Cybersecurity Risk Analyst (GRC)
Summary
The Cybersecurity Risk Analyst will develop and govern security policies for on-premise environments and manage annual vulnerability assessments and penetration testing. The role involves providing security advisory to stakeholders and promoting organizational security compliance.
Company Overview
Page Personnel, part of Michael Page, provides specialised recruitment services across multiple industries in Singapore, including IT, finance, engineering, healthcare, and more. We connect professionals with roles that match their expertise and career goals.
Job Summary
Establish and govern On-Prem environment security policies and procedures. Provide security advisory to stakeholders and conduct annual Vulnerability Assessment and Penetration Testing (VAPT) to ensure compliance and risk mitigation.
Responsibilities
- Develop and maintain security policies, standards, and procedures for the On-Prem environment to ensure robust governance
- Scope, execute, and manage findings from annual Vulnerability Assessment and Penetration Testing (VAPT) to identify and mitigate security risks
- Provide security advisory and conduct architecture reviews to guide stakeholders in implementing best security practices
- Engage stakeholders to promote security awareness and foster a culture of security compliance across the organization
Required competencies and certifications
- Minimum 2 years of experience in governance, risk, and compliance
- Certification in CISM, CISSP, or CRISC preferred for professional validation of security expertise
Preferred competencies and qualifications
[None explicitly stated in the original JD]