141 Threat Modeling jobs in Singapore
Information Security
Posted today
Job Viewed
Job Description
Company: Bank
Employment Type: 12-Month Contract
Salary: Up to S$8,000/month
As an Information Security & BCM Specialist, you will support and oversee key information security and business continuity activities for the APAC region, ensuring alignment with both local regulatory requirements and Group-level policies.
Key ResponsibilitiesSecurity Governance & Compliance
- Maintain and review Security Policies, Addendums, Standards, and Procedures for international locations, ensuring alignment with regulatory requirements
- Ensure compliance with regional regulatory bodies (e.g., MAS, HKMA, LFRA, NFRA) in matters related to information security, BCM, and IT governance
- Coordinate and support regulatory security audits across APAC branch locations
Technology & Risk Assessments
- Review BRDs, network/security designs, and other technical documentation to ensure alignment with security policies
- Perform Technology Risk Assessments, Third-Party Risk Assessments, and track RCSA remediation activities
- Monitor and follow up on risk items in collaboration with Group IT, local branch IT, and other stakeholders
Security Awareness & Risk Monitoring
- Conduct regular Security Awareness programs for regional branch staff
- Monitor and review management dashboards and MIS related to patching, vulnerability assessments (VA), penetration testing (PT), and endpoint security controls
Business Continuity Management (BCM)
- Assist in the development, implementation, and maintenance of Business Continuity Plans (BCPs) across APAC operations
- Coordinate Business Impact Analyses (BIAs), risk assessments, and periodic testing of BCPs
- Support disaster recovery and incident response coordination
- Maintain BCM documentation and track remediation from incidents, tests, or audits
- Monitor regulatory developments related to BCM across APAC
- Min Bachelor's Degree in Information Security, Computer Science, IT, or related field
- Minimum 5 years of experience in Information Security and/or BCM, preferably with exposure across the APAC region
- Strong understanding of regional regulatory frameworks (e.g., MAS, HKMA)
- Hands-on experience with risk assessments, security governance, and incident response
- Strong communication and stakeholder management skills, including cross-functional collaboration with IT, Facilities, and Business teams
Interested candidates, do submit your resume to:
Jocelyn Chan| Consultant | Recruit Express Pte Ltd (Healthcare & Lifescience)
Company EA Licence number : 99C4599
Personnel EA License: R1331820
Tell employers what skills you haveInformation Security
Technical Documentation
Management Skills
Security Audits
Security Governance
Remediation
Business Continuity
Healthcare
IT Governance
Penetration Testing
Business Continuity Management
Regulatory Requirements
Stakeholder Management
Disaster Recovery
Security Awareness
MIS
Information Security Manager
Posted today
Job Viewed
Job Description
Get AI-powered advice on this job and more exclusive features.
Direct message the job poster from Ambition
Practice Lead-Tech | Executive Search at Ambition GroupOverview:
Our client is seeking an experienced Information Security Manager to lead and strengthen their security operations. This role will focus on monitoring, detecting, and responding to cyber threats, managing security technologies, driving vulnerability management initiatives, and ensuring compliance with industry regulations. The position will work closely with IT, engineering, and risk management teams to maintain a secure and resilient environment.
Key Responsibilities:
1. Security Operations & Incident Response
- Lead and enhance the operations of the Security Operations Center (SOC), ensuring timely monitoring, detection, and incident response.
- Manage and optimize the use of SIEM, EDR, IDS/IPS, and other security technologies.
- Oversee the full incident response lifecycle, including investigation, containment, eradication, and recovery.
- Conduct post-incident reviews and implement continuous improvements.
2. Vulnerability & Threat Management
- Coordinate vulnerability scanning, penetration testing, and remediation activities.
- Stay informed of emerging threats and ensure proactive security measures are implemented.
- Partner with IT and engineering teams to address vulnerabilities and harden systems.
3. Security Compliance & Risk Management
- Ensure compliance with relevant regulatory frameworks (e.g., PCI DSS, MAS TRM, GDPR).
- Support internal and external audits, risk assessments, and regulatory reviews.
- Maintain and continuously update security policies, standards, and procedures
4. Security Awareness & Collaboration
- Lead security awareness and training initiatives across the organization.
- Collaborate with DevOps and engineering teams to embed security into CI/CD pipelines.
- Engage with external vendors, partners, and law enforcement on security-related matters.
Key Requirements:
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- Minimum 5 years of experience in information security, with at least 2 years in a leadership or management role within security operations.
- Hands-on experience with security technologies such as SIEM (Splunk, Azure Sentinel), EDR, IDS/IPS, firewalls, and cloud security platforms (AWS, Azure, GCP).
- Strong understanding of threat intelligence, malware analysis, and forensic investigation tools.
- Knowledge of regulatory compliance frameworks, particularly within the financial services sector (PCI DSS, MAS TRM, GDPR).
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Information Services
Referrals increase your chances of interviewing at Ambition by 2x
Sign in to set job alerts for “Information Security Manager” roles. Manager, IT Security (IT Security Coach) SVP, Specialist Technology Risk Governance and Reporting, Risk Management Group Manager, Product Management & Business Development, Security Solutions APAC Technology Risk (Financial Services) Manager, Risk Consulting Deputy Manager (IT Cyber Security) - Contract Client Information Security Lead/Senior Manager (Infra Enterprise) VP, Cyber Security Program Manager, COO's Office Global Information Security, Risk and Governance Manager IT Risk, Compliance and Security Manager Senior Manager, Client Info Security (Applications) Senior Manager – Cyber Security Architecture – OT/IT Projects – APAC (1 year Contract) Senior Engineer / Section Manager (Regional IT Infrastructure & Security) Microsoft 365 Security & Compliance Consultant Third-Party Security Risk Management, Consultant Microsoft 365 Security & Compliance Consultant AVP/ VP: Data and AI Risk, Risk Management Group Risk Services - Governance, Risk and Compliance – Internal Audit (IT Controls) Experienced ManagerWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrInformation Security Analyst
Posted 11 days ago
Job Viewed
Job Description
1 year ago Be among the first 25 applicants
Get AI-powered advice on this job and more exclusive features.
Job Description
Develop and continually refine the security framework, information security policies, processes, procedures, and guidelines.
Ensure compliance with these policies and procedures through regular security reviews and audits, including log analysis and security assessments of customer ICT systems.
Conduct security risk management exercises and table-top exercises.
Perform vulnerability assessments and coordinate penetration testing activities.
Deliver information security awareness training.
Develop and manage the customer’s security incident response plan.
Lead and support the customer in resolving and responding to security incidents.
Serve as the primary point of contact and advisor for the customer on ICT security-related matters.
Manage project activities and deliverables during the implementation phase.
Job Requirements
Minimum of 5 years of experience in IT security.
Experience with networks, servers (Windows and UNIX), and databases.
Proven track record in IT security auditing and security assessments.
Proficient in analyzing logs from various sources and understanding protocols and traffic flows.
Knowledge of Active Directory, endpoint protection solutions, Early Detection and Response solutions, Database Activity Monitoring tools, and SIEM.
Adaptable, team-oriented, and proactive personality.
Ability to independently organize and plan work.
Capable of working effectively in a rapidly changing environment.
Strong multi-tasking skills and the ability to switch contexts effectively between different activities and teams.
CISSP, CISM, Security+, or other relevant IT security certifications (e.g., Imperva, Carbon Black) are advantageous.
EA Licence No.:18S9405 / EA Reg. No.:R1330864
Skills & Competencies
IT security,CISSP,CISM,Security+
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries IT Services and IT Consulting
Referrals increase your chances of interviewing at Percept Solutions by 2x
Get notified about new Information Security Analyst jobs in Singapore .
Information Technology - Cyber Security Analyst (Scoot) Security Specialist, Detection & Response, Global Security Organisation - TikTok, Singapore Information Security Analyst / IT Support Engineer Technology & Cyber Security Risk Analyst Information Technology - Cyber Security Specialist (Architecture and Engineering)We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrInformation Security Manager
Posted 11 days ago
Job Viewed
Job Description
Posted 29 July 2025 Salary S$12000 - S$13000 per annum + Variable Bonus Location Singapore Job type Permanent Discipline Technology Reference 283869_1753768672
Our client is seeking an experienced Information Security Manager to lead and strengthen their security operations. This role will focus on monitoring, detecting, and responding to cyber threats, managing security technologies, driving vulnerability management initiatives, and ensuring compliance with industry regulations. The position will work closely with IT, engineering, and risk management teams to maintain a secure and resilient environment.
Key Responsibilities:
1. Security Operations & Incident Response
- Lead and enhance the operations of the Security Operations Center (SOC), ensuring timely monitoring, detection, and incident response.
- Manage and optimize the use of SIEM, EDR, IDS/IPS, and other security technologies.
- Oversee the full incident response lifecycle, including investigation, containment, eradication, and recovery.
- Conduct post-incident reviews and implement continuous improvements.
2. Vulnerability & Threat Management
- Coordinate vulnerability scanning, penetration testing, and remediation activities.
- Stay informed of emerging threats and ensure proactive security measures are implemented.
- Partner with IT and engineering teams to address vulnerabilities and harden systems.
3. Security Compliance & Risk Management
- Ensure compliance with relevant regulatory frameworks (e.g., PCI DSS, MAS TRM, GDPR).
- Support internal and external audits, risk assessments, and regulatory reviews.
- Maintain and continuously update security policies, standards, and procedures
4. Security Awareness & Collaboration
- Lead security awareness and training initiatives across the organization.
- Collaborate with DevOps and engineering teams to embed security into CI/CD pipelines.
- Engage with external vendors, partners, and law enforcement on security-related matters.
Key Requirements:
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- Minimum 5 years of experience in information security, with at least 2 years in a leadership or management role within security operations.
- Hands-on experience with security technologies such as SIEM (Splunk, Azure Sentinel), EDR, IDS/IPS, firewalls, and cloud security platforms (AWS, Azure, GCP).
- Strong understanding of threat intelligence, malware analysis, and forensic investigation tools.
- Knowledge of regulatory compliance frameworks, particularly within the financial services sector (PCI DSS, MAS TRM, GDPR).
If this job isn't quite right for you, but you know someone who would be great at this role, why not take advantage of our referral scheme? We offer SGD1,000 or SGD350 in shopping vouchers for every referred candidate who we place in a role. Terms & Conditions Apply.
#J-18808-LjbffrInformation Security Engineer
Posted 13 days ago
Job Viewed
Job Description
Join to apply for the Information Security Engineer role at Manpower Singapore
2 days ago Be among the first 25 applicants
Join to apply for the Information Security Engineer role at Manpower Singapore
Information Security Engineer, Vulnerability Management and Operation
We are seeking an exceptional Security Engineer to support our vulnerability management program. This is a technical, operation-oriented, and hands-on role in a dynamic and fast-paced environment.
You'll work with various applications and systems to manage vulnerabilities, follow up with different teams, drive remediation, and improve current processes.
Description- You will join a team that stays up to date on emerging security vulnerabilities and threats, maintains composure in crises, and advocates for improving product and service security.
- You need a good technical background and a strong interest in network, system, and web security.
- The role requires excellent communication skills to collaborate effectively with diverse teams. Responsibilities include:
- Working cross-functionally to identify and assess vulnerabilities, guiding teams through the remediation lifecycle with a focus on timely resolution and outcome-driven communication.
- Using programming to analyze large data dumps related to systems and applications to extract key information for vulnerability impact analysis.
- BSc in Computer Science, Information Technology, Information Security, or related field
- At least 3 years of experience in information security or related field
- Self-starter with flexibility to work remotely and support a global team
- Ability to manage multiple activities concurrently
- Passionate about data security
- Experience with vulnerability scanning tools like Tenable, Qualys, etc.
- Familiarity with common security vulnerabilities and their severity assessment
- Ability to analyze vulnerabilities and provide remediation guidance
- Independent in supporting and driving vulnerability remediation
- Continuous improvement mindset and automation skills
- Ability to run proof of concept for known vulnerabilities
- Understanding of IPv4 and IPv6 networks
- Proficiency in programming languages such as Python, Go, Rust, or Bash scripting
- Excellent critical thinking skills
- Problem-solving skills related to logic and algorithms
- Experience with SQL and Linux
- Experience with penetration testing
- Knowledge of the security research community
Note: Your response to this advertisement and communications will constitute informed consent for the collection, use, and disclosure of personal data by ManpowerGroup Singapore, in accordance with the Personal Data Protection Act 2012. For more information, visit ManpowerGroup's Privacy Policy .
#J-18808-LjbffrInformation Security Analyst
Posted 25 days ago
Job Viewed
Job Description
XTX Markets is a leading algorithmic trading firm which uses state-of-the-art machine learning technology to produce price forecasts for over 50,000 financial instruments across equities, fixed income, currencies, commodities and crypto. It uses those forecasts to trade on exchanges and alternative trading venues, and to offer differentiated liquidity directly to clients worldwide. The firm trades over $250bn a day across 35 countries and has over 250 employees based in London, Singapore, New York, Paris, Bristol, Mumbai, Yerevan and Kajaani.
We leverage the talent of the people who work here, modern computational techniques and state-of-the-art research infrastructure to analyse large data sets across markets quickly and efficiently, to maximize the effectiveness of our proprietary trading algorithms. We are actively seeking new methods and ideas. The models that drive our trading strategies have evolved considerably over the last 10 years, from econometric methods that gave our company its name, to trees, to neural networks, to modern deep learning architectures.
XTX Markets has an unrivalled level of computational resources in the trading industry, with a growing research cluster currently containing over 25,000 GPUs with 650 petabytes of usable storage. Teams across the firm include world-class researchers with backgrounds in pure math, programming, physics, computer science and machine learning. The firm is also constructing a large-scale data centre in Finland to future-proof its significant computational capabilities.
At XTX Markets technology is our business and we are a diverse organization which attracts outstanding talent from across all industry backgrounds. We are focused on teamwork and our people collaborate on all aspects of the business, working openly and with respect for each other, our clients and the market. Our culture is non-hierarchical and one where everyone is valued. We strive for excellence in everything we do.
The Team
The Information Security team at XTX Markets are accountable for all aspects of the firm’s physical and IT security. From obtaining and transforming events and signals into actionable intelligence to helping design and implement authentication/authorisation systems, alongside third-party risk assessment and global regulatory compliance. This role is based in our Singapore office, and you will work closely with the Risk and Information Security teams in our London HQ.
The Role
As our first Information Security Analyst, you’ll work to ensure that XTX Markets’ data and infrastructure meet – and, where appropriate, exceed – the requirements of global regulators and auditors.
You will:
- Develop and automate compliance workflows (detection, analysis, business justifications, evidence-gathering).
- Liaise with external auditors to resolve findings and document compensating controls.
- Manage third-party/vendor risk assessments and ongoing security reviews.
You’ll also have opportunities to contribute across the security function: improving our vulnerability-management program, enhancing our detection framework, and helping triage and respond to security alerts. You will actively collaborate with a range of stakeholders within the firm.
- 3+ years in Information Security, with a focus on audit/compliance.
- Programming/scripting skills (e.g. Python, PowerShell) particularly for automating repeatable tasks.
- Strong written and verbal communication skills.
- Rapid learner with outstanding attention to detail.
- Self-starter: able to work autonomously, prioritise tasks, and admit mistakes.
- Able to write clear, succinct business justifications and technical documentation.
- Hands-on proficiency with vulnerability management/compliance platforms (e.g. Tenable Nessus).
- Familiarity with Indian information-security regulations and audit practices (SEBI, NSE, etc.)
- An academic foundation in computer science or a related subject would be beneficial.
*
indicates a required field
First Name *
Last Name *
Preferred First Name
Email *
Phone
Resume/CV
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
Website
Please indicate what right to work you have in Singapore. * Select.
#J-18808-LjbffrInformation Security Administrator
Posted today
Job Viewed
Job Description
We are seeking a skilled and experienced Information Security Administrator to join our team. The ideal candidate will have a strong background in IT security, with experience in administering and managing IT security technologies.
Be The First To Know
About the latest Threat modeling Jobs in Singapore !
Information Security Architect
Posted today
Job Viewed
Job Description
This is a challenging role for an experienced Cyber Security Specialist to join our organization as a key member of the team. As a Cyber Security Expert, you will be responsible for deploying, configuring and maintaining CyberArk components across various systems and environments.
Key Responsibilities:- CyberArk Deployment and Maintenance:
- Manage the onboarding and lifecycle of privileged accounts across various systems and environments.
- Implement CyberArk policies and security best practices to align with compliance and regulatory standards.
- Develop and maintain automation scripts and integrations with CyberArk using REST APIs, PowerShell, and other tools.
- Monitor and troubleshoot CyberArk infrastructure and user issues, providing escalation support as needed.
- CyberArk Certified Delivery Engineer (CDE) certification.
- At least 3 years of experience implementing and supporting CyberArk solutions in enterprise environments.
- Strong scripting skills (PowerShell, Python, etc.) and experience using CyberArk APIs.
- Understanding of identity and access management (IAM) concepts, Zero Trust, and least privilege.
- Sentry experience or certification.
- CyberArk Defender or Guardian certification(s).
- Familiarity with cloud PAM implementations (AWS, Azure, GCP).
- Experience with SIEM tools and security monitoring.
Information Security Specialist
Posted today
Job Viewed
Job Description
The Cybersecurity Engineer will be responsible for designing and implementing secure, resilient system architectures while ensuring security is embedded throughout the development lifecycle. This role requires a deep understanding of cybersecurity frameworks, threat modeling, and risk mitigation strategies to protect enterprise systems against evolving threats.
Job Responsibilities:- Secure System Architecture & Design:
- Design and implement robust security architectures for enterprise systems, applications, and cloud environments.
- Develop security blueprints, reference architectures, and design patterns to standardize secure development practices.
- Ensure security-by-design principles are integrated into all phases of the Software Development Lifecycle.
- Risk Mitigation & Threat Modeling:
- Conduct threat modeling (e.g., STRIDE, DREAD) to identify vulnerabilities in system designs.
- Define security controls to mitigate risks from emerging technologies (e.g., cloud, IoT, AI).
- Perform security impact assessments for new business initiatives and technology deployments.
- Security Integration & Compliance:
- Align security architectures with industry standards (NIST CSF, ISO 27001, CIS, OWASP).
- Ensure compliance with regulatory requirements (GDPR, HIPAA, PCI-DSS, SOC 2).
- Collaborate with DevSecOps teams to integrate security into CI/CD pipelines.
- Security Documentation & Governance:
- Produce detailed security design documents, including:
Security architecture diagrams
Data flow models with security controls
Encryption and access control policies - Maintain security baselines for systems and applications.
- Support audits, penetration tests, and vulnerability assessments.
- Produce detailed security design documents, including:
- Education & Experience
- Bachelor's/Master's in Cybersecurity, Computer Science, or related field.
- 3-5+ years in cybersecurity, with a focus on secure architecture design, risk assessment, or cloud security.
- Hands-on experience with:
Cloud security (AWS/Azure/GCP) and hybrid environments.
Identity & Access Management (IAM), PKI, and encryption.
SIEM, EDR/XDR, firewalls, and network security.
- Technical Competencies
- Security Frameworks: NIST, ISO 27001, CIS, MITRE ATT&CK.
- Threat Modeling Tools: Microsoft Threat Modeling Tool, OWASP Threat Dragon.
- Security Automation: Experience with IaC (Terraform, Ansible) and DevSecOps tools (GitLab, Jenkins).
- Certifications (Preferred)
- CISSP, CCSP, CISA, CISM, AWS/Azure Security, SABSA, TOGAF.
- Soft Skills
- Strong analytical and problem-solving abilities.
- Ability to translate technical risks into business impacts.
- Excellent communication and stakeholder management skills.
Information Security Expert
Posted today
Job Viewed
Job Description
As a Security Lead, you will be responsible for the delivery and implementation of security-related projects across infrastructure and systems.