The posting
Working Hours: Monday – Thursday (8.30am – 6pm), Friday (8.30am – 5.30pm) (Hybrid working arrangement)
Working Location: Central
Salary Package: Up to $10,000 + AWS
Employment Type: Full Time Contract (1 year renewable with chances of conversion)
We are seeking an Information Technology Security Officer to support the organisation’s cybersecurity governance, assurance and security management activities. The role covers security architecture, vulnerability assessment and penetration testing, risk assessment, system hardening, cloud security posture management, software clearance, firewall and network deviation management, cybersecurity policies and security reporting. The successful candidate should possess strong analytical, documentation, coordination and stakeholder management skills, together with a sound understanding of enterprise cybersecurity controls and governance processes.
Key Responsibilities
- Maintain security architecture documentation and coordinate security design reviews.
- Coordinate VAPT activities and track vulnerability remediation, retesting and closure.
- Manage cybersecurity risk assessments, risk registers and treatment actions.
- Coordinate system-hardening assessments and follow up on compliance gaps.
- Monitor CSPM findings and track the remediation of cloud security misconfigurations.
- Manage software security-clearance requests, evaluations and approval statuses.
- Track firewall-rule changes, network deviations and security exceptions.
- Support the development and maintenance of cybersecurity policies, standards and specifications.
- Maintain security dashboards and prepare management reports covering vulnerabilities, risks, compliance and audit findings.
- Support cybersecurity assessments, audits and evidence-collection activities.
- Collaborate with system owners, infrastructure teams, project teams, vendors and other stakeholders.
Requirements
- Minimum 4 years of working experience in vulnerability management, security risk assessment, system hardening, firewall controls, cloud security and cybersecurity governance.
- Experience coordinating cybersecurity assessments, remediation activities and security reviews.
- Ability to interpret vulnerability findings, risk assessments, security architecture diagrams, firewall rules and compliance reports.
- Strong analytical, documentation, stakeholder-management and follow-up skills.
- Familiarity with CSPM platforms, VAPT tools, CVE/CVSS information and enterprise network security would be advantageous.
- Cybersecurity certifications such as Security+, ISC2 CC, CISSP, CISM, CRISC, ISO 27001 or relevant cloud security certifications are preferred.
By submitting your resume, you consent to the collection, use, and disclosure of your personal information per ScienTec’s Privacy Policy (scientecconsulting.com/privacy-policy).
This authorizes us to:
- Contact you about potential opportunities.
- Delete personal data as it is not required at this application stage.
- All applications will be processed with strict confidence. Only shortlisted candidates will be contacted.
Wong Siew Ting (Maeve) - R25127375
ScienTec Consulting Pte Ltd - 11C5781



