Support and lead technical expertise and project management in DevSecOps capability for Enterprise Cybersecurity Engineering.
Summary:
The Technical Project Manager candidate is expected to possess
technical expertise
in
the DevSecOps domain with strong
project management
skills to lead the delivery of complex security initiatives.
This role requires working understanding of Secure SDLC (Software Development Life Cycle), proven success leading cross-functional teams, and the ability to deliver security solutions on time and within budget.
The ideal candidate pairs strategic thinking with hands-on experience spanning design, code, and build.
Key Responsibilities:
Drive end-to-end delivery of Secure SDLC, embedding security into every stage of software development lifecyle.
Define and manage project scope, objectives, tasks, and resources while overseeing execution, managing risk and dependencies across multiple workstreams.
Partner with engineering, architecture, operations, and procurement teams to align workflows with deliverables.
Govern project risks, dependencies, and change processes, ensuring adherence to agreed timelines and budgets.
Provide clear, concise status updates and maintain dashboards, progress reports, and executive summaries that give leadership full visibility.
Skillsets Requirement:
Possess a degree in Computer Science/Information Technology or related fields.
At least 8 years of relevant experience, preferably in financial services or asset management industries, with minimum 3 years in project management roles.
Hands-on experience in Secure SDLC and CI/CD tooling (e.g., GitLab CI, GitHub Actions, Jenkins) and integrating security gates into pipelines.
Experience with containers and orchestration (Docker, Kubernetes) and their associated security tooling.
Proficiency with Infrastructure-as-Code (Terraform, CloudFormation, or similar) and Policy-as-Code frameworks (e.g., OPA).
Solid grounding in application security fundamentals (OWASP Top 10, secure SDLC, and cryptography basics).
Knowledge of Cloud Native Services, including AWS Well Architected Framework, and experience in implementing and operationalizing cloud security solutions in Azure and/or AWS (e.g. Microsoft Sentinel, Security Hub, Guard Duty, Cloud Trail).
Familiarity with Cloud Security Posture Management (CSPM) and supply-chain security (SBOM, SLSA, artifact signing).
Experience with threat modeling, secure design reviews, risk assessments, and vulnerability management.
Strong technical acumen paired with a structured, disciplined approach to project management.
Strategic thinker with the ability to translate technical goals into business outcomes.
Highly organized, detail-oriented, and proactive in resolving issues.
Collaborative leader able to influence without authority across diverse teams.
Proven track record in technical and project management with excellent written and verbal communication skills, and strong interpersonal skills to coordinate across diverse stakeholders and vendors.
Certification in PMP, Cybersecurity, DevSecOps, AWS and Cloud will be advantageous.
NTT Singapore Pte Ltd (NTTS)
is the regional headquarters of NTT Communications Corporation (NTT Com) for Asia Pacific Region.
Established in 1997, NTT Singapore has more than 10 years of expertise in providing information and communications technology (ICT) solutions worldwide.
NTT Singapore offers diverse high-quality connectivity, data centre solutions, security services, IT management services, voice and conferencing solutions and solution integration services to its enterprise customers.
NTT Communications is a wholly owned subsidiary of Nippon Telegraph and Telephone Corporation (NTT Corp.), one of the world’s largest providers of telecommunications services.
In 2013, NTT Corp. is ranked no.1 in telecom industry in the Fortune Global 500* list with operating revenues of more than $133,077 million. It is positioned 32nd among the top 500 corporations worldwide.
NTT Com's extensive global infrastructure includes Arcstar secure private networks, which cover 196 countries/regions and a tier-1 IP backbone network connected with major ISPs worldwide, as well as secure data centers at over 150 locations worldwide.