The Company
Our client is an international energy firm, seeking to hire a Manager, IT & Information Security for the region. This exciting newly created role has a hybrid scope of IT infrastructure and Information Security, hence seeking for someone hands-on and independent, to establish a solid Information Security baseline and infrastructure from scratch. Experience in general IT governance, project management, managing security controls based on security frameworks such as SIO27001 and NIST are required.
The Role
The primary responsibility of this role is to build and manage a regional IT team that is capable of efficiently installing resources to achieve organizational goals. The role involves implementing and maintaining an information security program, including developing a security roadmap to achieve compliance across all child companies. The incumbent is also responsible for establishing incident response and disaster recovery processes that align with business continuity plans and requirements. You will establish a comprehensive understanding of the organization\'s risk profile, the individual is required to have a thorough knowledge of the business model and strategy. Furthermore, this role involves developing an IT strategy that supports business goals and builds on good information security practices. In managing IT in the region, the incumbent oversees local IT teams and manages the regional IT budget in line with business expectations. Additionally, you will make sure that the organization\'s security program and IT architecture in addressing developments and changes in the digital business and threat environments. This involves tracking such changes and validating the regional IT architecture for security best practices, as well as conducting risk assessments to manage regional information security risks to an acceptable level. The individual is accountable for creating and maintaining IT procedures and documentation and rolling out baseline security configuration standards for operating systems, network segmentation, and identity and access management. To promote a culture of security awareness among employees, the individual manages user awareness training programs for all employees in the business. Furthermore, the successful candidate will develop a close-knitted relationship and interaction between IT and regional/local business management and collaborates with corporate IT and Information Security to guarantee alignment of the regional IT architecture with corporate policies and guidelines.
Your Profile
The ideal candidate for this role should possess a minimum of 10 years of experience in general IT. The individual should have demonstrated experience in planning, designing, and implementing security solutions and architecture, as well as experience in general IT governance, including organizational management, technology evaluation, vendors management, and program planning. Additionally, the candidate should have project management and decentralized team coordination experience and be familiar with enterprise infrastructure and networking solutions. A good technical understanding of advanced network security concepts and identity and access management solutions is also essential. The incumbent should have experience in managing security controls based on security frameworks such as ISO27001 and NIST. Finally, the candidate should have flexibility in terms of travel.
Apply Today
Please send your resume, in WORD format only and quote reference number SN11972265, by clicking the apply button. Please note that only short-listed candidates will be contacted.
By clicking \'apply\', you give your express consent that Robert Half may use your personal information to process your job application and to contact you from time to time for future employment opportunities. For further information on how Robert Half processes your personal information and how to access and correct your information, please read the Robert Half privacy notice: https://www.roberthalf.com.sg/privacy-statement
MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.