Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED

Singapore

On-site

SGD 70,000 - 120,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

NTUC FIRST CAMPUS LIMITED is actively seeking a cybersecurity professional to lead governance, risk, and compliance initiatives across the enterprise.

You will perform risk assessments, maintain risk registers, and collaborate with infrastructure and application teams to remediate issues while ensuring alignment with security standards.

Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity or a related field.
  • Relevant professional certifications such as CISSP, CISM, or CISA are preferred.

Responsibilities

  • Perform security risk assessments, formulate and advise on a risk treatment plan.
  • Maintain cybersecurity risk registers, track remediation actions, and oversee security control testing.
  • Review security testing reports and work with application teams for remediation.
  • Conduct regular vulnerability scans, penetration testing, and risk assessments across hardware, software, and cloud environments.
  • Research emerging cyber threat vectors and attacker methodologies to update defensive protocols.
  • Lead the implementation of security protocols and hardening standards across enterprise assets.
  • Design, update, and maintain enterprise cybersecurity policies and control frameworks.
  • Perform log analysis and respond to security incidents across multiple environments.
  • Collaborate with various teams to investigate, contain and remediate security incidents.

Skills

Cybersecurity governance
Risk management
Incident response
Vulnerability scanning
Web application firewall
PAM

Education

Bachelor's degree in Computer Science/IT/Cybersecurity
CISSP/CISM/CISA

Tools

Firewalls
EDR
PAM
Vulnerability scanners
WAF
Phishing tools

Job description

Key Responsibilities

  • Perform security risk assessments, formulate and advise on a risk treatment plan, assist the business in performing business impact analysis,
  • Maintain cybersecurity risk registers, track remediation actions, and oversee security control testing.
  • Review security testing reports (e.g. vulnerability assessment, penetration testing and secure code review) and work with application teams for remediation.
  • Conduct regular vulnerability scans, penetration testing, and risk assessments to identify flaws across hardware, software, and cloud environments.
  • Research emerging cyber threat vectors, vulnerabilities (CVEs), and attacker methodologies to update defensive protocols proactively.
  • Work closely with Infrastructure and End User Support teams to identify and address any risks and gaps in the infrastructure, endpoints, and application systems
  • Collaborate with third-party vendors and contractors to ensure the security of outsourced systems and services meets the industrial best practice to configure, deploy, and maintain critical security infrastructure, including firewalls, antivirus software, data loss prevention (DLP) tools, and regular vulnerability scans.
  • Support vendor due-diligence process and help to guide overall third-party risk management efforts.
  • Design and lead employee training programs to mitigate human-centric risks like phishing, social engineering, and poor password hygiene (e.g. newsletters, trainings, phishing campaigns)
  • Lead the implementation of security protocols, establish robust system hardening standards across enterprise assets, conduct regular risk assessments on hardening control applied.
  • Policy & Framework Development: Design, update, and maintain enterprise cybersecurity policies, standards, and control frameworks aligned with business goals
  • Support and administer cybersecurity operations using enterprise security solutions (e.g. onboarding of privileged accounts to PAM, implementing WAF for website protection, and reviewing firewall rules, Tenable, Web defacement tools, report phishing tool management, etc.)
  • Support both internal audit and external audits (e.g. ISO 27001, NIST, OWASP)
  • Primary Point of Contact, and First Responder (monitoring and responding to alerts from Managed Services)
  • Perform log analysis, investigate and respond to security incidents, including suspicious activities, phishing attempts, malware infections and data breaches.
  • Collaborate with various teams to investigate, contain and remediate security incidents.


Education

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity or a related field
  • Relevant professional certifications such as CISSP, CISM, or CISA are preferred.


Experience

  • Minimum of 3 years of experience in cybersecurity
  • Experience in cybersecurity governance, technology risk, or compliance assurance
  • Experience with security technologies such as firewalls, intrusion detection/prevention systems, and data encryption
  • Has knowledge in security technologies such as Antivirus/Endpoint Detection and Response (EDR), Privilege Access Management (PAM), Vulnerability Scanning tools, Phishing reporting tools, Web Defacement monitoring tools and Web Application Firewall (WAF)
  • Familiarity with security assessment tools and techniques, including vulnerability scanning and penetration testing.
  • Experience in vendor and project management


Skills and Attributes

  • Excellent communication skills and the ability to explain complex technical concepts to non-technical stakeholders.
  • Deep understanding of network infrastructure, TCP/IP protocols, routers, switches, and secure architecture principles.
  • Strong analytical and problem-solving skills
  • Highly driven and willing to learn
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Specialist
Specialist

NTUC First Campus Co-operative Ltd • Singapore

On-site
SGD 90,000 - 120,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Singtel • Singapore

On-site
Confidential
Cybersecurity Executive
Cybersecurity Executive

Achieve Group • Singapore

On-site
SGD 90,000 - 130,000
Cybersecurity engineer
Cybersecurity engineer

NEWTONE SERVICES PTE. LTD. • Singapore

On-site
SGD 60,000 - 90,000
Cyber and IT Security Advisory, Specialist / Principal Specialist
Cyber and IT Security Advisory, Specialist / Principal Specialist

CIMB Bank Berhad • Singapore

On-site
SGD 180,000 - 250,000
Cybersecurity Engineer * (AMK)
Cybersecurity Engineer * (AMK)

MAESTRO HUMAN RESOURCE PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Head of Cybersecurity / Security Engineering Manager
Head of Cybersecurity / Security Engineering Manager

Charterhouse Pte Ltd • Singapore

On-site
SGD 180,000 - 240,000
IT Security Consultant
IT Security Consultant

K2 PARTNERING SOLUTIONS PTE. LTD. • Singapore

On-site
SGD 90,000 - 150,000
Cybersecurity Consultant, Network Security (Contract)
Cybersecurity Consultant, Network Security (Contract)

Singtel Group • Singapore

On-site
SGD 75,000 - 95,000
Cybersecurity Engineer
Cybersecurity Engineer

ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. • Singapore

Hybrid
SGD 60,000 - 90,000