VP, Cybersecurity Governance

Kerry Consulting

Singapore

On-site

SGD 180,000 - 260,000

Full time

22 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Kerry Consulting is seeking an experienced cybersecurity leader in Singapore to oversee governance, risk and assurance capabilities. The role reports to the CISO and leads the GRC function, partnering with technology, risk, audit, and business leaders to strengthen cyber resilience.

This position blends strategic leadership with hands-on oversight in a highly regulated environment, driving enterprise-wide security initiatives and maturity.

Qualifications

  • Degree in Information Security, Computer Science, Computer Engineering, or a related discipline.
  • At least 10 years of experience in cybersecurity governance, enterprise risk management, information security, or IT assurance.
  • Previous experience leading Governance, Risk & Compliance (GRC) functions or enterprise security governance teams.
  • Experience in regulated industries or large, complex organisations is highly desirable.
  • Recent years of experience in leading a team.

Responsibilities

  • Develop and maintain enterprise cybersecurity governance, policies, standards, and control frameworks.
  • Lead enterprise cybersecurity risk assessments to identify and evaluate tech risks.
  • Oversee security assurance activities, including vulnerability assessments and testing.
  • Coordinate responses to audit findings and remediation programmes.
  • Provide strategic guidance to technology and business stakeholders on cyber risk.

Skills

Cybersecurity governance
Risk management
Leadership
Stakeholder management
Audit coordination

Education

Degree in Information Security

Tools

ISO 27001
NIST CSF
COBIT

Job description

We are seeking an experienced cybersecurity leader to oversee the organisation's governance, risk, and assurance capabilities. This role is responsible for establishing and maintaining an effective cyber governance framework, ensuring security risks are appropriately managed, and driving continuous improvements across the enterprise security programme.

Reporting to the Chief Information Security Officer (CISO), you will lead the Governance, Risk & Compliance (GRC) function while partnering closely with technology, risk, audit, and business leaders to strengthen the organisation's overall cyber resilience.

This position combines strategic leadership with operational oversight and is well suited for someone who enjoys influencing enterprise-wide security initiatives in a highly regulated environment.

Key Responsibilities:

Governance & Security Frameworks

  • Develop and maintain enterprise cybersecurity governance, policies, standards, and control frameworks.
  • Ensure governance processes remain aligned with evolving regulatory obligations, business priorities, and industry best practices.
  • Review security policy exceptions and risk acceptance requests, providing appropriate recommendations and oversight.
  • Champion continuous improvement initiatives to enhance governance maturity across the organisation.
  • Lead enterprise cybersecurity risk assessments to identify and evaluate technology and cyber risks.
  • Oversee security assurance activities, including vulnerability assessments, penetration testing, control reviews, and cyber resilience exercises.
  • Track remediation activities to ensure identified risks and control gaps are addressed in a timely manner.
  • Evaluate emerging cyber threats and technologies, recommending appropriate safeguards where necessary.

Audit & Regulatory Engagement

  • Act as the primary cybersecurity representative for internal and external audit engagements.
  • Coordinate responses to audit requests and oversee remediation programmes arising from audit findings.
  • Ensure appropriate governance processes exist to demonstrate compliance with applicable security and regulatory requirements.
  • Partner with internal stakeholders to improve the effectiveness of security controls and governance practices.

Leadership & Stakeholder Management

  • Lead and develop a high-performing Governance, Risk & Compliance team.
  • Foster a collaborative culture focused on accountability, continuous learning, and operational excellence.
  • Provide strategic guidance to technology and business stakeholders on cyber risk and governance matters.
  • Support executive leadership through regular reporting on cyber risks, control effectiveness, and programme maturity.

Performance & Reporting

  • Develop meaningful security metrics and key risk indicators to measure programme effectiveness.
  • Prepare reports and presentations for executive management, governance committees, and senior stakeholders.
  • Drive data-driven decision making through insightful analysis of cyber risks and control performance.
Requirements:
  • Degree in Information Security, Computer Science, Computer Engineering, or a related discipline.
  • At least 10 years of experience within cybersecurity governance, enterprise risk management, information security, or IT assurance.
  • Previous experience leading Governance, Risk & Compliance (GRC) functions or enterprise security governance teams.
  • Experience working within regulated industries or large, complex organisations is highly desirable.
  • Recent years of experience in leading a team.

Technical Expertise

  • Strong understanding of cybersecurity governance, enterprise risk management, and control frameworks.
  • Experience implementing or managing recognised standards such as ISO 27001, NIST CSF, COBIT, CIS Controls, or similar frameworks.
  • Good appreciation of cloud security, infrastructure security, secure software delivery practices, and modern enterprise technology environments.
  • Familiarity with audit methodologies, control assessments, and regulatory compliance programmes.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

VP, Security Governance Lead
VP, Security Governance Lead

Kerry Consulting • Singapore

On-site
SGD 180,000 - 240,000
GENERAL MANAGER, CYBERSECURITY
GENERAL MANAGER, CYBERSECURITY

Rikvin Capital Pte. Ltd. • Singapore

On-site
SGD 260,000 - 380,000
Senior Security Analyst (Governance, Risk and Compliance)
Senior Security Analyst (Governance, Risk and Compliance)

energy market company • Singapore

On-site
SGD 120,000 - 180,000
Senior Security Analyst (Governance, Risk and Compliance)
Senior Security Analyst (Governance, Risk and Compliance)

energy market company pte ltd • Shenton Way

On-site
SGD 120,000 - 180,000
Cybersecurity Manager (GRC)
Cybersecurity Manager (GRC)

SCIENTE • Singapore

On-site
SGD 150,000 - 210,000
Cybersecurity, Governance Executive
Cybersecurity, Governance Executive

Achieve Group • Singapore

On-site
SGD 70,000 - 120,000
Head of Business Information Security & Cyber Risk
Head of Business Information Security & Cyber Risk

Kerry Consulting • Singapore

On-site
SGD 260,000 - 360,000
Senior Cyber GRC Associate — Strategy & Risk
Senior Cyber GRC Associate — Strategy & Risk

PwC Singapore • Singapore

On-site
SGD 60,000 - 90,000
Governance, Risk and Compliance Specialist
Governance, Risk and Compliance Specialist

Tech Aalto Pte ltd • Singapore

On-site
SGD 100,000 - 156,000
IT Governance & Risk Executive
IT Governance & Risk Executive

QUESS SELECTION & SERVICES PTE. LTD. • Singapore

On-site
SGD 60,000 - 90,000