Epicareer Might not Working Properly
Learn More

Information Security Lead

Salary undisclosed

Checking job availability...

Original
Simplified


DT One is currently seeking a talented individual as an Information Security Lead based in Singapore, with experience supporting a global company, to join the Infrastructure, Network and Security team.

The Engineering team is responsible for maintaining, building and expanding the core platform of DT One in a highly available environment, processing millions of transactions per month. Ensuring scalability, redundancy, security and performance while at the same time enabling multiple external and internal services and APIs to work together is one of the key challenges of our team. Connected to hundreds of partners all over the world via various APIs and protocols, our platform is unique and delivers the best-in-class products to our customers.

The Infrastructure, Network and Security team is part of the Engineering division and is in charge of the overall infrastructure operations and monitoring. The team works closely with the development and operations teams to identify needs, weaknesses and risks and to pro-actively enable the platform to support the business through the use of modern tools and technologies.

In this role you will report directly to the Head of Architecture, and have an indirect reporting line to the CTO.

We are looking for a highly driven, self-motivated, technically hands-on individual who is truly excited about creating meaningful impact. In this role you will combine a startup mindset with the scale of an industry leader, providing you with hands-on exposure to how key organization decisions are made and the challenges of operating and securing critical cloud infrastructure and services. A career with DT One provides invaluable experience in an exciting and rapidly expanding market and an opportunity to be part of a truly global company with various offices worldwide and a workforce that includes dozens of different nationalities.

Why DT One?



At DT One, we are revolutionising cross-border micropayments and digital value transfers by making them accessible, reliable, and effortless. As a global leader in mobile top-ups and digital non-cash micropayments, we are at the forefront of connecting communities and enabling businesses to thrive. Join us in shaping the future of fintech and communications as we deliver innovative solutions that empower people and businesses around the world.

What you'll do:

  • Serve as a focal point of contact for information Security matters within the organization and with customers
  • Keep our platforms, systems, data and information secure by applying best practices and techniques when it comes to security
  • Design, roll-out and lead our Infosec Vendor Risk Assessment Program, providing a first level of due diligence in a smart and pragmatic way with our partners to safeguard the sensitive data that we may be sharing to enable our services
  • Define and configure default security capabilities and best practices in collaboration with infrastructure and other teams
  • Identify security risks early on and ensure they are addressed before they become actual problems
  • Manage security policies, identify and respond to any intrusion with anti-malware protection, intrusion detection, and intrusion prevention systems
  • Enforce corporate and security infrastructure policies across the teams
  • Define logging and monitoring that is required to validate that the platform and its data is secure
  • Setup, monitor, correlate and investigate security alerts to detect and resolve incidents
  • Work closely with the rest of the engineering team to assess security aspects of the platform and systems prior to production
  • Keep up to date with trends and innovation in security and best practices
  • Define relevant KPIs and metrics to assess and track the security events on the platform and provide reporting
  • Provide security awareness training to all information system users
  • Lead the annual ISO27001 audits and certification process
  • Assist with internal audits
  • Perform internal vulnerability scans and assessments on a regular basis

What we are looking for:

  • Degree in Computer Science, Information Systems or equivalent
  • Professional qualifications such as CISSP, CCSP , ISO27001 Implementer or Auditor would be highly advantageous
  • 5+ years of experience in an information security role
  • 3+ years of implementing security monitoring and security best practise in the AWS Cloud
  • Strong knowledge of risk assessment tools, technologies and methods
  • Experience and strong understanding of ISO27001 and other frameworks and standards
  • Experience auditing secure networks, systems and application architectures
  • Experience planning, researching and developing security policies, standards and procedures
  • An understanding and experience of Linux administration, command line interface, shell scripting, log analysis is required
  • Experience supporting the following technology stack and services (Amazon AWS, Terraform, Ansible, Docker, HAProxy, Nginx, ELB/ALB, ELK, Prometheus, Grafana, ECS/EKS/Kubernetes, Fluentd, Elasticsearch) is a plus
  • Programming experience in one or several of the following languages (Golang, JavaScript, Perl, Python or Ruby) is a plus
  • A strong multi-tasker with a keen eye for detail, ability to think one step ahead
  • Strong analytical, problem-solving skills and willingness to investigate complex problems
  • Strong strategic thinking skills to handle both the big picture and crucial decisions
  • Ability to thrive on a high level of autonomy and responsibility
  • Ability to work very well cross-functionally, to think rigorously and make hard decisions and tradeoffs when required
  • Sustain learning and knowledge sharing culture in the organization and aim at achieving a high level of technical excellence and stability
  • Excellent written and verbal communication skills in English


DT One is currently seeking a talented individual as an Information Security Lead based in Singapore, with experience supporting a global company, to join the Infrastructure, Network and Security team.

The Engineering team is responsible for maintaining, building and expanding the core platform of DT One in a highly available environment, processing millions of transactions per month. Ensuring scalability, redundancy, security and performance while at the same time enabling multiple external and internal services and APIs to work together is one of the key challenges of our team. Connected to hundreds of partners all over the world via various APIs and protocols, our platform is unique and delivers the best-in-class products to our customers.

The Infrastructure, Network and Security team is part of the Engineering division and is in charge of the overall infrastructure operations and monitoring. The team works closely with the development and operations teams to identify needs, weaknesses and risks and to pro-actively enable the platform to support the business through the use of modern tools and technologies.

In this role you will report directly to the Head of Architecture, and have an indirect reporting line to the CTO.

We are looking for a highly driven, self-motivated, technically hands-on individual who is truly excited about creating meaningful impact. In this role you will combine a startup mindset with the scale of an industry leader, providing you with hands-on exposure to how key organization decisions are made and the challenges of operating and securing critical cloud infrastructure and services. A career with DT One provides invaluable experience in an exciting and rapidly expanding market and an opportunity to be part of a truly global company with various offices worldwide and a workforce that includes dozens of different nationalities.

Why DT One?



At DT One, we are revolutionising cross-border micropayments and digital value transfers by making them accessible, reliable, and effortless. As a global leader in mobile top-ups and digital non-cash micropayments, we are at the forefront of connecting communities and enabling businesses to thrive. Join us in shaping the future of fintech and communications as we deliver innovative solutions that empower people and businesses around the world.

What you'll do:

  • Serve as a focal point of contact for information Security matters within the organization and with customers
  • Keep our platforms, systems, data and information secure by applying best practices and techniques when it comes to security
  • Design, roll-out and lead our Infosec Vendor Risk Assessment Program, providing a first level of due diligence in a smart and pragmatic way with our partners to safeguard the sensitive data that we may be sharing to enable our services
  • Define and configure default security capabilities and best practices in collaboration with infrastructure and other teams
  • Identify security risks early on and ensure they are addressed before they become actual problems
  • Manage security policies, identify and respond to any intrusion with anti-malware protection, intrusion detection, and intrusion prevention systems
  • Enforce corporate and security infrastructure policies across the teams
  • Define logging and monitoring that is required to validate that the platform and its data is secure
  • Setup, monitor, correlate and investigate security alerts to detect and resolve incidents
  • Work closely with the rest of the engineering team to assess security aspects of the platform and systems prior to production
  • Keep up to date with trends and innovation in security and best practices
  • Define relevant KPIs and metrics to assess and track the security events on the platform and provide reporting
  • Provide security awareness training to all information system users
  • Lead the annual ISO27001 audits and certification process
  • Assist with internal audits
  • Perform internal vulnerability scans and assessments on a regular basis

What we are looking for:

  • Degree in Computer Science, Information Systems or equivalent
  • Professional qualifications such as CISSP, CCSP , ISO27001 Implementer or Auditor would be highly advantageous
  • 5+ years of experience in an information security role
  • 3+ years of implementing security monitoring and security best practise in the AWS Cloud
  • Strong knowledge of risk assessment tools, technologies and methods
  • Experience and strong understanding of ISO27001 and other frameworks and standards
  • Experience auditing secure networks, systems and application architectures
  • Experience planning, researching and developing security policies, standards and procedures
  • An understanding and experience of Linux administration, command line interface, shell scripting, log analysis is required
  • Experience supporting the following technology stack and services (Amazon AWS, Terraform, Ansible, Docker, HAProxy, Nginx, ELB/ALB, ELK, Prometheus, Grafana, ECS/EKS/Kubernetes, Fluentd, Elasticsearch) is a plus
  • Programming experience in one or several of the following languages (Golang, JavaScript, Perl, Python or Ruby) is a plus
  • A strong multi-tasker with a keen eye for detail, ability to think one step ahead
  • Strong analytical, problem-solving skills and willingness to investigate complex problems
  • Strong strategic thinking skills to handle both the big picture and crucial decisions
  • Ability to thrive on a high level of autonomy and responsibility
  • Ability to work very well cross-functionally, to think rigorously and make hard decisions and tradeoffs when required
  • Sustain learning and knowledge sharing culture in the organization and aim at achieving a high level of technical excellence and stability
  • Excellent written and verbal communication skills in English