SalaryPeak

Cybersecurity Lead

E M SERVICES PRIVATE LIMITED
Singapore 7+ years Posted Feb 23, 2026

Salary Range

SGD 108,000 - SGD 144,000 /year

SGD 9,000 - SGD 12,000/month

Skills Required

Information SecuritySecurity OperationsIncident ResponseRegulatory ComplianceCyber SecurityInformation Security GovernanceStakeholder Relationsscientific disciplineSecurity PolicyInformation TechnologyComputer ScienceSecurity Programme ManagementCyber Incident ManagementStandards Developmentinteraction with the public

Job Description

Key Roles & Responsibilities

1. Cybersecurity Governance, Policy & Standards

  • Own and maintain baseline cybersecurity policies, standards and minimum security controls applicable across Town Councils (and EM Group where applicable).

  • Translate cybersecurity expectations into practical standards that can be implemented by IT Officers and vendors across varying Town Council environments.

  • Define and maintain cybersecurity governance artefacts (e.g., control checklists, compliance reporting templates) to support consistent implementation and auditability.

  • Provide guidance on cybersecurity requirements that can be embedded into IT tenders and vendor scopes (e.g., incident response obligations, security monitoring expectations, baseline configurations).

2. Incident Response Leadership & Escalation

  • Coordinate incident response protocols and act as the escalation point for cybersecurity events affecting EM & Town Councils related operations.

  • Establish and maintain incident response runbooks, escalation paths and communications templates (internal and stakeholder-facing), aligned to vendor operating models.

  • Lead cybersecurity incident triage, containment coordination, and post-incident review, including recommendations for remediation and prevention of recurrence.

  • Coordinate with external incident response providers (retainer service) to ensure timely mobilisation, clear handover, and effective delivery during major incidents.

3. Compliance Advisory, Risk Assessments & Remediation

  • Advise on cybersecurity compliance expectations, including risk assessments, gap analysis, and remediation planning.

  • Maintain a consolidated view of cybersecurity risks and recurring control gaps across Town Councils to inform prioritisation and uplift planning.

  • Support Town Councils and IT Officers in preparing evidence and responding to cybersecurity audits, reviews, and governance queries.

4. Enablement of IT Officers & Security Control Implementation

  • Support IT Officers in implementing security controls and conducting awareness initiatives, including coaching and technical guidance on baseline controls (e.g., identity security, endpoint hygiene, access governance, incident reporting discipline).

  • Define a structured approach for cybersecurity awareness and uplift across on-site colleagues, leveraging practical scenarios and recurring lessons from incidents.

  • Partner with the IT Service Delivery Manager to ensure cybersecurity policies are operationalised through standard service processes, ticketing, change discipline, and escalation governance.

5. Vendor & Stakeholder Alignment

  • Liaise with vendors to ensure alignment on cybersecurity expectations, reporting, and incident coordination.

  • Participate in vendor governance on cybersecurity-related matters, ensuring vendors understand and meet required security baselines and incident response obligations.

  • Provide cybersecurity input into service reviews, tender specifications, and scope discussions where cyber responsibilities and boundaries require clarification.

6. Cybersecurity Programme Development (Optional EMHQ Scope)

  • Where applicable, lead or co-lead EMHQ cybersecurity programme planning, including group-level governance, awareness, incident readiness, and capability development.

  • Build and mature cybersecurity operating rhythms (e.g., quarterly posture reviews, incident simulations/tabletop exercises, periodic control uplift campaigns) to improve resilience over time.

Required Qualifications & Experience

  • Degree in Cybersecurity, Information Security, Computer Science, Information Technology, or related discipline.

  • 7–10 years of experience in cybersecurity, cyber governance, incident response, or security operations, including ownership of security programmes, cybersecurity awareness initiatives and incident coordination.

  • Hands-on experience developing security policies/standards and translating them into implementable controls across multi-site or multi-entity environments.

  • Proven experience coordinating cybersecurity incidents with internal stakeholders and external service providers/vendors.

  • Experience operating in regulated, public-facing, or multi-stakeholder environments is highly desirable.

Key Competencies & Attributes

  • Cybersecurity Leadership & Ownership – Takes accountability for cyber posture, readiness, and outcomes.

  • Governance & Structure – Able to define standards, controls, evidence and assurance processes across multiple entities.

  • Incident Command & Calm Execution – Able to lead triage, escalation, and coordination under pressure.

  • Stakeholder & Vendor Management – Effective communicator across Town Councils, vendors, and coordinating stakeholders.

  • Pragmatism & Risk-Based Judgement – Balances “ideal security” with operational realities and prioritisation.

  • Enablement Mindset – Coaches IT Officers and operational teams to implement controls consistently

We regret to inform that only shortlisted candidates will be contacted.