Senior Tech Risk Analyst at Sembcorp Industries
City Hall, , Singapore -
Full Time


Start Date

Immediate

Expiry Date

30 Oct, 25

Salary

0.0

Posted On

31 Jul, 25

Experience

8 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Framework, Security Controls, Nist, Vulnerability Assessment, Iso, Know How, Cisa, Written Communication, Cissp, Analytical Skills, Presentation Skills, Risk, Cloud Security, Measures, It Security, Infrastructure, Windows, Cloud

Industry

Information Technology/IT

Description

Singapore, Central, Singapore (SGP,Hill Street_05)
Department
Tech Risk Governance
Job posted on
Jul 18, 2025
Employment type
Permanent

QUALIFICATIONS, SKILLS & EXPERIENCE

  • Minimum 8 years experience in IT Security, Risk and Compliance.
  • Must have strong understanding of Risk concepts and Frameworks
  • Must have strong understanding in terms of application, infrastructure, network and cloud controls to recommend appropriate security controls
  • Knowledgeable in IT Security, Risk management, Cloud Security, SDLC and security standards such as NIST, ISO 27001 Framework
  • Technical know-how and experienced in solutions such as (but not limited to)
  • GRC Tool such as RSA Archer
  • Security related experience such as (but not limited to) hardening, control measures in Operation System like Windows, Unix, Linux environment.
  • Vulnerability Assessment and Application Testing Tool such as Tenable
  • Certifications such as CISA, CISM, CISSP, CCSK, CRISC will be an added advantage.

Preferred Skills & Characteristics

  • Independent worker with initiatives, positive attitude and team player
  • Good analytical skills and attention to details
  • Good verbal and written communication
  • Planning and organizational skills
  • Presentation skills
Responsibilities
  • Conduct risk assessment on global digital projects, systems and third parties by identifying potential risks that are affecting the organization and recommend action plans to reduce the risks.
  • Present the findings to the management in a way easy to understand and implement.
  • Conduct compliance review on control effectiveness to ensure compliance with established policies and applicable regulations.
  • Assist in developing policies, standards and guidelines to ensure safety of IT and OT assets in adherence to business needs, industrial best practices and regulatory requirements.
  • Must have firm understanding of Security By Design (SBD) concept and conduct perform SBD process for all digital projects
  • Manage the timelines of all global SBDs to ensure they are closed off and addressed
  • Plan and manage all red teaming projects
  • Assist in designing and implementing overall risk management process for the organization.
Loading...