Live opening · Posted 16 hours ago

IT Security Officer - A26377

Activate Interactive Pte Ltd · Singapore
Workable No
JobBeeper subscribers received an alert for this role.

At a glance

The key details from the original listing.

Posted 16 hours ago
CompanyActivate Interactive Pte Ltd
LocationSingapore
Work modeNo
SkillsAWS, Azure
SourceWorkable
ListedPosted 16 hours ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
9 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
61,066 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

Activate Interactive Pte Ltd (“Activate”) is a leading technology consultancy headquartered in Singapore with a presence in Malaysia and Indonesia. Our clients are empowered with quality, cost-effective, and impactful end-to-end application development, like mobile and web applications, and cloud technology that remove technology roadblocks and increase their business efficiency.
We believe in positively impacting the lives of people around us and the environment we live in through the use of technology. Hence, we are committed to providing a conducive environment for all employees to realize their full potential, who in turn have the opportunity to continuously drive innovation.
We are searching for our next team members to join our growing team.
If you love the idea of being part of a growing company with exciting prospects in mobile and web technologies that create positive impact on people’s lives, then we would love to hear from you.
This is a 12-months fixed term contract.
Location: PUB Waterhub / 40 Scotts Road
The Information Technology Security Officer will support the Board's cybersecurity
governance, assurance, and security management activities across security architecture,
vulnerability assessment and penetration testing, risk assessment, system hardening, cloud
security posture management, software clearance, firewall and network deviation
management, cybersecurity policies and standards, and security metrics reporting.
The officer will coordinate security reviews and assessments, maintain cybersecurity registers
and trackers, follow up on remediation and outstanding actions with relevant stakeholders,
prepare security reports and management dashboards, and support the upkeep of
cybersecurity policies, standards, specifications, and documentation.
This role requires strong coordination, analytical, documentation, and stakeholder
management skills, with a good understanding of enterprise cybersecurity controls, risk
management, and governance processes.
What the officer will be working on:
Security Architecture
• Assist in maintaining security architecture diagrams, records, and approved design documentation.
• Track security architecture review requests and coordinate inputs from project teams and relevant stakeholders.
• Maintain records of architecture decisions, recommendations, and approved designs.
• Support preparation of security advisory materials and architecture review documentation.
Vulnerability Assessment & Penetration Testing
• Coordinate and schedule VAPT engagements with system owners, vendors, and security testers.
• Maintain the VAPT tracker and follow up on remediation of identified vulnerabilities.
• Coordinate re-testing activities and update finding closure status.
• Assist in preparing VAPT reports, summaries, and presentation materials.
Risk Assessment
• Coordinate cybersecurity risk assessment exercises with system owners and stakeholders.
• Maintain the cybersecurity risk register and track risk treatment and remediation actions.
• Support preparation of risk reports and management review materials.
• Facilitate risk acceptance, exception, and approval processes in accordance with the Board's requirements.
Hardening Compliance
• Coordinate security hardening compliance assessments with system and infrastructure teams.
• Track hardening gaps and follow up on remediation progress.
• Maintain hardening compliance records, checklists, and trackers.
• Support preparation of periodic hardening compliance reports.
Cloud Security Posture Management
• Monitor and triage findings generated by Cloud Security Posture Management tools.
• Track cloud security misconfigurations and follow up on remediation with system and cloud owners.
• Maintain CSPM findings and remediation status records.
• Prepare periodic cloud security posture reports and summaries.
Software Clearance
• Receive, log, and track software security clearance requests.
• Coordinate with requestors and vendors to obtain required technical and security documentation.
• Maintain the software clearance register and approval status.
• Support preparation of software security evaluation summaries and monitor expiring clearances.
Firewall & Network Deviation Management
• Receive, track, and maintain firewall rule change and network security deviation requests.
• Follow up with requestors and network teams on outstanding actions and expiring deviations.
• Maintain deviation registers and prepare review summaries for approval.
• Coordinate periodic firewall rule and network deviation reviews with relevant teams.
Policy, Standards & Governance / Cyber Specifications
• Assist in drafting, reviewing, and updating cybersecurity policies, standards, guidelines, and procedures.
• Maintain the cybersecurity policy and standards documentation repository.
• Track document review cycles, approvals, and expiry dates.
• Support preparation and review of cybersecurity specifications for projects, procurements, and tenders.
Security Metrics & Reporting
• Collate and consolidate cybersecurity data and status updates from relevant teams and systems.
• Maintain cybersecurity dashboards covering vulnerabilities, risks, deviations, compliance, and audit items.
• Prepare routine security metrics and management reports.
• Follow up with responsible parties on outstanding cybersecurity actions and remediation items.
Security & Compliance
• Ensure activities are performed in accordance with the Board's cybersecurity policies, applicable regulatory requirements, and the Cybersecurity Code of Practice (CCoP).
• Support cybersecurity assessments, internal and external audits, and evidence collection activities.
• Maintain accurate and up-to-date cybersecurity records, reports, registers, and supporting documentation.
• Protect sensitive and security-classified information in accordance with the Board's requirements.
What are we looking for?
Mandatory Technical Skills
• Good understanding of enterprise cybersecurity concepts, including vulnerability management, security risk assessment, system hardening, firewall controls, cloud security, and security governance.
• Experience coordinating cybersecurity assessments, remediation activities, and security review processes involving multiple technical and business stakeholders.
• Ability to review and understand vulnerability assessment findings, security risk assessments, security architecture diagrams, firewall rules, and security compliance
reports.
• Familiarity with security frameworks, policies, standards, and cybersecurity
governance processes.
• Strong analytical, documentation, stakeholder coordination, and follow-up skills.
Good-to-Have
• Familiarity with CSPM platforms and cloud security concepts across AWS, Azure, or
equivalent cloud environments.
• Experience with vulnerability management or VAPT tools and interpreting
CVE/CVSS information.
• Understanding of enterprise network architecture, firewall rules, security zones, and
network segmentation.
• Experience supporting cybersecurity audits, governance, risk, and compliance
activities.
Certifications
• CompTIA Security+, ISC2 Certified in Cybersecurity (CC), or equivalent
foundational cybersecurity certification is highly preferred.
• Certified Information Systems Security Professional (CISSP), Certified Information
Security Manager (CISM), or equivalent will be advantageous.
• Certified in Risk and Information Systems Control (CRISC), ISO 27001-related
certification, or equivalent risk/governance certification will be advantageous.
• Relevant cloud security certification such as Microsoft Azure Security, AWS Security, or equivalent will be advantageous.
Requirements
Mandatory Technical Skills
• Good understanding of enterprise cybersecurity concepts, including vulnerability management, security risk assessment, system hardening, firewall controls, cloud security, and security governance.
• Experience coordinating cybersecurity assessments, remediation activities, and security review processes involving multiple technical and business stakeholders.
• Ability to review and understand vulnerability assessment findings, security risk assessments, security architecture diagrams, firewall rules, and security compliance reports.
• Familiarity with security frameworks, policies, standards, and cybersecurity governance processes.
• Strong analytical, documentation, stakeholder coordination, and follow-up skills.
Good-to-Have
• Familiarity with CSPM platforms and cloud security concepts across AWS, Azure, or equivalent cloud environments.
• Experience with vulnerability management or VAPT tools and interpreting CVE/CVSS information.
• Understanding of enterprise network architecture, firewall rules, security zones, and network segmentation.
• Experience supporting cybersecurity audits, governance, risk, and compliance activities.
Certifications
• CompTIA Security+, ISC2 Certified in Cybersecurity (CC), or equivalent foundational cybersecurity certification is highly preferred.
• Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or equivalent will be

Work arrangement
No

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App