Senior Manager, Security Operations And Assurance, Information Technology

CITY DEVELOPMENTS LIMITED

Singapore

On-site

SGD 180,000 - 280,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

City Developments Limited (CDL) is seeking a seasoned cybersecurity leader to oversee policy implementation, risk management and security operations across the group and subsidiaries in Singapore. You will coordinate internal security teams and external SOC providers to deliver continuous monitoring, incident response and assurance activities.

You will lead vulnerability management, security assessments, vendor due diligence and security governance, ensuring alignment with ISO/IEC 27001, NIST

Qualifications

  • Degree in Cybersecurity, Information Security, Computer Science, or a related discipline.
  • 8–12 years in cybersecurity, security operations or IT risk.
  • Experience leading security analysts and managing an external SOC or MSSP.

Responsibilities

  • Support policy development, standards, and risk updates across the organisation and subsidiaries.
  • Lead internal security analysts and manage external SOC providers for continuous monitoring and response.
  • Operate and improve the security technologies stack across endpoints, cloud, identity and data protection.
  • Lead vulnerability management, assessments and risk reviews for critical systems and vendors.
  • Conduct security due diligence for vendors and define security assurance requirements.

Skills

SIEM Expertise
Incident Response
Threat Detection
Vulnerability Management
Cloud Security
Identity & Access Management
Endpoint Security
AI Security
Security Governance
Penetration Testing

Education

Degree in Cybersecurity

Tools

SIEM tools
Vulnerability scanners
Penetration testing tools
SAST/DAST
SCA

Job description

Job Responsibilities
  • Support the development, implementation and review of cybersecurity policies, standards, procedures and technical guidelines across the organisation and subsidiaries. Monitor compliance, support audits and assurance activities, prepare technical risk updates, and elevate material control gaps through the Group governance process.
  • Lead internal security analysts and manage the external Security Operations Centre provider to deliver continuous monitoring, threat detection, incident investigation and response. Review significant alerts, incidents and service performance, and elevate material risks in accordance with the Cyber Incident Response Plan.
  • Operate, maintain and improve the Group's security technologies stack across endpoint, identity, email, cloud, network, web, privileged access, data protection and digital environments. Work with IT teams and service providers to ensure security controls are effectively implemented and monitored.
  • Lead vulnerability management, security assessments and technical risk reviews for critical systems, applications, cloud services and subsidiaries. Scope and coordinate external vulnerability assessments, penetration tests and red-team exercises; validate findings, provide remediation advice and track actions to closure.
  • Conduct technical security due diligence for critical vendors, outsourced IT services, cloud providers and digital solutions. Define security assurance requirements for external partners and assess and report on compliance with agreed security obligations.
  • Provide technical security advice for new solutions, major changes and AI use cases. Assess security risks relating to data, access, integration, third-party services and monitoring, and elevate material risks through the established security and AI governance process.
  • Support cybersecurity awareness training and phishing simulations by providing relevant threat insights, technical content and follow-up advice. Help improve security awareness and safe practices across the organisation and subsidiaries.
Job Requirements
  • Degree in Cybersecurity, Information Security, Computer Science, Information Technology or a related discipline; equivalent relevant experience may be considered.
  • At least 8-12 years of experience in cybersecurity, security operations, security engineering, security assessment or IT risk.
  • At least three years' experience leading security analysts, managed security providers or technical security vendors.
  • Experience leading internal security analysts and managing an external SOC, managed security service provider or security-testing partner.
  • Strong technical knowledge of SIEM and security monitoring, incident response, vulnerability management, cloud security, identity and access management, endpoint, email, network and data-security controls.
  • Experience scoping and managing vulnerability assessments and penetration-testing engagements, and validating findings and remediation plans.
  • Exposure to application security testing, including static and dynamic analysis (SAST/DAST), software composition analysis (SCA), and penetration testing of web and mobile applications.
  • Working knowledge of security standards and applicable requirements, including ISO/IEC 27001, NIST Cybersecurity Framework, PDPA, Cybersecurity Act, PCI DSS and SWIFT Customer Security Controls Framework, where applicable.
  • Working knowledge of AI security risks and security assessment requirements for AI solutions and third-party AI services.
  • CISSP, CISM, CRISC, CCSP or relevant GIAC certifications are preferred.
Requirements

City Developments Limited (CDL) is committed to fostering an inclusive culture that respects the diversity of its employees and stakeholders. As a signatory of the Employers Pledge for Fair Employment with TAFEP since 2008, CDL's recruitment process adheres to strict guidelines on non-discrimination and fairness, regardless of gender, ethnicity, religion, or age.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Analyst (Governance, Risk and Compliance)
Senior Security Analyst (Governance, Risk and Compliance)

energy market company • Singapore

On-site
SGD 120,000 - 180,000
Senior Security Analyst (Governance, Risk and Compliance)
Senior Security Analyst (Governance, Risk and Compliance)

energy market company pte ltd • Shenton Way

On-site
SGD 120,000 - 180,000
Senior Security Operations & Assurance Lead
Senior Security Operations & Assurance Lead

CITY DEVELOPMENTS LIMITED • Singapore

On-site
SGD 180,000 - 280,000
Cybersecurity Engineer
Cybersecurity Engineer

Alliance Healthcare Group Limited • Singapore

On-site
SGD 60,000 - 100,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC First Campus • Singapore

On-site
SGD 90,000 - 130,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED • Singapore

On-site
SGD 70,000 - 120,000
Deputy Cyber Security Manager
Deputy Cyber Security Manager

woh hup group • Singapore

Hybrid
SGD 90,000 - 150,000
Deputy Cyber Security Manager
Deputy Cyber Security Manager

Woh Hup (Private) Limited • Singapore

On-site
SGD 120,000 - 180,000
Cyber and IT Security Advisory Principal Specialist SG
Cyber and IT Security Advisory Principal Specialist SG

CIMB Singapore • Singapore

On-site
SGD 120,000 - 180,000
Head / Lead, Cybersecurity
Head / Lead, Cybersecurity

Sciente International • Singapore

On-site
SGD 180,000 - 300,000