Job Summary
We are seeking an experienced Security Consultant to join our Security Architecture and Consultancy team. You will serve as a trusted advisor, guiding project teams in designing secure systems and making sound security decisions throughout the project lifecycle.
Responsibilities
Advise project teams on secure system design and solutioning across cloud, on-premises, and hybrid environments from concept to deployment
Conduct detailed security architecture reviews to identify vulnerabilities, misconfigurations, and control gaps, providing prioritized remediation recommendations
Guide teams on applying security design patterns and best practices in cloud security, application security, identity and access management, and data protection
Perform structured threat modeling to identify threats and attack vectors, recommending mitigation controls aligned with system risk profiles
Conduct risk assessments to evaluate and prioritize security risks, translating technical findings into clear business impacts for informed decision-making
Develop and maintain security design patterns covering cloud security, application security, identity and access management, data protection, and AI system deployments
Establish and update enterprise security standards and baselines for endpoint security, network security, cryptography, and AI system deployments, ensuring alignment with government policies and evolving threats
Assess AI and machine learning system security across the model lifecycle, identifying risks and recommending appropriate controls
Advise on secure and responsible AI system deployment, including guardrails, human oversight, and AI-specific incident response considerations
Evaluate third-party AI services and large language model integrations for risks related to data residency, vendor access, model behavior, and supply chain exposure
Develop AI-powered tools and workflows to improve efficiency and quality in security consultancy activities such as threat modeling, risk assessment, and architecture review
Collaborate with teams to identify repetitive security tasks suitable for AI-assisted automation and prototype practical solutions
Required competencies and certifications
Bachelor’s degree in Computer Science, Information Security, or related field
Minimum 9 years of cybersecurity experience focused on security architecture, risk assessment, and consultancy across cloud, on-premises, and hybrid environments
Deep knowledge of security architecture principles and practices in cloud security, application security, identity and access management, and data protection
Strong understanding of risk management methodologies, threat modeling techniques, and security compliance frameworks
Working knowledge of Singapore Government security policies and frameworks, including IM8 and CCoP
Familiarity with AI security concepts and security implications of AI and machine learning deployments
Excellent communication and stakeholder engagement skills to present complex security concepts clearly to technical and non-technical audiences
Ability to work independently, manage multiple engagements, and deliver quality outcomes with minimal supervision
Preferred competencies and qualifications
Professional certifications such as
CISM
,
CRISC
,
CISSP
, or equivalent
Relevant certifications such as AWS Certified Security - Specialty or Certified
Cloud Security
Professional (CCSP)