Point your AI agent at freehire and let it find you a job.

Get the CLI →

PEAK ENGINEERING & CONSULTANCY PTE. LTD.

NewBe an early applicant

Cybersecurity Analyst – AI & Automation [CCP for ICT Professionals (Cybersecurity)

Posted Updated 2 views
Discussion

1. Job Purpose

The Cybersecurity Analyst – AI &Automation is responsible for supporting the Company's cybersecurity operations, information security controls, cyber risk management, data protection and secure adoption of AI and automation technologies.

The role will support the protection of the Company's IT systems, networks, endpoints, cloud services and business information, while identifying opportunities to use AI and workflow automation to improve cybersecurity, compliance monitoring and operational efficiency.

The employee will undergo structured on-the-job development to strengthen practical competencies in cybersecurity operations, cyber risk management, incident response, vulnerability management, security governance and secure AI-enabled automation.

A. Cybersecurity Monitoring & Operations

  • Monitor security alerts, system logs, endpoints and other security events for potential cybersecurity threats.
  • Identify, analyse and escalate suspicious activities and potential cybersecurity incidents.
  • Support monitoring of endpoint, network, email and cloud security controls.
  • Assist in detecting phishing, malware, unauthorised access and compromised accounts.
  • Maintain records of cybersecurity alerts, incidents, investigations and corrective actions.
  • Coordinate with external IT and cybersecurity service providers where necessary.

B. Cyber Risk & Vulnerability Management

  • Conduct and support cybersecurity risk assessments across the Company's IT environment.
  • Identify security vulnerabilities, control weaknesses and potential cyber risks.
  • Coordinate vulnerability remediation and track outstanding corrective actions.
  • Maintain cybersecurity risk and vulnerability registers.
  • Assist in assessing security risks associated with new systems, applications, vendors and technology changes.
  • Monitor remediation deadlines and escalate overdue or high-risk issues.

C. Security Controls & Access Management

  • Support implementation and review of cybersecurity controls, including user access, passwords, multi-factor authentication, endpoint protection and firewall controls.
  • Conduct periodic user access and privilege reviews.
  • Support secure employee onboarding, transfer and offboarding processes.
  • Review administrative and privileged access where applicable.
  • Monitor compliance with the Company's IT and cybersecurity requirements.

D. Cybersecurity Incident Response

  • Assist in responding to cybersecurity incidents such as phishing, malware, compromised accounts, unauthorised access and suspected data breaches.
  • Conduct preliminary investigations and support evidence collection.
  • Escalate significant cybersecurity incidents to Management.
  • Coordinate containment, recovery and corrective actions with relevant internal and external parties.
  • Maintain incident registers and supporting documentation.
  • Participate in post-incident reviews and track preventive actions.

E. Data Protection & Information Security

  • Support appropriate safeguards for personal, confidential and commercially sensitive information.
  • Assist with cybersecurity controls supporting the Company's PDPA and applicable data-protection requirements.
  • Review controls relating to data access, storage, transmission, retention and disposal.
  • Support information-security assessments and compliance reviews.
  • Assist in maintaining appropriate documentation and evidence for audits and management reviews.

F. AI & Process Automation

  • Identify suitable opportunities to use AI and workflow automation to improve cybersecurity, compliance and internal operational processes.
  • Develop and maintain approved automated workflows for security alerts, compliance tracking, document management and management reporting.
  • Support automation of repetitive cybersecurity and IT administration activities.
  • Explore appropriate AI-assisted applications for threat analysis, phishing identification, security-event triage, vulnerability management and reporting.
  • Develop automated dashboards for cybersecurity risks, incidents, vulnerabilities and remediation actions.
  • Support integration between approved business applications, cybersecurity systems and workflow automation platforms.
  • Test automated workflows before deployment and periodically review their accuracy, security and effectiveness.
  • Maintain process documentation, access permissions, data sources, control points and change records for automated workflows.

G. AI Governance & Security

  • Support the Company's secure and responsible adoption of generative AI and other AI technologies.
  • Identify cybersecurity and data-protection risks arising from the use of public or third-party AI platforms.
  • Assist in establishing controls for confidential information, personal data and company information used with AI systems.
  • Maintain an inventory of approved AI tools and AI-enabled workflows where required.
  • Support access controls, human-review requirements and approval processes for AI-enabled activities.
  • Assist in developing internal AI acceptable-use guidelines and employee awareness materials.
  • Monitor emerging AI-related cybersecurity risks and recommend appropriate safeguards.

H. Cybersecurity Governance &Documentation

  • Develop and maintain cybersecurity policies, SOPs, guidelines and operational procedures.
  • Maintain cybersecurity registers, records and supporting evidence.
  • Support internal and external audits, customer requirements and certification activities.
  • Prepare cybersecurity dashboards and periodic reports for Management.
  • Track cybersecurity action items, responsible persons, deadlines and closure status.
  • Support periodic management reviews of cybersecurity risks and controls.

I. Cybersecurity Awareness

  • Support employee cybersecurity awareness programmes.
  • Prepare guidance on phishing, passwords, data protection, AI usage and other cybersecurity risks.
  • Coordinate cybersecurity awareness activities and exercises.
  • Promote good cybersecurity and information-handling practices throughout the organisation.

J. Business Continuity & Recovery

  • Support IT backup, recovery and business-continuity controls.
  • Assist with periodic testing of backup and recovery procedures.
  • Maintain recovery documentation and records.
  • Track gaps identified during recovery testing and follow up on corrective actions.

3. Requirements

  • Diploma or Degree in Information Technology, Computer Science, Cybersecurity, Engineering or a related discipline; candidates with relevant transferable technical experience may also be considered.
  • Strong interest in developing a professional career in cybersecurity.
  • Basic understanding of IT systems, computer networks, operating systems and information-security principles.
  • Interest in AI, workflow automation and emerging technologies.
  • Good analytical, problem-solving and troubleshooting skills.
  • Ability to maintain accurate technical documentation and records.
  • Good communication and stakeholder coordination skills.
  • Ability to handle confidential and sensitive information appropriately.
  • Willingness to undergo structured cybersecurity training and on-the-job development.

4. Preferred Knowledge / Skills

Knowledge or exposure in the following areas would be advantageous:

  • Cybersecurity monitoring and incident response
  • Security Operations Centre (SOC) concepts
  • Endpoint Detection and Response (EDR)
  • Vulnerability management
  • Network and firewall security
  • Microsoft 365 and cloud security
  • Identity and access management
  • Multi-factor authentication
  • Cyber risk assessment
  • Phishing and malware analysis
  • Backup and disaster recovery
  • PDPA and information-security principles
  • ISO/IEC 27001 concepts
  • Generative AI and Large Language Model (LLM) applications
  • Microsoft Power Automate / Power Platform or similar automation tools
  • API and system integration concepts
  • AI governance and responsible AI practices
  • Basic Python, PowerShell or other scripting knowledge would be advantageous

5. Key Performance Indicators

Performance may be assessed based on:

  • Timely monitoring and escalation of cybersecurity alerts and incidents.
  • Completion of scheduled security, vulnerability and access reviews.
  • Timely closure of cybersecurity remediation actions.
  • Accuracy and completeness of cybersecurity records and documentation.
  • Effectiveness of cybersecurity incident response and follow-up.
  • Completion of cybersecurity risk assessments.
  • Implementation of approved cybersecurity improvements.
  • Development of appropriate AI and workflow automation solutions.
  • Effectiveness and reliability of implemented automated workflows.
  • Employee cybersecurity and AI-security awareness activities.
  • Compliance with cybersecurity policies and procedures.
  • Progress against the employee's structured training and development plan.

6. Training & Development

The employee will undergo structured training and On-the-Job Training in areas including cybersecurity operations, security monitoring, cyber risk assessment, vulnerability management, incident response, information-security controls, cybersecurity governance and secure AI-enabled automation.

The employee is expected to progressively develop the competencies required to independently manage assigned cybersecurity responsibilities and support the Company's ongoing cybersecurity and digital-transformation initiatives.

Skills

Apply

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available