Cyber Security Manager (CISO)
Singapore
About Certis
We are a leading security services organisation. We put technology to work in making the world a safer place. Our mission is that as trusted partners, we protect lives and assets, and deliver integrated critical services. By empowering our people, our goal is to enable our communities to stay safe and thriving.
We offer a broad range of opportunities and career pathways for our people to grow and explore their potential. We believe that people, equipped with innovative thinking and technological capabilities will make the world safer, smarter and better.
Life at Certis
If you are a passionate individual looking for opportunities to expand your skills, and purposeful work instead of just a ‘job’, we would love to hear from you.
At Certis, no two days look alike. Our work calendars are filled with chances to collaborate with others, and bring new initiatives to life. Whether you’re looking to improve a process, or have an innovative idea awaiting a technology solve, we want you to bring your ideas to the table.
We are a close-knit team that looks out for each other, works hard to get the job done, and encourages each other to grow – the perfect place for you to grow your career!
Duties & Responsibilities
SecOps (50%)
• Review, approve, prioritize, and submit operational requirements for research, development, and/or acquisition of cyber capabilities.
• Provide input to the identification of cyber-related success criteria.
• Collaborate with stakeholders to establish the enterprise continuity of operations program, strategy, and mission assurance.
• Develop cyber operations plans and guidance to ensure that execution and resource allocation decisions align with organizational objectives.
• Ensure effectively transition operational planning efforts to operations.
• Manage cyber security vendors and MSSPs.
• Manage cyber security attestation, assess impact, and provide responses to cyber threats, incidents, and remediation efforts.
• Collect and maintain data needed to meet system cybersecurity reporting to senior leadership
Cyber Governance (40%)
• Responsible for conducting information security risk assessment for new projects and existing systems to ensure it aligns to cyber security policies.
• Manage security audits, assess the impact and provide responses to cyber threats, incidents and remediation efforts.
• Engage information system stakeholders to communicate cyber security risk issues and provide advisory on a risk mitigation plan.
• Establish cyber policies and standards to address issues of importance to Certis across Business Units.
• To codify and implement corporate-wide cyber awareness exercises thru Phising Red teaming Ex.
• Work with business stakeholders to conduct table-top exercises and draw up cyber security strategies.
• Lead data security program to inform permissible use(s) and required protections for different types of information.
Cyber Projects or Initiatives (10%)
• To take part in cyber projects or initiatives to fortify the cybersecurity controls.
Skills & Experience
- A team player and a great collaborator with a firm commitment to the team’s success
- Self-motivated with strong interpersonal and stakeholder management skills.
- Possess the Growth Mindset
- Bachelor’s degree in related area and/or with equivalent experience in cyber security training, e.g. CISSP.
- Exposure to IT risks assessment or technology audit work includes enterprise IT security, cyber security and/or cloud security services, e.g. AWS, Azure.
- Preferably possess 3-5 years of experience in deploying and supporting IT back-end operations such as applications, network infrastructure, database and/or systems servers.
- Strong ability to understand both IT and business processes.
- Strong knowledge and experience with Cloud security standards and cybersecurity frameworks like NIST, ISO27001, CSA Security-by-Design and Personal Data Protection Act, Essential 8 are essential.
- Up to date with knowledge on cyber security technologies and standards. Operational knowledge of and experience in SIEM and SOAR would be ideal.
Recognition & Reward
What you can expect from us:
- Work on projects for world-class security projects renowned for their safety, reliability and efficiency
- Commitment to your ongoing development, including on-the-job opportunities, formal programs and assistance with further education
- Community volunteering opportunities
- A competitive remuneration package, featuring performance-based incentives and a medical insurance and dental allowance.
Certis is committed to fostering an inclusive and diverse workforce culture, which is supported by our Compass values. Our aim is to attract, develop and retain a truly diverse and high-performing workforce.