A complete application in a minute — tailored resume and cover letter, ready to send.
Government Technology Agency (GovTech) in Singapore seeks a senior cybersecurity risk assessor within the Holistic Assessment team of IMDA’s Resilience and Cybersecurity Group. You will design and conduct technical tests, synthesise findings, and recommend remediations to strengthen digital network security.
The role requires 8 years in information security, and relevant OSCP/CREST/GIAC certifications, with strong analytical and communication skills.
This role sits within the Connectivity, Cybersecurity & Resilience Group (C2R) Group. C2R strengthens the cybersecurity and resilience posture of the telecommunication and media sectors in Singapore. The Group keeps Singapore’s digital connectivity secure, trusted, and robust against an evolving and increasingly complex threat landscape.
You will be part of the Risk Assurance Division within IMDA’s Resilience and Cybersecurity Group. The Holistic Assessment team in this Division assesses the overall cybersecurity risk posture of critical digital networks and systems and the cyber capabilities of organisations operating these networks. This includes integrating diverse sources of information, across the organisation’s external environment, its internal capabilities and the performance of its networks and systems. The team adopts an evidence-based approach to develop an objective assessment of the organisation and network’s key strengths and vulnerabilities. It also recommends key areas that senior management should track to uplift its cybersecurity risk posture. The Holistic Assessment team works with teams across IMDA’s Resilience and Cybersecurity Group, and in partnership with industry stakeholders. It regularly engages senior management in both IMDA and the industry, to review its findings and recommendations. Through these, the Holistic Assessment team plays a critical role in ensuring that the critical digital networks and systems which underpin Singapore’s Digital Economy remain secure and resilient.
Conduct research and sense making of the evolving cybersecurity landscape in relation to Singapore’s digital infrastructure. This includes integrating threat intelligence information as well as international industry best practices for defending against current and emerging cyber threats.
Review and assess key priorities that inspections should focus on, based on the current and emerging threat landscape, as well as potential vulnerabilities surfaced in cyber audit reports and remediations implemented.
Design technical tests to validate the effectiveness of cybersecurity measures within these priority areas. This requires a deep understanding of the network design, what the cybersecurity measures are intended to protect against, as well as how they contribute to the overall cybersecurity of the digital network and systems as a whole.
Conduct the technical validation tests. Synthesise key findings from the inspections, on the strengths and vulnerabilities of the network. Recommend remediations that should be implemented to improve the overall cybersecurity of the digital network and systems inspected.
The position offered will be commensurate with experience. Only shortlisted candidates will be notified. http://jobs.careers.gov.sg
The Singapore Public Service plays a key role in the economic growth, progress and stability of Singapore by formulating and implementing government policies, as well as providing key public services. Whether you are a fresh graduate joining the workforce or an experienced professional, the Singapore Public Service offers a great variety of job opportunities for you. The work in the Public Service can be broadly categorised into the following sectors: Economic, Social, Security & External Relations, and Administration & Corporate Development. Be part of the team that shapes the future of Singapore.