Share this Job

##Lead Consultant, IT Security (Governance, Risk & Compliance)

Date: 31-Oct-2020

Location: SG

Company: Singtel

Company Info

Trustwave is a leading cybersecurity and managed security services provider that helps businesses fight cybercrime, protect data and reduce security risk. Offering a comprehensive portfolio of managed security services, security testing, consulting, technology solutions and cybersecurity education, Trustwave helps businesses embrace digital transformation securely. Trustwave is a Singtel company and the global security arm of Singtel, Optus and NCS, with customers in 96 countries.


For this role, you will have the opportunity to support NCS project.



Develop and drive effective IT security compliance programs involving activities such as reviewing and developing security policies, processes/procedures and guidelines, establishing compliance with policies, conducting security reviews and audits, vulnerability scans, security assessment and incident management.



  • Review and development of security framework, information security policies, processes / procedures and guidelines on an ongoing basis.
  • Establish compliance with these policies / procedures through ongoing security reviews and audits, not limited to log analysis and security assessment of customer ICT systems
  • To conduct security risk management exercise
  • To conduct table-top exercises
  • To conduct vulnerability assessment, coordinate penetration tests activities
  • To conduct information security awareness training
  • Responsible for the development and management of customer’s security incident response plan.
  • To lead and support customer in the matters of security incident resolution and response.
  • Point-of-contact/customer liaison to assist and advise customer for ICT security related matters


Ideal Candidate should possess:

  • Bachelor’s Degree in Computer Science, Engineering and Information Systems
  • In the area of security audit, compliance and security governance:

           - Years of IT Experience: Minimum 1-4 Years (Junior), 4-7 Years (Senior), 7 Years and above (Lead)

           - Work Experience: Minimum1-4 Years (Junior), 4-7 Years (Senior), 7 Years and above (Lead)

  • Strong understanding of information security principles, ISO 27001 and PCI Security Standard is preferred
  • Good working knowledge of security risk management, security governance framework and compliance (IT Security Audit / log review), technical vulnerability management (Vulnerability Assessment, Penetration testing), application security, security technologies (system hardening, IDS/IPS, firewall), security incident response and security assessment.
  • Customer-focused with good interpersonal skills
  • Team player with leadership qualities
  • Preferred:
  • Possess one (or more) of the following security certifications: CISSP/CISA/CISM/ISMS Lead Auditor Certification


If you would like to be part of the winning team that does great work, apply today!