The Safer Cyberspace Division in CSA focuses on raising the national cybersecurity posture for non-Critical Information Infrastructure (CII) enterprises in Singapore. The division develops national cybersecurity technology programmes that raise the cybersecurity posture in enterprises, in order to enable a safer cyberspace. We are looking for a candidate to oversee the governance and risk assessment of organisations that may be subject to cybersecurity requirements under CSA's legislative framework.
Responsibilities:
- Shape and implement governance frameworks for organisations that may be subjected to cybersecurity requirements under CSA's legislative framework
- Assess organisational cybersecurity risks and provide recommendations to support effective risk management and regulatory oversight
- Oversee cybersecurity incident reporting and coordinate engagements with organisations to strengthen cyber reliance and ensure timely follow up
- Build trusted relationships with industry stakeholders, serving as the primary point of engagement under the division's purview
- Design, develop, enhance, and maintain national cybersecurity programmes to address emerging cybersecurity risks and improve cybersecurity capabilities of Singapore enterprises
- Conducting landscape studies, analyse technology trends, and identify emerging threats and capability gaps to inform programme and policy development
- Develop strategies and levers to accelerate programme adoption through funding, incentives, partnerships, communications, and policy initiatives
- Collaborate with government agencies, industry associations, certification bodies, insurers technology providers, and other ecosystem partners to strengthen Singapore's cybersecurity ecosystem
- Monitor programme performance, evaluate outcomes, and recommend improvement to maximise national impact
Requirements
- Background in Computer Science, Cybersecurity, Engineering, Infocomm Technology, or a related field
- At least 2 years' experience in a job function involving cybersecurity risk management - Experience in certification frameworks, such as ISO/IEC 27001 is an advantage
- Experience in Chief Information Security Officer (CISO) functions in organisations is an advantage
- Strong analytical, investigative and communication skills, both verbal and written
- Strong interpersonal and stakeholder management skills
- Interest in keeping abreast of regulatory changes and development, as well as cybersecurity risk management frameworks and methodology