Skip to content

Open nowPosted 28 days ago

Cybersecurity Architect

MyCareersFuture94,028 open roles

Pay
SGD 6,000 – SGD 11,000 a month
Where
Singapore
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowCybersecurity ArchitectMyCareersFuture · Singapore
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on MyCareersFuture's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.7% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.3%3 days
  3. 7.7%7 days
  4. 14.0%14 days
  5. 33.7%30 days
This job: posted 28 days ago

The posting

Working Hours: Monday – Thursday (8.30am – 6pm), Friday (8.30am – 5.30pm) (Hybrid working arrangement)

Working Location: Buona Vista

Salary Package: SGD 11,000 + AWS

Employment Type: Full-time Contract (1 year renewable with chances of conversion)

The Cybersecurity Architect is responsible for providing cybersecurity governance, risk management, security assurance and security advisory across ICT systems, digital services, cloud platforms and infrastructure supporting a Singapore Public Sector organisation.

The role works closely with system owners, application teams, infrastructure and cloud teams, cybersecurity operations, enterprise architects, project managers, vendors and management to ensure that security risks are identified early, controls are proportionate and effective, and systems are operated in accordance with applicable Government ICT&SS policies and standards, organisational requirements, contractual obligations and recognised cybersecurity good practices.

Key Responsibilities

Cybersecurity Governance and Risk Management

  • Provide independent cybersecurity governance and advisory across the project and system lifecycle.
  • Lead or review cybersecurity risk assessments, including threat identification, vulnerability analysis, attack-path considerations, inherent risk, residual risk, compensating controls and risk treatment plans.
  • Ensure material security risks, deviations and exceptions are properly documented, justified, tracked, escalated and formally accepted by the appropriate risk owner when required.
  • Monitor recurring control gaps, overdue remediation and systemic risks, and recommend programme-level corrective actions.
  • Maintain clear security decision records, evidence and audit trails for governance and management assurance.

Security Architecture and Security-by-Design

  • Review application, cloud, infrastructure, network, identity and integration architectures for security risks and control gaps.
  • Assess trust boundaries, data flows, privileged access paths, external exposure, administrative interfaces, API integrations and dependency risks.
  • Challenge security assumptions and ensure proportionate preventive, detective and recovery controls are included before production implementation.
  • Advise teams on secure design patterns for authentication, authorisation, encryption, secrets, logging, segmentation, resilience and least privilege.
  • Participate in architecture review boards, design reviews, go-live readiness reviews and security acceptance decisions.

Cloud, Identity and Platform Security

  • Assess cloud security designs and configurations across AWS, Microsoft Azure and/or Google Cloud, including IAM, network controls, workload protection, encryption, key management, logging and monitoring.
  • Review identity and access management controls including MFA, privileged access, RBAC, service accounts, workload identities, conditional access and access lifecycle management.
  • Assess Zero Trust, ZTNA, remote access, endpoint security and security service integrations where applicable.
  • Evaluate security implications of SaaS, managed services, containers, Kubernetes and other modern platform technologies.

Vulnerability Management, VA/PT and Security Testing

  • Review vulnerability findings and determine practical risk, remediation priority and required treatment based on business context and exploitability.
  • Track remediation against applicable service levels and escalate overdue or repeated high-risk findings.
  • Define or review security testing requirements, including vulnerability assessment, penetration testing, application security testing, configuration review and other assurance activities.
  • Review test reports, validate remediation evidence and challenge inappropriate risk acceptance or weak compensating controls.
  • Support secure development practices by reviewing relevant SAST, DAST, SCA, API security and CI/CD security evidence where applicable.

Security Operations and Incident Response

  • Work with SOC and security operations teams to ensure appropriate logging, telemetry, alerting, detection use cases and escalation paths exist for critical systems.
  • Participate in or coordinate cybersecurity incident response, investigation, containment, eradication, recovery and lessons-learned activities as required.
  • Translate incident findings and adversary techniques into preventive improvements, detection requirements and remediation actions.
  • Assess emerging vulnerabilities, CVEs and threat intelligence to determine applicability and priority for systems within the assigned portfolio.
  • Support cyber exercises, tabletop exercises and operational readiness testing.

Cyber Resilience and Recovery

  • Review cybersecurity aspects of business continuity, disaster recovery, backup, restoration and ransomware resilience arrangements.
  • Assess recovery dependencies, privileged recovery paths, backup protection, immutability and recovery test evidence.
  • Participate in disaster recovery and cyber resilience exercises and ensure security lessons are tracked to closure.

Stakeholder Management, Reporting and Leadership

  • Act as a trusted cybersecurity advisor to project teams, system owners, business stakeholders and senior management.
  • Explain complex cybersecurity risks in clear business language and recommend practical options for decision-making.
  • Prepare concise management reports covering key risks, vulnerabilities, incidents, audit findings, remediation progress and security posture.
  • Mentor junior ITSOs and contribute to consistent security assessment methods, templates, playbooks and standards across the organisation.
  • Escalate material risks objectively and maintain independence when reviewing solutions or risk acceptance requests.

Requirements

  • Minimum 7 years of relevant IT or cybersecurity experience, with substantial experience in cybersecurity governance, risk management, security assurance, architecture, operations, cloud security, audit or security consulting.
  • At least 3 years of experience independently reviewing or governing enterprise-scale systems, major ICT projects or government/public-sector environments.
  • Demonstrated ability to conduct or critically review cybersecurity risk assessments and recommend proportionate technical and governance controls.
  • Strong understanding of enterprise security architecture across applications, infrastructure, networks, cloud, identity and security operations.
  • Experience working with technical teams, project management, auditors, vendors and senior stakeholders.

By submitting your resume, you consent to the collection, use, and disclosure of your personal information per ScienTec’s Privacy Policy (scientecconsulting.com/privacy-policy).

This authorizes us to:

  • Contact you about potential opportunities.
  • Delete personal data as it is not required at this application stage.
  • All applications will be processed with strict confidence. Only shortlisted candidates will be contacted.

Wong Siew Ting (Maeve) - R25127375

ScienTec Consulting Pte Ltd - 11C5781

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against MyCareersFuture's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on MyCareersFuture's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    MyCareersFuture's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.