Salary Range
SGD 54,000 - SGD 72,000 /year
SGD 4,500 - SGD 6,000/month
Skills Required
Job Description
Job Title: IT Security Officer
(ITSO)
Location: Onsite
Working Hours: Monday to Friday, 8.30am to 6pm.
Job Summary: We are seeking a team of IT Security Officers
(ITSOs) who will serve as IT security subject matter experts, providing
comprehensive support for system managers and the Board's Cybersecurity team.
The team will be responsible for ensuring the security of the IT
infrastructure, compliance with security policies and standards, and overseeing
cyber operations across all hosting environments (On premise, GDC, GCC, GCC+
and etc). The scope of responsibilities will be distributed among the team
members to ensure comprehensive coverage and effective security operations.
Team Structure and Scope Distribution:
The ITSO team will divide responsibilities across key security domains to
ensure comprehensive coverage. The team will directly report to Board’s
Cybersecurity Team, team members will focus on specialised areas including
security monitoring, system security and compliance activities, and technical
support, risk assessments, and governance functions. This distribution ensures
specialised expertise whilst maintaining collaborative oversight across all
security functions.
Key Responsibilities:
System Security and Compliance: The team will conduct security reviews,
system hardening checks and conducting risk assessment based on deviations to
hardening requirements (e.g. CIS Benchmarks). The team will also create Client
hardening baselines using available benchmarks (e.g. CIS Benchmarks or those
provided by the manufacturer). Responsibilities include create, review and
maintain Standard Operation Procedures (SOPs), planning and scheduling annual
reviews of security hardening documents, performing compliance reviews, and
ensuring remediation of findings.
Management and responding to security alerts: Monitoring phishing alerts and communicating with staff regarding malicious emails, supporting audit activities, vulnerability scans, and penetration tests. Communicating and following SOP to perform malware scans on endpoints with anti-virus alerts.
Client has cloud security engineers that manage cloud security tools like Cloud
Security Posture Management.
The ITSO shall work with the cloud security engineers to communicate with System Managers to follow up on findings identified in CSPM and Government in-house CSPM tool (Cloudscape).
The ITSO shall perform routine review of the findings flagged by the CSPM tools,
monitoring of the suppression expiry to ensure its validity, following up
directly with system Officers-in-Charge and infrastructure teams with
recommended actions to rectify in a timely manner.
The team will maintain a tracking system to monitor the status of remediation efforts, documenting whether recommended actions have been completed, are in progress, or require escalation, ensuring accountability and timely resolution of security issues.
The ITSO shall be able to make assessment if the security recommendations are
required or false alarms (using GenAI tool provided by Client to aid him in his
assessment).
Technical Support and Governance: The role involves providing
vulnerability monitoring and recommending and implementing mitigation actions
to system Officers-in-Charge and infrastructure teams. The team will also
provide security advice or proposals on security measures for new projects and
functionalities and monitor governance compliance tools, such as Cloudscape.
The team will also provide their risk-based assessments to prioritise
rectification of alerts (e.g. Cloudscape). The Team is also expected to manage
and update into the governance compliance tools with the relevant information
to suppress the affected findings when approval is sought. The team will
respond to auditors’ RFI on security monitoring.
Reporting and Training: Monthly reports to summarise the progress of
tasks and to flag outstanding non-remediated issues/alerts across the key
security domains will be compiled collaboratively by the team and presented to
the Board's Cybersecurity team. The team will coordinate monthly IT security
awareness training and briefings for users to enhance organisational security
posture, with team members contributing their specialised expertise to deliver
comprehensive training programmes.
Qualifications:
·All candidates must possess a bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field along with minimally an internationally recognised security certifications such as CISSP, CISM, CRISC, or CISA.
· Proven experience of at least 2 years in Cloud cybersecurity is required, including security assessment, vulnerability management within cloud and on prem environments, particularly GCC. Familiarity with security platforms such as Azure Log Analytics, AWS CloudWatch, AWS Security Hub CSPM, and Microsoft Defender for Cloud are preferred.
· Strong analytical and problem-solving skills are necessary to resolve security related issues.
·Excellent communication skills in both spoken and written English to effectively collaborate with team members, system Officers-in-Charge, infrastructure teams, and external vendors.
General Requirements: Strong collaborative skills are essential to ensure seamless coordination between the specialised roles whilst maintaining
Mandatory Certification: ITSO - CISSP, CISM, CISA (any one).
When you apply, you voluntarily consent to the disclosure, collection and use of your personal data for employment/recruitment and related purposes in accordance with the Tech Aalto Privacy Policy, a copy of which is published at Tech Aalto’s website (https://www.techaalto.com/privacy/)
Confidentiality is assured, and only shortlisted candidates will be notified for interviews.
About TECH AALTO PTE. LTD.
Similar Jobs
Network Security Engineer
TECH AALTO PTE. LTD.
SGD 36,000 - SGD 48,000/yr
Oracle Database Administrator
TECH AALTO PTE. LTD.
SGD 72,000 - SGD 84,000/yr
Full Stack Developer
TECH AALTO PTE. LTD.
SGD 84,000 - SGD 144,000/yr
SAP SD MM Business Analyst
TECH AALTO PTE. LTD.
SGD 96,000 - SGD 156,000/yr
Business Analyst
TECH AALTO PTE. LTD.
SGD 84,000 - SGD 124,800/yr