Cybersecurity Manager
MORROW Health
MORROW Health is Singapore’s largest integrated fitness and recovery destination, designed to help individuals build healthier, more resilient lives through intentional daily habits. Grounded in lifestyle medicine, MORROW Health brings together physical activity, nutrition, restorative sleep, stress management, avoidance of risky substances, and social connection through structured programmes and purpose-built environments that make sustainable lifestyle change achievable. Supported by evidence-informed practice and data from wearables and lifestyle inputs, MORROW Health helps members recognise patterns, build consistency, and stay accountable—turning insight into everyday action that supports long-term vitality, strength, and clarity, without medical diagnosis or treatment.
Location: Singapore
Reports To: Head, Cybersecurity & IT
The Cybersecurity Manager is responsible for leading the organization's cybersecurity strategy, governance, risk management, compliance, and security operations. This role will drive cybersecurity initiatives, strengthen security controls, ensure policy implementation, and improve the overall security posture of the company.
Key Responsibilities
Cybersecurity Governance & Compliance
- Develop, implement, and maintain cybersecurity policies, standards, and procedures.
- Lead compliance initiatives, including ISO 27001, Cyber Essentials/Cyber Trust Mark, SOC 2, and regulatory requirements.
- Conduct security risk assessments and ensure remediation of identified gaps.
Security Operations & Incident Management
- Oversee security monitoring, vulnerability management, and incident response activities.
- Investigate security incidents and coordinate remediation efforts.
- Establish and maintain cybersecurity KPIs, controls, and reporting.
Security Architecture & Risk Management
- Review and improve security controls across infrastructure, cloud, networks, applications, and endpoints.
- Assess cybersecurity risks related to new technologies, systems, and business initiatives.
- Work closely with IT teams to implement security best practices and hardening measures.
Audit & Remediation
- Lead internal and external security audits.
- Track and manage remediation plans for identified vulnerabilities and audit findings.
- Ensure timely closure of cybersecurity gaps and compliance issues.
Security Awareness
- Develop and conduct cybersecurity awareness and training programs.
- Promote a security-first culture across the organization.
Vendor & Third-Party Security
- Perform security assessments of vendors and third-party service providers.
- Ensure cybersecurity requirements are incorporated into vendor management processes.
Requirements
- Bachelor's Degree in Information Security, Computer Science, IT, or related discipline.
- Minimum 8 years of IT and Cybersecurity experience, with at least 3 years in a leadership role.
- Strong knowledge of cybersecurity frameworks, including ISO 27001, NIST, CIS Controls, and Cyber Essentials.
- Experience in vulnerability management, incident response, governance, risk, and compliance (GRC).
- Familiarity with Microsoft 365 Security, Azure, AWS, cloud security, firewalls, EDR/XDR, SIEM, and endpoint protection solutions.
- Professional certifications such as CISSP, CISM, CEH, ISO 27001 Lead Implementer/Auditor, or equivalent are advantageous.
Preferred Attributes
- Strong leadership and stakeholder management skills.
- Excellent communication and report-writing abilities.
- Ability to drive security improvement initiatives and influence organizational change.
- Hands-on approach with strong problem-solving and operational capabilities.
Skills
As published by workable
First name, Last name, Email, Headline, Phone, Address, Photo, Linkedin Profile Link, Education, Experience, Summary, Resume, Current Employer, Title with Current Employer, Current Employment Status, Notice Period, Do you require a work pass to work in Singapore?, Please specify, if you selected "Others" for above question, Cover letter, Choose the top Morrow Operating Principal you resonate and give a clear example of how you have lived it out in your professional experience., Provide a clear example of how you have lived above selected principal in your professional life., Visionary Statement: Why do you want to join Morrow? (Include a visionary statement (up to 200 words) on why you would like the join the Morrow Team?), What part of the JD are you most passionate about? Please elaborate on 1-3 parts of the JD that excites you the most and give clear examples of how you can best contribute to this expectation of the role., The 6 Lifestyle Medicine Pillars (Exercise, Nutrition, Sleep, Stress Management, Reduction Harmful Substances, Positive Social Engagements) are the backbone of how we support our clients in their ownership over their healthspan. Please share how these 6 pillars of Lifestyle Medicine are important to you and why do you want to be a part of this movement to empower others to live out such a lifestyle., Expected Compensation - To value and respect your time and to ensure alignment, please share your expected compensation for this role. This allows us to assess fit early in the process and approach your application with transparency and care.