jobs in Keppel Technology Solutions

Keppel Technology Solutions Hiring! Full Time IT Security Officer (Service Delivery - Governance) in - Ricebowl

IT Security Officer (Service Delivery - Governance)

Keppel Technology Solutions

Singapore

Share
Save

Working Location

  • Singapore

Job Description

Responsibilities

Employment Type: Contract (12–24 months)


Overview

We are seeking an experienced SaaS Security Program Manager / IT Security Officer to lead security delivery, remediation governance, and security tooling implementation for a large-scale SaaS platform supporting a regulated public-sector account. This role focuses on execution, coordination, reporting, and risk governance across engineering teams, security vendors, and stakeholders. Hands-on code remediation is not required; strong security domain knowledge, project management capability, and managed services delivery experience are essential.


Key Responsibilities

  • Own and drive the security remediation and tooling delivery program, including WAF and SIEM implementation.
  • Maintain the security roadmap, milestone tracker, risk register, and vulnerability register.
  • Coordinate remediation tracking, retesting, evidence collection, and risk acceptance workflows.
  • Lead delivery coordination with platform engineers, security vendors, and external assessors.
  • Prepare remediation status reports, risk summaries, and audit response packs.
  • Manage vendors, track delivery commitments, and escalate risks or delays proactively.
  • Maintain security documentation, compliance mapping, and audit trails.
  • Coordinate incident response and support CISO and Red Team reviews as required.


Requirements

  • Minimum 2 years of experience in IT security and cybersecurity operations
  • Strong background in vulnerability management, incident handling, security audits, and risk management.
  • Proven track record delivering security remediation or tooling implementation programs in multi-vendor environments.
  • Experience in project management, vendor management, and executive reporting skills.
  • Experience in managed services and/or SOC operations is a strong advantage.
  • Knowledge of security standards such as IM8, PCI DSS, HIPAA, CIS, or ISO/NIST preferred.
  • Security or project management certifications (CISSP, CISM, CRISC, PMP, PRINCE2, etc.) are advantageous.


What Success Looks Like

  • High and medium security findings closed or formally risk accepted.
  • Stable remediation cadence and audit-ready documentation.
  • Security posture maintained with no further regulatory or contractual escalation.


Important Information

Never provide your bank or credit card details when applying for jobs. Do not transfer any money or complete unrelated online surveys. If you see something suspicious, Report this Job ad.

Learn More