Manager, IT Cybersecurity Architect

SMRT Trains Ltd

Singapore

On-site

SGD 180,000 - 240,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

SMRT Trains Ltd in Singapore seeks a Manager, IT Cybersecurity Architect to define and govern SMRT's cybersecurity architecture, ensuring security controls are embedded in technology systems and transformation initiatives. You will drive architectural standardisation, secure-by-design principles, and alignment between cyber requirements, business needs and technology plans.

You will lead architecture governance, solution validation, and forward‑looking capability development, while coordinating

Qualifications

  • Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related discipline.
  • 5–10 years of relevant experience in cybersecurity architecture, security engineering, enterprise architecture, or security design.
  • Strong experience defining and governing enterprise‑level security architectures, including secure‑by‑design frameworks, architecture blueprints, and technology standards.
  • Demonstrated expertise in designing and evaluating security controls across cloud and on‑premise systems.
  • Hands‑on experience conducting architectural risk assessments, security design reviews, and solution validation.
  • In‑depth understanding of cybersecurity frameworks such as NIST CSF, ISO/IEC 27001, CIS Controls, and other architecture‑related standards.
  • Good knowledge of Singapore's regulatory requirements including the CCoP and PDPA.

Responsibilities

  • Develop and maintain SMRT's IT cybersecurity architecture blueprint, ensuring alignment with the organisation's technology roadmap and cybersecurity strategy.
  • Establish secure by design principles, architecture guardrails, and security design standards for all digital and operational systems.
  • Provide governance and oversight through architecture review boards, design assurance processes and solution endorsement mechanisms.
  • Ensure that architecture decisions support resilience, scalability, and compliance with emerging threats and regulatory requirements.
  • Lead the design and evaluation of security controls for new systems, platforms, cloud solutions and major transformation programmes.
  • Provide expert advisory to project teams, solution architects, and engineering teams on system hardening, network segmentation, identity security, cloud security and application security.
  • Conduct architectural risk assessments and security design reviews, identifying design weaknesses and recommending effective mitigation measures.
  • Develop, publish and maintain cybersecurity reference architectures, technology standards and integration patterns.
  • Lead the harmonisation of cybersecurity tooling and platforms, promoting interoperability, standardisation and lifecycle optimisation.
  • Identify emerging security capabilities required to support SMRT's cyber roadmap and evaluate new security technologies.
  • Drive the planning and implementation of strategic cybersecurity architecture initiatives.
  • Support technical assurance activities to validate that implemented solutions meet approved security architecture requirements.
  • Review system configurations, deployment architectures and integration designs for adherence to security patterns.
  • Track and report on architecture compliance, deviations and remediation plans.
  • Partner with technology teams and regulators to align architecture direction with industry norms.

Skills

Cyber governance
Security controls assessment
Enterprise security controls
Cybersecurity frameworks
Risk assessments
Zero Trust
Analytical skills
Communication skills

Education

Bachelor's degree in Cybersecurity/Information Systems/Computer Science

Job description

Company description:

SMRT Trains Ltd was incorporated in 1987 and operates Singapore's first mass rapid transit system. Today, we manage and operate train services on the North-South Line, East-West Line, the Circle Line, the Thomson-East Coast Line, and the Bukit Panjang Light Rail Transit. With over 5,000 employees, more than 250 trains, and 141 km of rail tracks across 108 stations, we serve millions of commuters daily.

We have set our core values to be Integrity, Service & Safety and Excellence. SMRT is committed to provide safe, reliable and comfortable service for our commuters.

Job description:
Job Purpose

In an increasingly complex digital and operational landscape, a robust cybersecurity architecture is essential to safeguarding SMRT's systems, services, and critical infrastructure. The Manager, IT Cybersecurity Architect will support the definition, design and governance of SMRT's cybersecurity architecture, ensuring that security controls are embedded into technology systems, operational processes, and transformation initiatives. This role is responsible for establishing the cybersecurity architecture strategy, driving architectural standardisation, ensuring secure by design principles, and enabling strong alignment between cyber requirements, business needs, and technology plans. You will play a key role in strengthening SMRT's cybersecurity resilience through architecture oversight, security design governance, solution validation, and forward looking capability development.

Responsibilities

As Manager, IT Cybersecurity Architect, you will support the Head, Cybersecurity Architect Office in developing and implementing a robust cybersecurity architecture framework and strengthening organisational resilience. Your responsibilities include:

Cybersecurity IT Architecture Strategy & Governance
  • Develop and maintain SMRT's IT cybersecurity architecture blueprint, ensuring alignment with the organisation's technology roadmap and cybersecurity strategy.
  • Establish secure by design principles, architecture guardrails, and security design standards for all digital and operational systems.
  • Provide governance and oversight through architecture review boards, design assurance processes and solution endorsement mechanisms.
  • Ensure that architecture decisions support resilience, scalability, and compliance with emerging threats and regulatory requirements.
Security Design & Technical Advisory
  • Lead the design and evaluation of security controls for new systems, platforms, cloud solutions and major transformation programmes.
  • Provide expert advisory to project teams, solution architects, and engineering teams on system hardening, network segmentation, identity security, cloud security and application security.
  • Conduct architectural risk assessments and security design reviews, identifying design weaknesses and recommending effective mitigation measures.
Technology Standards & Reference Architectures
  • Develop, publish and maintain cybersecurity reference architectures, technology standards and integration patterns.
  • Ensure that architecture artefacts remain updated with industry best practices, emerging technologies and regulatory expectations.
  • Lead the harmonisation of cybersecurity tooling and platforms, promoting interoperability, standardisation and lifecycle optimisation.
Security Capability Development
  • Identify emerging security capabilities required to support SMRT's cyber roadmap (e.g., Zero Trust, identity centric security, cloud-native security, advanced monitoring).
  • Evaluate new security technologies and conduct proof of concepts to validate feasibility, effectiveness and architectural fit.
  • Drive the planning and implementation of strategic cybersecurity architecture initiatives.
Cybersecurity Architecture Assurance
  • Support technical assurance activities to validate that implemented solutions meet approved security architecture requirements.
  • Review system configurations, deployment architectures and integration designs to ensure adherence to approved security design patterns.
  • Track and report on architecture compliance, deviations and remediation plans.
Stakeholder Engagement & Collaboration
  • Partner closely with technology teams, engineering groups, business units and operations to ensure cybersecurity architecture is practical, adoptable and aligned with business needs.
  • Engage senior management and provide clear architectural insights, risks and recommendations to support decision making.
  • Work with external partners, vendors and regulators to align SMRT's architecture direction with industry norms and regulatory frameworks.
Qualifications & Work Experience
  • A bachelor's degree in Cybersecurity, Information Systems, Computer Science, or a related discipline.
  • 5-10 years of relevant experience in cybersecurity architecture, security engineering, enterprise architecture, or security design for complex IT environments.
  • Strong experience defining and governing enterprise‑level security architectures, including secure‑by‑design frameworks, architecture blueprints, and technology standards.
  • Demonstrated expertise in designing and evaluating security controls across cloud and on‑premise systems.
  • Hands‑on experience conducting architectural risk assessments, security design reviews, and solution validation.
  • In‑depth understanding of cybersecurity frameworks such as NIST CSF, ISO/IEC 27001, CIS Controls, and other architecture‑related standards.
  • Good knowledge of Singapore's regulatory requirements including the Cybersecurity Code of Practice (CCoP), Personal Data Protection Act (PDPA), and sector‑specific cyber standards.
  • Experience leading multi‑disciplinary technical teams, advising senior stakeholders, and working with regulators, vendors, and industry partners.
  • Proven track record in evaluating emerging security technologies, conducting proof‑of‑concepts, and shaping long‑term cyber capability development.
Skills
Technical Skills include:
  • Understanding of cybersecurity governance, risk and compliance principles, enabling effective alignment of architecture decisions with enterprise risk management frameworks.
  • Ability to assess the effectiveness of security controls and identify gaps in policy, standards, and security design implementation.
  • Strong proficiency in designing and evaluating enterprise security controls across cloud and on‑premise systems, aligned with secure‑by‑design and architecture guardrail principles.
  • Deep knowledge of cybersecurity frameworks and architecture‑related standards such as NIST CSF, ISO/IEC 27001, CIS Controls, and relevant regulatory codes (e.g., CCoP, PDPA).
  • Experience conducting architectural risk assessments, solution validation, and technical assurance to ensure implementation fidelity with approved designs.
  • Familiarity with modern security architecture concepts such as Zero Trust, identity‑centric security, cloud‑native architectures, and advanced detection and monitoring capabilities.
Core Competencies include:
  • Excellent analytical and documentation skills, with strong attention to detail.
  • Effective communicator with the ability to engage stakeholders across technical and non-technical domains.
  • High integrity and discretion in handling sensitive information.
  • Proactive and collaborative mindset, with a commitment to continuous improvement.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, IT Cybersecurity Architect
Manager, IT Cybersecurity Architect

SMRT Corporation, Ltd. • Singapore

On-site
SGD 90,000 - 110,000
Manager, Cybersecurity Assurance & Resilience
Manager, Cybersecurity Assurance & Resilience

SMRT Trains Ltd • Singapore

On-site
SGD 90,000 - 130,000
Manager, Cyber Security (Threat Mgmt)
Manager, Cyber Security (Threat Mgmt)

SMRT Corporation Ltd • Singapore

On-site
SGD 150,000 - 210,000
IT Cybersecurity Architecture Lead
IT Cybersecurity Architecture Lead

SMRT Trains Ltd • Singapore

On-site
SGD 180,000 - 240,000
Manager, Risk Management
Manager, Risk Management

SMRT Corporation, Ltd. • Singapore

On-site
SGD 90,000 - 120,000
Manager, Compliance
Manager, Compliance

SMRT Trains Ltd • Singapore

On-site
SGD 120,000 - 180,000
Cybersecurity Architecture & Strategy Manager
Cybersecurity Architecture & Strategy Manager

SMRT Corporation Ltd • Singapore

On-site
SGD 180,000 - 240,000
Cybersecurity Architecture Manager — Secure by Design Leader
Cybersecurity Architecture Manager — Secure by Design Leader

SMRT Corporation, Ltd. • Singapore

On-site
SGD 90,000 - 110,000
Manager, CyberSecurity (Operations)
Manager, CyberSecurity (Operations)

SMRT CORPORATION LTD • Singapore

On-site
SGD 120,000 - 180,000
Project Cybersecurity Officer
Project Cybersecurity Officer

Hitachi Rail • Singapore

On-site
SGD 120,000 - 180,000