Vice President, Cybersecurity (governance And Risks Management)

Singapore, Singapore

Job Description


Overview of the Team

You\'ll be working in the Cybersecurity Department and reporting directly to the CISO.

The increasing reliance of businesses on technology means that cybersecurity and technology risk management is a strategically important function within Temasek. The continuous enhancement and implementation of an effective governance and risk management framework to manage technology, data security and cyber risks across the enterprise will enable Temasek to be better prepared to mitigate and manage these risks in the face of evolving cybersecurity threats.

Roles & Responsibilities

  • The role will work closely with the CISO to carry out independent oversight and continuous monitoring of technology and business units\' compliance with the cyber and technology risk management (TRM) policies and standards.
  • Maintain and perform annual/regular reviews of the TRM and cyber policies and related risk assessment, third-party vendor management, and system criticality assessment frameworks to ensure relevancy and effectiveness
  • Modernise and optimize conduct of governance and oversight role through adoption of new/emerging technology and application to enable real-time update and maintenance of risk register, third party vendor assessment, leveraging on advanced analytics for trending and compliance monitoring
  • Ensure the conduct of risks assessment and implementation of secure System Development Life cycle (SDLC) by Technology and Business units in their development and maintenance of technology infrastructure and applications
  • Drive effective implementation and communication of technology risk management and cyber policies, standards and guidelines
  • Provide independent technology and cyber risk management advice to the business, technical & operations groups to contribute towards secure implementation of technology initiatives
  • Drive the review and enhancement of third party vendor risk management and establish a holistic framework and structure to manage this risk
  • Identify and assess the impact of technology risks on projects and ensure effective controls are established by business/technology units to mitigate technology risks arising from change requests, new initiatives and processes
  • Proactively partner risk owners and manage risks to minimize impact from incidents, breaches or non-compliance
  • Deliver technology risk oversight to CISO and Senior Management using data-driven risk reports and ensure maintenance of cyber risk register
  • Contribute to assessment of vendor risks via pre-contract due diligence processes and ensure development of mitigation plans by Business units
  • Conduct regular communication and refresher trainings to maintain a good level of cybersecurity and information risk awareness
  • Support incident response and carry out any other tasks as assigned
Requirements
  • At least 10 years of relevant experience in the field of technology / cybersecurity policy formulation, governance oversight, audits and risk management
  • Bachelor degree (and higher) in information security, engineering, cybersecurity and related field. Professional information security certifications such as CISA, CRISC, CISSP, CCSK/CCSP an advantage
  • Prior IOT/OT security and knowledge will be an advantage
  • Possess strong prior experience and knowledge in technology and cyber standards and policy review, oversight and governance, risk management and audit. Experience in cyber strategy and policy formulation and cyber programme execution will be an advantage
  • Strong technical background is important, with proven ability in technical security design and implementation
  • P ossess cyber domain knowledge across areas such as cybersecurity technology architecture and solutioning, SOC/MSS, application & infrastructure security, data & information protection, supply chain security, cyber architecture, quantum, cloud computing security and has knowledge of cyber regulations and compliance
  • Good knowledge in industry security practices, frameworks, and standards such as MAS TRM, ISO27001, Cybersecurity Code of Practice, and NIST Cybersecurity Framework
  • Strong communication, interpersonal and leadership skills, with proven ability to manage multiple priorities, drive project teams and collaborate across business units and partners to achieve desired end-goals.
Soft Skills
  • Possess an inquisitive, structured, and logical mind to conduct governance and oversight activities
  • Strong analytical and problem-solving abilities
  • Ability to lead oversight activities as well as work independently to review, assess and manage risks and non-compliances
  • Excellent cross-group and interpersonal skills, with the ability to communicate with technical and non-technical teams
  • Excellent communication, presentation, and advisory skills, capable of engaging senior stakeholders
  • Result-oriented and assertive

eFinancialCareers

Beware of fraud agents! do not pay money to get a job

MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Job Detail

  • Job Id
    JD1297634
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Singapore, Singapore
  • Education
    Not mentioned