Free with a WorkJio account: we compare your profile with this job and show what you already meet.
Share with a friend
Start
Not stated
Work mode
On-site
Experience
Experienced
About the role
You will join a multidisciplinary team of product managers, engineers and designers delivering secure digital services for the Singapore Public Service, working on the GeBIZ X ecosystem. The role suits an experienced cybersecurity engineer who enjoys designing secure, resilient and scalable platforms across cloud, SaaS and enterprise environments, and who can work closely with CISOs, business owners, GovTech, technology partners and government agencies.
What you'll do
Lead the design, implementation and ongoing improvement of cybersecurity controls across the GeBIZ X ecosystem, covering the Ivalua SaaS platform, integrated Whole-of-Government agency systems and the Singapore Government Tech Stack connected through the MOF Orchestrator.
Define cybersecurity requirements and advise on application, cloud and system security architecture in line with IM8 and prevailing Government ICT security policies and standards.
Lead security architecture reviews, threat modelling, security design reviews and VAPT remediation planning for cloud-native, SaaS, COTS and enterprise integrations.
Drive cybersecurity risk assessments and recommend controls to address emerging threats and changing business needs.
Apply Singapore Government ICT security policies, standards and industry best practices, including IM8, the GovTech Cybersecurity Playbooks for SaaS Security and Large Language Model Applications, ISO/IEC 27001 and ISO/IEC 27018, to support secure SaaS configuration, vendor risk management, protection of Personally Identifiable Information in cloud environments, and compliance with AI governance and security directives from SNDGO and AIDG.
Take ownership of end-to-end cybersecurity delivery for complex, ambiguously scoped initiatives, making technical decisions and driving workstreams to implementation.
Lead the development and maintenance of cybersecurity governance artefacts, including System Security Plans, System Criticality Assessments, Security Risk Assessments, Risk Treatment Plans and audit remediation reports.
Lead and coordinate internal and external cybersecurity audits, including GIROC and IM8 audits, ensuring audit readiness, timely evidence submission, stakeholder engagement and closure of findings.
Lead cybersecurity incident response and coordinate investigation, containment, recovery, root cause analysis and preventive measures.
Drive continuous improvement of cybersecurity controls, operational processes and governance practices across the GeBIZ X ecosystem.
Translate organisational cybersecurity objectives into actionable implementation plans supporting GeBIZ X product delivery and Whole-of-Government digital transformation goals.
Identify cybersecurity risks, technology trends and improvement opportunities, recommending solutions that balance security resilience with delivery, operational and business needs.
Evaluate emerging technologies such as Frontier AI and AI-enabled capabilities, assess associated cybersecu
Requirements
Experienced cybersecurity engineer
Passionate about designing secure, resilient and scalable digital platforms
Experience across cloud, SaaS and enterprise environments
Able to lead design, implementation and improvement of cybersecurity controls
Knowledge of Singapore Government ICT security policies and standards such as IM8
Familiar with GovTech Cybersecurity Playbooks for SaaS Security and LLM Applications
Apply on the company website
You will leave WorkJio. Never pay a fee or share your Singpass password, OTP or bank log-ins to apply.