
Director, Information & Cyber Security Engineer, Group Asset Management - Business Technology
Salary undisclosed
Checking job availability...
Original
Simplified
- Design, implement, and manage security solutions across on-premise and cloud environments (AWS, GCP, Azure) using cloud-native security tools and services.
- Configure and maintain secure cloud architectures, identity and access management (IAM), security monitoring, and incident response automation.
- Perform continuous security monitoring, log analysis, and threat detection using SIEM tools, endpoint security, and cloud security monitoring solutions.
- Conduct security assessments, vulnerability scanning, penetration testing, and remediation activities to mitigate security risks.
- Perform risk assessments for applications, infrastructure, and third-party services, ensuring compliance with frameworks such as CIS, NIST, PCI DSS, and SOC 2.
- Investigate security incidents, analyze attack patterns, and lead response efforts to mitigate threats in real time.
- Support compliance initiatives by ensuring security controls meet regulatory and internal requirements, including MAS guidelines.
- Develop automation scripts and tools for security monitoring, threat intelligence integration, and policy enforcement.
- Assist in delivering security training programs and promoting a security-first mindset across the organization.
- Continuously research and implement security best practices, emerging threats, and new cybersecurity technologies.
- Excellent relationship-building, stakeholder management, communication, and influencing skills.
- Experience managing senior business stakeholders.
- Strong motivation and capability to drive initiatives and changes.
- Proactive leadership and teamwork skills.
- Relevant industry certifications (e.g., CISSP, CISM, CISA, CCSP).
- Excellent analytical and problem-solving abilities.
- Experience in team leadership, coaching, and mentoring.
- Knowledge of industry standards such as ISO 27001, MAS TRM, NIST, CIS, PCI/DSS, and SOC 2.
- Familiarity with security technologies such as firewalls, intrusion detection systems, and endpoint protection.
- Experience with security operations centers (SOC) and setting up SOC models.
- Strong program management background.
- Product-specific certifications such as MCSE, CCNA Security.
- Good knowledge of TCP/IP protocol.
- Ability to handle sensitive information with confidentiality and integrity.
- Experience in driving enterprise initiatives for E2E security posture analysis.
- Ability to work with subsidiaries and understand regional security requirements.
- Design, implement, and manage security solutions across on-premise and cloud environments (AWS, GCP, Azure) using cloud-native security tools and services.
- Configure and maintain secure cloud architectures, identity and access management (IAM), security monitoring, and incident response automation.
- Perform continuous security monitoring, log analysis, and threat detection using SIEM tools, endpoint security, and cloud security monitoring solutions.
- Conduct security assessments, vulnerability scanning, penetration testing, and remediation activities to mitigate security risks.
- Perform risk assessments for applications, infrastructure, and third-party services, ensuring compliance with frameworks such as CIS, NIST, PCI DSS, and SOC 2.
- Investigate security incidents, analyze attack patterns, and lead response efforts to mitigate threats in real time.
- Support compliance initiatives by ensuring security controls meet regulatory and internal requirements, including MAS guidelines.
- Develop automation scripts and tools for security monitoring, threat intelligence integration, and policy enforcement.
- Assist in delivering security training programs and promoting a security-first mindset across the organization.
- Continuously research and implement security best practices, emerging threats, and new cybersecurity technologies.
- Excellent relationship-building, stakeholder management, communication, and influencing skills.
- Experience managing senior business stakeholders.
- Strong motivation and capability to drive initiatives and changes.
- Proactive leadership and teamwork skills.
- Relevant industry certifications (e.g., CISSP, CISM, CISA, CCSP).
- Excellent analytical and problem-solving abilities.
- Experience in team leadership, coaching, and mentoring.
- Knowledge of industry standards such as ISO 27001, MAS TRM, NIST, CIS, PCI/DSS, and SOC 2.
- Familiarity with security technologies such as firewalls, intrusion detection systems, and endpoint protection.
- Experience with security operations centers (SOC) and setting up SOC models.
- Strong program management background.
- Product-specific certifications such as MCSE, CCNA Security.
- Good knowledge of TCP/IP protocol.
- Ability to handle sensitive information with confidentiality and integrity.
- Experience in driving enterprise initiatives for E2E security posture analysis.
- Ability to work with subsidiaries and understand regional security requirements.