Senior Specialist, Information Security

Singtel Group

Singapore

On-site

SGD 120,000 - 180,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Singtel is seeking a Senior Specialist, Information Security to strengthen our application and infrastructure security posture. You will perform security assessments, review vulnerabilities, and guide remediation in an Agile environment to balance risk and business goals.

You will work with development, infrastructure, and platform teams to drive timely security decisions and ensure secure delivery across the portfolio.

Qualifications

  • 3–5 years of hands-on VAPT experience.
  • Experience in application security and secure SDLC.
  • Ability to perform secure source code reviews.
  • Familiarity with risk assessment and governance processes.
  • Experience managing security deviations/exemptions.
  • Experience in SME to enterprise environments.

Responsibilities

  • Perform security assessments and vulnerability reviews across apps and infra.
  • Coordinate remediation with development, infra, and platform teams.
  • Review external pen tests and prioritise fixes.
  • Conduct secure code reviews and advise on remediation.
  • Manage security deviations including risk justification and tracking.
  • Support governance reporting, audits, and security metrics.

Skills

VAPT
App security
Source code reviews
Risk assessment
Security governance
Deviations management
SME to Enterprise

Education

Bachelor's degree in Computer Science or Information Security

Job description

Singtel is seeking a skilled and motivated Senior Specialist, Information Security to strengthen our application and infrastructure security posture.


In this role, you will be responsible for conducting security assessments, reviewing vulnerabilities, guiding remediation efforts, and managing security deviations. You will work closely with development, infrastructure, and platform teams to ensure secure delivery in an Agile environment while enabling business objectives through risk-informed decisions.

Make an Impact by:
Security Assessment & Testing
  • Perform and/or review Vulnerability Assessments and Penetration Testing (VAPT) across applications, infrastructure, and network environments.
  • Review external penetration test findings and work with stakeholders to prioritise remediation.
  • Conduct secure source code reviews and advise developers on remediation strategies.
  • Perform security audits, host configuration reviews, and consulting assessments.
  • Conduct security risk assessments at application, infrastructure, and network levels.
  • Assess and prioritise vulnerabilities based on impact and likelihood.
  • Review change requests from a security risk perspective.
  • Prepare, evaluate, and manage security deviation/exemption requests, including:
    • Risk justification and impact analysis
    • Validation of compensating controResidual risk documentation
    • Management endorsement and tracking
  • Support governance reporting, audit requirements, and security metrics consolidation.
Stakeholder Coordination
  • Collaborate with developers, infrastructure engineers, and platform teams in an Agile environment.
  • Lead discussions to coordinate timely security assessments and remediation activities.
  • Act as liaison between project teams, risk teams, and external security vendors.
  • Track remediation progress and ensure closure within agreed timelines
Skills for Success:
  • Bachelor's degree in Computer Science, Information Security, or related discipline (or equivalent practical experience).
    3-5 years of hands-on experience in Vulnerability Assessment and Penetration Testing (VAPT).
  • Application security and secure SDLC
  • Source code reviews
  • Risk assessment and security governance
  • Managing security deviations/exemptions
  • Experience working in SME to Enterprise environments.
Preferred Certifications (Either or more):
  • OSCP (Offensive Security Certified Professional)
  • CEH (Certified Ethical Hacker)
  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • CRISC (Certified in Risk and Information Systems Control)
  • GIAC certifications (e.g., GPEN, GWAPT)
Are you ready to say hello to BIG Possibilities?
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Specialist, Information Security
Senior Specialist, Information Security

Singtel • Singapore

On-site
Confidential
Senior Information Security Specialist - VAPT & Risk Leader
Senior Information Security Specialist - VAPT & Risk Leader

Singtel Group • Singapore

On-site
SGD 120,000 - 180,000
Senior Information Security Specialist - Secure Dev & Risk
Senior Information Security Specialist - Secure Dev & Risk

Singtel • Singapore

On-site
Confidential
Cyber Security Engineer
Cyber Security Engineer

Singapore Telecommunications Limited • Singapore

On-site
SGD 70,000 - 100,000
Security Consultant
Security Consultant

SOFTSCHECK SINGAPORE PTE. LTD. • Singapore

On-site
SGD 70,000 - 120,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel Group • Singapore

On-site
SGD 120,000 - 180,000
Cyber Security Engineer
Cyber Security Engineer

Singtel • Singapore

On-site
Confidential
Information Security Specialist
Information Security Specialist

Singtel • Singapore

On-site
Confidential
Senior Information Security Specialist
Senior Information Security Specialist

Singtel • Singapore

On-site
Confidential
Cyber Security Engineer
Cyber Security Engineer

Singtel Group • Singapore

On-site
SGD 120,000 - 180,000