Cyber Security Engineering (Cloud Security & Data Protection Specialist)
Job location
Singapore, Singapore
Type
Full Time
Responsibilities:
Identify and recommend improvement areas in existing enterprise security architecture to address evolving cybersecurity threats
Align and balance business requirements with cybersecurity, information, and technology requirements, based on the organization’s risk appetite
Evaluate, perform proof-of-value/proof-of-concept, design, build and implement enterprise-class cybersecurity systems
Develop integrated security operating models and documentation to ensure operational efficiency, scalability, and sustainability
Act as a domain expert and trusted partner in Cyber Security & Resilience; work closely with stakeholders in Technology Group and other business groups on cybersecurity engineering related matters.
Requirements & Skills:
Bachelor’s Degree in Information Technology, Computer Engineering, or equivalent.
At least 10 years of relevant experience preferably in financial services or asset management industries, with a minimum of 7 years in Cyber Security or Information Security.
Professional qualifications such as AWS and Azure certifications.
Hands-on experience in implementing and operationalizing cloud security solutions (IaaS, PaaS, and SaaS) and data protection solutions (data classification, labeling, encryption, key management, HSM, KMS, data access controls, DLP, and post-quantum computing).
Experience must include provisioning with Infrastructure as Code (AWS CloudFormation and/or Azure Resource Manager), cloud IAM implementation, and data protection in cloud environments
Scripting and coding skills, with proficiency in Java, Python, C#, or similar programming languages, and good understanding of REST API’s and JSON.
Knowledge of DevSecOps tools, design, automation, and CI/CD tools, including IaC (Infrastructure as Code), GitLab/GitHub, Jenkins, application containers, as well as IAM (Identity and Access Management) in AWS and Azure.
Working experience with other cybersecurity products such as SIEM, threat intelligence, security incident response and forensic investigation, network and endpoint protection, and others, would be advantageous.
Must be meticulous, versatile, and inquisitive, having strong attention to detail with an analytical mind and outstanding problem-solving skills.
Desire to learn, working in a diverse environment, interacting with multiple teams and functions to support strategic goals. Be a good team player and an excellent communicator.
Professional qualifications in information security, such as CISSP / CISM / CEH will be advantageous.