Job Search and Career Advice Platform

Enable job alerts via email!

Senior Manager, Information Risk Management

Manulife

Singapore

Hybrid

SGD 80,000 - 110,000

Full time

11 days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading financial services provider in Singapore is seeking a highly skilled Senior Security Consultant. This role focuses on cybersecurity, ensuring compliance with regulatory standards while leading initiatives for risk management and security enhancement. Ideal candidates will possess a Bachelor's degree and extensive experience in cybersecurity. The position offers a hybrid working model and emphasizes continuous learning and a supportive work environment.

Benefits

Flexible working environment
Learning and growth opportunities

Qualifications

  • 7+ years of experience in application security and information risk management.
  • Proven experience in conducting security assessments and cybersecurity incident responses.
  • Relevant security certifications such as CISSP, CISM, CISA, or CEH are essential.

Responsibilities

  • Ensure compliance with PDPA, MAS Technology Risk Management, and Cyber Hygiene.
  • Lead incident response efforts and conduct information risk assessments.
  • Develop and deliver security training and awareness programs for employees.

Skills

Cybersecurity expertise
Risk management
Incident response
Strong analytical skills
Excellent communication skills

Education

Bachelor's degree in Computer Science or related field

Tools

NIST
ISO 27001
CIS Controls
Job description

We are seeking an experienced and highly skilled Senior Security Consultant to join our organization. The ideal candidate will have a robust background in cybersecurity, with extensive experience in designing and implementing security solutions, conducting risk assessments, and advising on best practices to enhance organizational security posture.

This role is crucial for ensuring Manulife Singapore's compliance with regulatory requirements and strengthening our cybersecurity defence. With a focus on minimizing information risk, the successful candidate will lead initiatives to bolster security controls, manage third-party risks, and cultivate a culture of security awareness.

Position Responsibilities
  • Ensure compliance with regulatory regulations and standards, such as PDPA, MAS Technology Risk Management, and Cyber Hygiene, by aligning and implementing effective security practices.
  • Lead incident response efforts, ensuring timely identification, containment, and remediation of security incidents.
  • Conduct information risk assessments in business projects to identify vulnerabilities and recommend risk mitigation measures.
  • Collaborate with cross-functional teams, including IT, development, and operations, to integrate security best practices into organizational processes and projects.
  • Collaborate with development teams to integrate secure coding practices and conduct threat modelling to proactively mitigate potential vulnerabilities.
  • Provide security consultation and guidance on security architecture, ensuring robust protection against emerging threats and compliance with relevant security standards and regulations.
  • Stay up-to-date with the latest cybersecurity trends, threats, and technologies to continuously enhance the organization's security posture.
  • Develop and deliver security training and awareness programs to educate employees and stakeholders on security policies and practices.
  • Coordinate with business units to conduct due diligence third-party assessments on business managed vendors.
  • Prepare detailed security reports and presentations for senior management and stakeholders, highlighting security risks and recommended actions.
Required Qualifications
  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • 7 years of experience in application security, information risk management, with demonstrated experience in implementing security measures.
  • Strong understanding of information security practices, including risk assessment, threat modelling, and vulnerability management.
  • Strong understanding of security frameworks and standards, such as NIST, ISO 27001, CIS Controls.
  • Proven experience in conducting security assessments, risk management, and cybersecurity incident response.
  • Excellent communication, presentation, and interpersonal skills, with the ability to convey complex security concepts to technical and non-technical audiences.
  • Strong analytical and problem-solving skills.
  • Relevant security certifications such as CISSP, CISM, CISA, or CEH.
When you join our team
  • We’ll empower you to learn and grow the career you want.
  • We’ll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
  • As part of our global team, we’ll support you in shaping the future you want to see.
Acerca de Manulife y John Hancock

Manulife Financial Corporation es un importante proveedor internacional de servicios financieros que ayuda a las personas a tomar decisiones de una manera más fácil y a vivir mejor. Para obtener más información acerca de nosotros, visite http://www.manulife.com .

Manulife es un empleador que ofrece igualdad de oportunidades

En Manulife/John Hancock, valoramos nuestra diversidad. Nos esforzamos por atraer, formar y retener una fuerza laboral tan diversa como los clientes a los que prestamos servicios, y para fomentar un entorno laboral inclusivo en el que se aprovechen las fortalezas de las culturas y las personas. Estamos comprometidos con la equidad en las contrataciones, la retención de talento, el ascenso y la remuneración, y administramos todas nuestras prácticas y programas sin discriminación por motivos de raza, ascendencia, lugar de origen, color, origen étnico, ciudadanía, religión o creencias religiosas, credo, sexo (incluyendo el embarazo y las afecciones relacionadas con este), orientación sexual, características genéticas, condición de veterano, identidad de género, expresión de género, edad, estado civil, estatus familiar, discapacidad, o cualquier otro aspecto protegido por la ley vigente.

Nuestra prioridad es eliminar las barreras para garantizar la igualdad de acceso al empleo. Un representante de Recursos Humanos trabajará con solicitantes que requieran una adaptación razonable durante el proceso de solicitud. Toda la información que se haya compartido durante el proceso de solicitud de adaptación se almacenará y utilizará de manera congruente con las leyes y las políticas de Manulife/John Hancock correspondientes. Para solicitar una adaptación razonable en el proceso de solicitud, envíenos un mensaje a recruitment@manulife.com .

Modalidades de Trabajo

Híbrido

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.