Skip to content

Open nowPosted 7 days ago

Operational Technology Cyber Lead

MyCareersFuture94,028 open roles

Pay
SGD 10,000 – SGD 12,000 a Monthly
Where
Central, Singapore
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowOperational Technology Cyber LeadMyCareersFuture · Central, Singapore
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on MyCareersFuture's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.7% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.3%3 days
  3. 7.7%7 days
  4. 14.0%14 days
  5. 33.7%30 days
This job: posted 7 days ago

The posting

Key Responsibilities

🎯 Strategic Leadership & Programme Direction

• Define and direct OT cybersecurity initiatives that improve the security posture of company's global OT environments, aligned with the Group Cybersecurity Framework (based on NIST CSF).

• Lead and manage a team of OT cybersecurity engineers and analysts, ensuring consistent and effective cyber programme implementation across all markets (Singapore, India, UK, China, Southeast Asia, Middle East).

• Own the OT cybersecurity roadmap, including technology refresh, tool adoption, and capability uplift aligned with company's Cybersecurity Framework objectives.

• Drive continuous improvement of end-to-end OT threat detection, incident response, and vulnerability management processes.

• Report to senior leadership on OT cybersecurity risk posture, programme effectiveness, and key metrics via the Monthly Cybersecurity Committee and ExCom briefings.

🏗️ OT Security Architecture & Engineering

• Lead the design and implementation of secure OT network architectures across CII and non-CII sites, ensuring proper segmentation (Purdue Model Levels 0–3.5), data diodes, firewalls, and secure communication protocols.

• Oversee hardening of ICS assets including DCS, SCADA, HMI, PLC, RTU, and engineering workstations across power generation, water treatment, wind, and solar sites.

• Drive secure IT/OT integration initiatives, including edge-to-cloud OT architectures, ensuring audit-ready baselines and compliance with international OT security standards.

• Provide Security by Design (SBD) advisory for all new OT projects, including vendor remote operations, ensuring security requirements are embedded from the tender stage through go-live.

📋 Risk Management & Regulatory Compliance

• Lead risk assessments and Threat Risk Assessments (TRAs) across OT environments, ensuring compliance with NIST CSF, ISO 27001:2022, IEC 62443, and Singapore's CII regulations (CCoP by CSA, WSCP by PUB).

• Ensure alignment with company's Operational Technology (OT) Security Policy, Group Cybersecurity Policy, and the Security Requirement – OT Centralised framework.

• Ensure regulatory and compliance adherence across global frameworks (ISO 27001, NIST, CCoP, PDPA, GDPR) and local requirements.

• Lead audit readiness — prepare for and represent OT cybersecurity during CSA, PUB, and internal assurance reviews.

🔍 Security Operations & Incident Response

• Oversee OT security monitoring operations, including SIEM integration (Google SecOps), OT-specific tools (Claroty, Nozomi), and endpoint protection across all sites.

• Lead investigation and remediation of major OT cyber security incidents, coordinating with internal teams (O&M, Maintenance IAC, Group Digital) and external incident response partners.

• Ensure all alerts are managed per company's Security Operations Standard and incident response procedures.

• Monitor the threat landscape — track APT campaigns, regional threat intelligence, and adapt OT defences accordingly.

📑 Vendor & Third-Party Security Management

• Enforce company's vendor security requirements, including NDA, GT&C, DPA, ISO 27001/SOC 2 compliance, and independent penetration testing for all OT-related vendors.

• Oversee OT vendor cybersecurity assessments, including evaluating remote monitoring and control proposals.

• Ensure maintenance contracts for key OT systems include patching, support, SLA, and IR reporting requirements.

🤝 People Development & Collaboration

• Build, mentor, and grow the OT cybersecurity team, promoting continuous improvement and professional development.

• Collaborate with Cyber Tech Risk, Cyber Operations, Cyber Threat Defence, and Cyber Assurance teams.

• Drive cybersecurity awareness training for plant personnel, ensuring frequency of at least once per year with regular awareness messaging.

• Ensure the team stays updated with the latest advancements in OT cybersecurity technologies, global threat landscape, and regulatory developments.

Requirements

🎓 Education

• Bachelor's degree in Computer Science, Engineering, Cybersecurity, Control Systems, or a related field.

📅 Experience

• Minimum 8–12 years of experience in cybersecurity, with at least 5 years specialising in OT/ICS/SCADA environments, preferably in energy, utilities, or critical infrastructure.

• At least 3 years in a leadership or management role, leading cybersecurity teams or programmes.

• Well-experienced in at least one major industrial control system (e.g., Siemens PCS 7, ABB 800xA, Honeywell PKS, GE Mark VIe, Schneider Electric).

• Hands-on experience in security operations, engineering, architecture, and GRC.

💻 Technical Skills

Area Requirements

Standards & Frameworks IEC 62443, NIST CSF, ISA/IEC standards, WSCP (PUB), CCoP (CSA), ISO 27001, PDPA, GDPR

Industrial Protocols Modbus, OPC DA/UA, IEC 61850, DNP3

OT Security Tools Claroty, Nozomi, Dragos, or equivalent ICS cybersecurity platforms

Security Operations SIEM (Google SecOps / Splunk), SOAR, EDR/XDR, vulnerability management (Tenable, SNYK)

Network & Architecture Firewalls, data diodes, network segmentation (Purdue Model), secure remote access, IT/OT convergence

ICS/SCADA Systems DCS, SCADA, HMI, PLC, RTU — hardening, configuration, and lifecycle management

Cloud & Integration Azure cloud OT governance, edge-to-cloud OT architecture, SD-WAN, IPSEC tunnels

Risk & Compliance Threat Risk Assessments, Business Impact Assessments, Security by Design, vendor security assessments

📜 Certifications (Preferred)

• CISM (Certified Information Security Manager)

• CRISC (Certified in Risk and Information Systems Control)

• CISSP (Certified Information Systems Security Professional)

• GICSP (Global Industrial Cyber Security Professional)

• SANS ICS/OT certifications (e.g., ICS515, ICS410)

• CCNP, PCNSE, NSE 4+ are advantageous

🧠 Soft Skills

• Strong communication and presentation skills — ability to convey complex OT security issues to technical and non-technical stakeholders, including ExCom and Board-level reporting.

• Excellent problem-solving, analytical, and strategic thinking skills.

• Proven track record in leading and managing diverse teams, promoting continuous improvement.

• Ability to navigate multi-market, multi-cultural environments across company's global operations.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against MyCareersFuture's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on MyCareersFuture's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    MyCareersFuture's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.