Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a dynamic digital and cyber landscape, where trust & collaboration are key, ATS continues to drive mutually beneficial business outcomes through collaboration with GovTech, government agencies and commercial partners to mitigate cyber risks and bolster security postures.
As the Cybersecurity Consultant in one of the government agencies, you will work closely with both application and infrastructure teams to ensure that business needs are met, projects are delivered timely within projected costs, and ensure compliance are met within acceptable risks levels. You will also be called upon to support security operations and incident management.
Responsibilities:
- Security Governance & Compliance
- Support the ACISO in maintaining an overall view of ICT security design, implementation and operations across agency systems. Assist in ensuring compliance with IM8 requirements and agency-specific security policies, assist in the annual review of security metrics and contribute to the implementation of the agency's risk and control programme.
- IT Governance & IM8 Compliance
- Support control validations for both projects and Business-As-Usual (BAU) controls across on-premises and cloud environments. Participate in Change Advisory Board (CAB) forums as an IT and security governance representative.
- Risk Management
- Support the conduct of gap analyses to assess the agency's ICT security posture and maturity. Assist in maintaining the Security Risk Register, tracking approved waivers, risk acceptances and corrective action plans.
- Policies, Standards & Guidelines
- Support the review and update of agency ICT security policies, drawing on industry frameworks such as NIST, ISO, OWASP, and PDPA requirements.
- Security Controls & Patch Governance
- Support the monitoring and validation of security controls across agency systems, including account and access management, patching and hardening, network connectivity, privileged access management and system event logging. Assist in driving patch governance processes to minimise patch overdue instances.
- Threat & Incident Management
- Assist in monitoring for security incidents and support the investigation and management of ICT security incidents.
- Third-Party & Vendor Governance
- Support governance oversight of third-party vendors, staff and contractors to ensure alignment with IM8 compliance requirements.
- Reporting & Metrics
- Assist in preparing the monthly Technology and Security Governance report, IT Governance Report and security scorecard.
- Security Awareness
- Help coordinate and deliver ICT security awareness and education programmes for agency users, IT officers, and third parties.
Requirements
- Proven experience in IT security management with a focus on governance, risk, and compliance.
- In-depth knowledge of security governance frameworks, risk management methodologies, and compliance requirements.
- Familiar with relevant standards and regulations such as ISO 27001, GDPR, NIST, etc.
- Strong analytical and problem-solving skills with the ability to communicate complex security and compliance issues effectively.
- Experience in securing SaaS Products and cloud security is preferred
- Relevant certifications such as CISSP, CISM, CRISC, or CGEIT are a plus.
Join us and discover a meaningful and exciting career with Assurity Trusted Solutions!
The remuneration package will commensurate with your qualifications and experience. Interested applicants, please click "Apply Now".
We thank you for your interest and please note that only shortlisted candidates will be notified.
By submitting your application, you agree that your personal data may be collected, used and disclosed by Assurity Trusted Solutions Pte. Ltd. (ATS), GovTech and their service providers and agents in accordance with ATS’s privacy statement which can be found at: or such other successor site.
Benefits
- A wholly-owned subsidiary of GovTech.
- We promote a learning culture and encourage you to grow and learn.
Skills Required
- Proven experience in IT security management
- In-depth knowledge of security governance frameworks, risk management methodologies
- Familiar with standards such as ISO 27001, GDPR, NIST
- Strong analytical and problem-solving skills
- Experience in securing SaaS Products and cloud security
- Relevant certifications such as CISSP, CISM, CRISC, or CGEIT
What We Do
Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a trusted partner, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, governance and assurance services, as well as managed processes.









