jobs in BOND FINANCIAL GROUP PTE. LTD.

全职 Senior Security Engineer 工作, 薪水 up to SGD 8,000, BOND FINANCIAL GROUP PTE. LTD. Central Region (Singapore) 公司招聘中 - Ricebowl

Senior Security Engineer

BOND FINANCIAL GROUP PTE. LTD.

SGD8,000 - SGD8,000 每月

Central Region (Singapore)

分享
保存

工作地点

  • 78 SHENTON WAY Central Region (Singapore) Singapore

职位描述

岗位职责

The Senior Security Engineer is a hands-on security engineer responsible for implementing and operating the organisation's security controls and tooling. Reporting to the Information Security Lead, this role executes security operations, supports IAM administration, and produces control evidence for the ISO27001:2022 certification programme.

Responsibilities

Security Operations

  • Operate and tune security monitoring, detection, and alerting; triage and investigate security events, escalating per defined runbooks.
  • Lead technical containment and remediation during security incidents; draft post-mortem findings and track remediation to closure.
  • Coordinate day-to-day with the SoC team and MSSP; validate findings from penetration tests and vulnerability scans and drive remediation.

Identity, Access and Platform Security

  • Administer IAM controls including SSO, MFA, and PAM; execute user provisioning, deprovisioning, and periodic access reviews.
  • Operate and maintain email security gateways and endpoint protection platforms.
  • Support secure development reviews against OWASP standards and assist with security architecture reviews and threat modelling.

Compliance and Support

  • Implement ISO 27001:2022 controls and collect audit evidence; maintain control documentation and support surveillance audits.
  • Contribute to policy reviews with findings from operations and the evolving threat landscape.
  • On-call availability is required to support 24x7 incident response coverage.

Requirements

Experience

  • 8+ years of progressive information security experience with hands-on security operations in a production environment.
  • Proven experience in incident response, containment, and post-incident reviews.
  • Experience administering IAM platforms (SSO, MFA, PAM) and security tooling.
  • Experience working with MSSPs and penetration testing firms; ISO 27001:2022 and regulated industry exposure preferred.
  • Familiarity with MAS Technology Risk Management (TRM) Guidelines is a bonus.

Technical Skills

  • IAM platforms: SSO (e.g. Okta, Azure AD or equivalent), MFA, PAM (e.g. CyberArk, BeyondTrust,or equivalent)
  • Cloud security: security hardening, configuration review, and monitoring of cloud environments(AWS preferred)
  • Security monitoring, SIEM, and detection/alerting operations
  • Email security gateways and endpoint protection platforms
  • Vulnerability management and remediation tracking
  • Secure development frameworks: OWASP, SANS CWE Top 25; threat modelling fundamentals
  • ISO 27001:2022 control implementation and evidence collection

Qualifications

  • Bachelor's degree or higher in Information Security, Computer Science, or a related discipline.
  • CISSP, CISM, or GIAC certifications preferred.

重要安全守则

申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。

了解更多