Cyber and IT Security Advisory Principal Specialist SG

Posted 8 Days Ago
Be an Early Applicant
2 Locations
In-Office or Remote
Expert/Leader
Insurance • Payments • Financial Services
The Role
Provides cybersecurity advisory and oversight for AWS architectures, defining cloud security standards, conducting architecture reviews, tracking remediation, and ensuring regulatory compliance. Leads security programs, budgets, roadmaps, incidents, vulnerability assessments, penetration testing, and risk governance. Requires extensive experience across threat intelligence, incident response, VAPT, cloud security, enterprise security technologies, cryptography, networking, and highly regulated environments.
Summary Generated by Built In

Key Responsibilities:

  • Provide security advisory and oversight for AWS cloud architectures, ensuring alignment with security-by-design and defense‑in‑depth principles.

  • Define, implement, and enforce AWS cloud security standards, guardrails, and best practices across accounts, regions, and workloads.

  • Conduct security architecture reviews for AWS‑based applications and infrastructure, including VPC design, IAM models, data protection, and network segmentation.

  • Review and track remediation of cloud security findings.

  • Ensure AWS environments comply with applicable regulatory and industry requirements (e.g. MAS TRM, NIST).

  • Responsible for ensuring IT systems and applications within our organization meet the needs of the business while adhering to security best-practices, compliance and regulatory requirements.

  • Collaborate with teams within and outside of Information Security to assess, monitor, and reduce security risk within the organisation.
  • Manage project risks and issues, including risk identification, assessment, monitoring, remediation, and ensure escalation in project governance
  • Experience in leading and implementing multiple security solutions and technologies across one or more IT Security domains (Cyber Program Management, Threat Intelligence, Identity & Access Management, Data Protection, Privacy). This experience should include responding to compliance and advisories from regulatory bodies. 

  • Ensure cybersecurity programs are structured and well-planned and budgeted

  • Oversee CAPEX & OPEX budget for security services and projects and manage all reporting to Committees

  • Work with IT Security Leads to manage changes in IT Security Roadmap and manage the change management for IT Security programs

  • Manage IT Security incidents, mitigation planning, damage assessment and corrective measures.

  • Review vulnerability assessment & penetration testing to assess the residual risks & mitigation plans.

  • Responsible for ensuring identified cyber security issues are addressed in a timely manner.

  • Raise cybersecurity knowledge and awareness within the organisation

 

Requirements:

  • A Bachelor's degree in computer science or equivalent is a minimum.
  • Minimum 10 years’ experience working in a highly-regulated IT Security/CII environment; Including 5 years of threat intelligence, incident response and VAPT experience
  • Good knowledge and hands-on experience in native-cloud services on Cloud Security 

  • Good understanding of TCP/IP protocol and OSI Seven Layer Model.

  • Strong knowledge of security best practices and concepts.

  • Analyzes & prepares recommendations relating to security for existing IT infrastructures / Applications.

  • Expert understanding of firewall technologies.

  • Advance knowledge & Hands-on experience in supporting and maintaining enterprise IT Security solutions and technologies such as Firewall, IDS/IPS and Proxy, etc

  • Advance knowledge of Windows and/or Unix-based systems / architectures and related security.

  • Advance knowledge of cryptography / cryptographic systems

  • Advance level of knowledge of LAN / WAN technologies

  • Knowledge of VPN technologies.

  • Be able to articulate threats and risk to business and technology leaders.

  • Ability to plan, organize and prioritize tasks to complete within established time frames. 
  • Highly result oriented and can work independently.
  • Ability to build relationships and interact effectively with internal and external parties.
  • Strong analytical, technical, and communication (both oral and written) skills.
  • Strong interest in the field of information security.
  • Creative, independent with good problem solving skills.
  • Ability to work effectively as a team

#LI-DNI 

About UsWith operations that span 15 different markets across the region, the opportunity to expand your experience, test your capabilities, and exhibit your resilience is ample. #teamCIMB is always keen to welcome the ones who are ready to make that very special difference – for themselves and the bank.

Skills Required

  • Bachelor's degree in computer science or equivalent
  • At least 10 years of experience in highly regulated IT security or CII environments
  • At least 5 years of threat intelligence, incident response, and VAPT experience
  • Hands-on experience with native cloud security services
  • Knowledge of TCP/IP and the OSI seven-layer model
  • Strong knowledge of security best practices and concepts
  • Experience analyzing security risks and preparing infrastructure or application recommendations
  • Expert understanding of firewall technologies
  • Advanced hands-on experience with firewalls, IDS/IPS, proxies, and enterprise IT security solutions
  • Advanced knowledge of Windows and/or Unix-based systems and security
  • Advanced knowledge of cryptography and cryptographic systems
  • Advanced knowledge of LAN/WAN technologies
  • Knowledge of VPN technologies
  • Ability to communicate threats and risks to business and technology leaders
  • Strong analytical, technical, written, and verbal communication skills
  • Ability to plan, prioritize, work independently, solve problems, and collaborate effectively
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
1,000 Employees
Year Founded: 1947

What We Do

CIMB Singapore is a leading universal bank operating in ASEAN's global financial gateway. Leveraging CIMB Group's extensive regional network and resources, it provides a comprehensive suite of conventional and Islamic banking solutions curated to a wide range of financial needs. The bank serves both individual and business clients, offering retail, commercial, and corporate banking services, and specializes in bridging markets across the ASEAN region.

Similar Jobs

CIMB Singapore Logo CIMB Singapore

Cyber and IT Security Advisory Principal Specialist SG

Insurance • Payments • Financial Services
In-Office or Remote
2 Locations
1000 Employees

GitLab Logo GitLab

Sales Manager

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
In-Office or Remote
Singapore, SGP
2500 Employees

Dragos Logo Dragos

Senior Incident Responder

Security • Cybersecurity
In-Office or Remote
Singapore, SGP
295 Employees
130K-130K Annually

Zscaler Logo Zscaler

Senior Partner Sales Specialist

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
Singapore, SGP
8697 Employees

Similar Companies Hiring

Scotch Thumbnail
Artificial Intelligence • eCommerce • Fintech • Payments • Retail • Software • Analytics
US
35 Employees
Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account