Manager, Cybersecurity Assurance

StarHub Ltd

Singapore

On-site

SGD 120,000 - 180,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

StarHub Ltd is seeking a Cyber GRC leader to align cybersecurity governance with business goals, manage policies, risks, and compliance across the organization.

You will drive risk reporting, 2nd line assurance, and audit readiness, while guiding policy adoption and stakeholder engagement to strengthen StarHub's security posture.

The role requires 5+ years in information security and risk management, with experience in policy development, IT audits, and regulatory compliance.

Qualifications

  • More than 5 years of experience in information/cybersecurity and risk management.
  • Experience in IT/IT-Security policy development and implementation.
  • Experience in driving IT-security thematic assessments and IT audits.
  • Knowledge of IT-security audits and regulatory cybersecurity requirements.

Responsibilities

  • Drive end-to-end governance & policy management for information security.
  • Lead cyber risk oversight and reporting to stakeholders.
  • Oversee 2nd line assurance & compliance monitoring.
  • Coordinate audit readiness and remediation with 1st line.
  • Provide awareness and advisory on StarHub policies.
  • Maintain audit findings trackers and risk registers.
  • Deliver briefings and trainings on cyber risk and policy awareness.
  • Engage stakeholders to ensure policy adherence.

Skills

Information security
Cyber risk management
GRC governance
Policy development
Audits / audit readiness
Stakeholder management

Job description

Role Mission: The role of Cyber GRC (Governance, Risk, and Compliance) is to ensure that an organization's cybersecurity strategy aligns with its business goals, manages policies/standards/frameworks, manages cyber risks effectively, provides oversight and independent 2nd line control review/testing, and adheres to external regulations.

Accountabilities:
  1. Drive and lead the end-to-end lifecycle of information security governance & policy management.
  2. Drive and lead the cyber risk management and reporting.
  3. Drive and lead the 2nd line assurance & compliance monitoring.
  4. Drive 2nd line oversight and support for audit engagement with 1st line stakeholders.
  5. Drive security culture, advisory & stakeholder engagement
Responsibilities:
  1. Manage the development of Starhub Information Security policies and sub-policies for adoption
  2. Manage the Starhub Information Security policies and sub-policies compliance risk
  3. Manage the cyber risk oversight by evaluating the adequacy and effectiveness of risk management practices and controls implemented by 1st line (i.e. risk owner, control owner, control supervisor, control performers) of Starhub to ensure proper adherence to risk assessment processes.
  4. Manage the Starhub Information Security policies and sub-policies security/risk deviation process
  5. Manage the Starhub risk profile and maintain the Starhub risk register for IT Security / Cybersecurity risks relating to CII & Non-CII
  6. Develop and drive regular monitoring and reporting of Starhub key risk indicators for Cybersecurity
  7. Manage regular risk reporting and risk escalation to Senior Management or other relevant risk forums
  8. Manage Control & Compliance Framework through timely updates of industry standards and regulatory compliance requirements
  9. Perform 2nd line assurance review (e.g. control review/testing) on 1st line stakeholders to ensure adherence with Starhub policies and Sub-policies / Regulatory compliance requirements, provide actionable, recommendations, and engage stakeholders for implementation
  10. Provide timely communication / awareness to stakeholders on Starhub policies and sub-policies for implementation
  11. Provide advisory to stakeholders on Starhub Information Security policies and sub-policies requirement
  12. Conduct briefings and trainings on Cyber risk / Policy awareness (i.e. Cyber risk management process, Policy compliance, Emerging cyber risk/trend, Issues and Observations from 2nd line control review/testing, and audit related findings) to relevant stakeholders and to support the Starhub Cybersecurity Awareness Programme.
  13. Provide 2nd Line oversight and support throughout the audit engagement with 1st line stakeholders: ensuring readiness before the audit begins, facilitating fieldwork execution, and monitoring remediation of findings post-audit.
  14. Maintaining a tracker for audit findings (or audit issues registers) to monitor remediation progress, to ensure audit closure issues, to support the scoping for 2nd line assurance review.

1.More than 5 years of experience in information/cybersecurity and risk management Experience in leading cybersecurity risk assessment and risk reduction initiatives

2.Experience in IT/IT-Security policy development and implementation

3.Experience in driving IT-security thematic assessment and IT audits

4.Good knowledge and experience with handling IT-security and cybersecurity audits

5.Good knowledge of experience in driving compliance to meet cybersecurity regulatory requirements

6.Good problem analysis and resolution skills

7.Good and experience stakeholder management skills

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Cybersecurity Assurance
Manager, Cybersecurity Assurance

StarHub • Singapore

On-site
SGD 120,000 - 180,000
Senior Engineer, Cyber GRC
Senior Engineer, Cyber GRC

Starhub Ltd • Singapore

On-site
SGD 120,000 - 180,000
Senior Cyber GRC Lead — Policy, Risk & Assurance
Senior Cyber GRC Lead — Policy, Risk & Assurance

StarHub Ltd • Singapore

On-site
SGD 120,000 - 180,000
Cyber GRC Assurance Manager
Cyber GRC Assurance Manager

StarHub • Singapore

On-site
SGD 120,000 - 180,000
Cyber GRC Lead: Policy, Risk & Compliance
Cyber GRC Lead: Policy, Risk & Compliance

Starhub Ltd • Singapore

On-site
SGD 120,000 - 180,000
Manager, Cyber Engineering
Manager, Cyber Engineering

Starhub Ltd • Singapore

On-site
SGD 120,000 - 180,000
Manager, Cyber Engineering
Manager, Cyber Engineering

StarHub • Singapore

On-site
SGD 80,000 - 100,000
Manager, Compliance
Manager, Compliance

SMRT Corporation, Ltd. • Singapore

On-site
SGD 120,000 - 180,000
VP, Security Governance & Assurance
VP, Security Governance & Assurance

NETS • Singapore

On-site
SGD 180,000 - 240,000
Deputy Cyber Security Manager
Deputy Cyber Security Manager

Woh Hup (Private) Limited • Singapore

On-site
SGD 120,000 - 180,000