
Manager - Technology Risk & KRI (Risk & Sector Governance)
- Singapore
- Permanent
- Full-time
- Be the integrator for cyber security policies development, implementation and adherence while facilitating engagement and collaboration with various stakeholders in public healthcare sector.
- Be the voice for the team from a cyber security perspective when evaluating stakeholders' requirements, expectation, and interaction.
- Engage and drive alignment with both Synapxe and MOHH entities' stakeholders including but not limited to CIOs, CISOs and other functional leaders.
- Facilitate roll out of consultation and roll-out on policies, risk management framework and assessment methodology.
- Implement cybersecurity risk management program to instill cyber risk awareness culture within the public healthcare sector.
- Evaluate risk remediation priorities and provide risk opinion, advisories & recommendations.
- Develop and continuously improve on the Public Healthcare Cybersecurity Risk dashboard and key risk indicators for reporting through automation.
- Evaluate emerging technologies, trends, and changes regulations.
- Maintain effective working relationships with peers, stakeholders, and regulators to seamlessly integrate the policy adherence into the overall strategic objectives and activities of the sector.
- Demonstrate your domain expertise; you are expected to further your own knowledge and improve productivity of your colleagues with activities such as creating learning content, presenting, and supporting a continuous learning culture.
- Bachelor's degree in computer science or STEM Majors (Science, Technology, Engineering and Math) with over 6 years of experience.
- Recognized industry leading certifications in relevant areas such as CISM, CRISC, CISSP, CCSP, CIPP, CIPT, CIPM and GIAC certifications.
- Experience in policy, standard and guideline implementation in cyber security and technology risk domain
- Solid technical writing and attention to details.
- Working knowledge on well-recognized frameworks & standards such as IM8, NIST CSF, COBIT5/2019, and ISO27000 series
- Command a good understanding and experience in cyber security, risk management, and compliance concepts and processes.
- Ability to consult and influence stakeholders on alignment of outcomes and desired technical solutions.
- Ability to analyze, design, and develop a solution roadmap and implementation plan based upon a current vs future state.
- Working knowledge of balancing security and business needs
- Knowledgeable on full range of services catalog within a cybersecurity function and able to discuss overall solution.
- Experience sustaining operational stability through various life cycle phases.
- Able to lead early-stage customer interactions on cybersecurity design.