Senior Cyber Assurance Analyst at Sembcorp Industries
City Hall, , Singapore -
Full Time


Start Date

Immediate

Expiry Date

30 Oct, 25

Salary

0.0

Posted On

31 Jul, 25

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Analytical Skills, Written Communication, Presentation Skills, Cissp, Regulations, It Security, Windows, Cisa, Know How, Measures, Cloud, Design, Iso, Nist, Risk, Vulnerability Assessment

Industry

Information Technology/IT

Description

Singapore, Central, Singapore (SGP,Hill Street_05)
Department
Tech Risk Governance
Job posted on
Jul 30, 2025
Employment type
Permanent

QUALIFICATION, SKILLS AND EXPERIENCE

  • Minimum 5 years’ experience in IT Security, Risk and Compliance.
  • Knowledgeable in security standards or regulations such as NIST, ISO 27001, SOC2, CCOP (SG), PDPA (SG), GDPR(EU), MPLS(CN), Security by Design
  • Technical know-how and experienced in solutions such as (but not limited to)
  • GRC Tool such as RSA Archer
  • Security related experience such as (but not limited to) hardening, control measures in Operation System like Windows, Unix, Linux environment.
  • Vulnerability Assessment and Application Testing Tool such as Tenable.
  • Cloud compliance such as Azure Defender for Cloud, CSPM.
  • Certifications such as CISA, CISM, CISSP, CCSK, CRISC will be an added advantage.
  • Independent worker with initiatives, positive attitude, and team player.
  • Good analytical skills and attention to details
  • Good verbal and written communication
  • Planning and organizational skills
  • Presentation skills
Responsibilities
  • Be part of the Governance and Compliance team to conduct risk assessment and compliance review globally on new digital solutions, existing systems and third parties. Identify potential risks that will impact the organization and recommend action plans to reduce the risks.
  • Conduct compliance check on control effectiveness to ensure compliance with established policies and applicable regulations.
  • Develop policies, standards and guidelines to ensure safety of IT assets in adherence to business needs, industrial best practices and regulatory requirements.
  • Conduct security awareness trainings globally.
  • Provide security advisory and consultancy to IT projects.
  • Undertake security projects and activities that address IT Risks.
  • Be aware of latest industry standards, regulatory requirements and the potential impacts to IT policies, standards, and procedures.
Loading...