risk & Governance Lead - 1LoD

Starhub Ltd • Singapore

On-site
SGD 120,000 - 180,000
Solution Sales Manager, Cybersecurity
Solution Sales Manager, Cybersecurity

Starhub Ltd • Singapore

On-site
SGD 90,000 - 120,000
Cyber Assurance Analyst
Cyber Assurance Analyst

Maybank Singapore • Singapore

On-site
SGD 120,000 - 180,000