Specialist (Cybersecurity)

NTUC First Campus Co-operative Ltd

Singapore

On-site

SGD 90,000 - 150,000

Full time

11 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

NTUC First Campus Co-operative Ltd in Singapore seeks a cybersecurity professional to lead risk assessments, manage risk registers, review testing reports, and collaborate with infrastructure and application teams.

The role requires at least 3 years in cybersecurity, familiarity with firewalls, EDR, PAM, vulnerability scanning, and experience with audits like ISO 27001. You will drive training and policy development.

Qualifications

  • Bachelor's degree in Computer Science, IT, Cybersecurity or related field.
  • CISSP, CISM, or CISA certifications preferred.
  • Minimum 3 years of cybersecurity experience.
  • Experience with firewalls, IDS/IPS, and data encryption.
  • Knowledge of EDR, PAM, vulnerability scanning, phishing tools, WAF.

Responsibilities

  • Perform security risk assessments and advise on treatment plans.
  • Maintain cybersecurity risk registers and track remediation actions.
  • Review security testing reports and remediation with app teams.
  • Conduct vulnerability scans, penetration testing, and risk assessments.
  • Research threats and update defensive protocols proactively.
  • Collaborate with Infrastructure and End User Support to address risks.
  • Coordinate with third-party vendors for security of outsourced systems.
  • Design and lead employee training on phishing and password hygiene.
  • Lead implementation of security protocols and system hardening.
  • Develop and maintain cybersecurity policies and control frameworks.
  • Support cybersecurity operations using enterprise security solutions.
  • Assist internal and external audits (ISO 27001, NIST, OWASP).
  • Act as primary point of contact and first responder to alerts.
  • Perform log analysis and respond to security incidents.
  • Collaborate with teams to investigate and remediate incidents.

Skills

Excellent communication
Network fundamentals
Analytical problem-solving
Willingness to learn

Education

Bachelor's degree in Computer Science/IT/Cybersecurity
CISSP / CISM / CISA certifications

Tools

Firewalls
IDS/IPS
Data encryption
EDR (Antivirus/EDR)
Privilege Access Management (PAM)
Vulnerability scanning tools
Phishing reporting tools
Web Defacement monitoring tools
Web Application Firewall (WAF)

Job description

Key Responsibilities
  • Perform security risk assessments, formulate and advise on a risk treatment plan, assist the business in performing business impact analysis,
  • Maintain cybersecurity risk registers, track remediation actions, and oversee security control testing.
  • Review security testing reports (e.g. vulnerability assessment, penetration testing and secure code review) and work with application teams for remediation.
  • Conduct regular vulnerability scans, penetration testing, and risk assessments to identify flaws across hardware, software, and cloud environments.
  • Research emerging cyber threat vectors, vulnerabilities (CVEs), and attacker methodologies to update defensive protocols proactively.
  • Work closely with Infrastructure and End User Support teams to identify and address any risks and gaps in the infrastructure, endpoints, and application systems
  • Collaborate with third-party vendors and contractors to ensure the security of outsourced systems and services meets the industrial best practice to configure, deploy, and maintain critical security infrastructure, including firewalls, antivirus software, data loss prevention (DLP) tools, and regular vulnerability scans.
  • Support vendor due-diligence process and help to guide overall third-party risk management efforts.
  • Design and lead employee training programs to mitigate human-centric risks like phishing, social engineering, and poor password hygiene (e.g. newsletters, trainings, phishing campaigns)
  • Lead the implementation of security protocols, establish robust system hardening standards across enterprise assets, conduct regular risk assessments on hardening control applied.
  • Policy & Framework Development: Design, update, and maintain enterprise cybersecurity policies, standards, and control frameworks aligned with business goals
  • Support and administer cybersecurity operations using enterprise security solutions (e.g. onboarding of privileged accounts to PAM, implementing WAF for website protection, and reviewing firewall rules, Tenable, Web defacement tools, report phishing tool management, etc.)
  • Support both internal audit and external audits (e.g. ISO 27001, NIST, OWASP)
  • Primary Point of Contact, and First Responder (monitoring and responding to alerts from Managed Services)
  • Perform log analysis, investigate and respond to security incidents, including suspicious activities, phishing attempts, malware infections and data breaches.
  • Collaborate with various teams to investigate, contain and remediate security incidents.
Education
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity or a related field
  • Relevant professional certifications such as CISSP, CISM, or CISA are preferred.
Experience
  • Minimum of 3 years of experience in cybersecurity
  • Experience in cybersecurity governance, technology risk, or compliance assurance
  • Experience with security technologies such as firewalls, intrusion detection/prevention systems, and data encryption
  • Has knowledge in security technologies such as Antivirus/Endpoint Detection and Response (EDR), Privilege Access Management (PAM), Vulnerability Scanning tools, Phishing reporting tools, Web Defacement monitoring tools and Web Application Firewall (WAF)
  • Familiarity with security assessment tools and techniques, including vulnerability scanning and penetration testing.
  • Experience in vendor and project management
Skills and Attributes
  • Excellent communication skills and the ability to explain complex technical concepts to non-technical stakeholders.
  • Deep understanding of network infrastructure, TCP/IP protocols, routers, switches, and secure architecture principles.
  • Strong analytical and problem-solving skills
  • Highly driven and willing to learn
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED • Singapore

On-site
SGD 70,000 - 120,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC First Campus • Singapore

On-site
SGD 90,000 - 130,000
Cybersecurity Engineer
Cybersecurity Engineer

Data Connect Technologies Pte Ltd • Singapore

On-site
SGD 90,000 - 130,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel • Singapore

On-site
Confidential
Senior Security Specialist
Senior Security Specialist

aramco • Singapore

On-site
SGD 120,000 - 190,000
Security Engineer
Security Engineer

ABPGROUP PTE. LTD. • Singapore

On-site
SGD 60,000 - 100,000
Cyber and IT Security Advisory, Specialist / Principal Specialist
Cyber and IT Security Advisory, Specialist / Principal Specialist

CIMB Bank Berhad • Singapore

On-site
SGD 180,000 - 250,000
Cybersecurity engineer
Cybersecurity engineer

NEWTONE SERVICES PTE. LTD. • Singapore

On-site
SGD 60,000 - 90,000
Security Analyst
Security Analyst

R SYSTEMS CONSULTING SERVICES LIMITED • Singapore

On-site
SGD 90,000 - 130,000
Cybersecurity Engineer * (AMK)
Cybersecurity Engineer * (AMK)

MAESTRO HUMAN RESOURCE PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000