Volver a empleos
ScovaiScovaiJobs
Rapsys Technologies Pte Ltd.

Rapsys Technologies Pte Ltd.

IT Security Officer (ITSO)

Singapore, SGPresencialPermanenteTiempo completo

Publicado 8 oct 2026

Este empleo está publicado en EN

🔒 We're Hiring: IT Security Officer (ITSO)! 🔒

We are looking for a skilled IT Security Officer to strengthen our organization's cybersecurity posture. The ideal candidate will have at least 4 years of experience in IT security, with proven expertise in implementing and managing security protocols, responding to incidents, and ensuring compliance with industry standards.

📍 Location: Singapore, Singapore

⏰ Work Mode: Work from Office

💼 Role: IT Security Officer (ITSO)

1. Scope of Work

The Information Technology Security Officer will support the Board's cybersecurity

governance, assurance, and security management activities across security architecture,

vulnerability assessment and penetration testing, risk assessment, system hardening, cloud

security posture management, software clearance, firewall and network deviation

management, cybersecurity policies and standards, and security metrics reporting.

The officer will coordinate security reviews and assessments, maintain cybersecurity registers

and trackers, follow up on remediation and outstanding actions with relevant stakeholders,

prepare security reports and management dashboards, and support the upkeep of

cybersecurity policies, standards, specifications, and documentation.

This role requires strong coordination, analytical, documentation, and stakeholder

management skills, with a good understanding of enterprise cybersecurity controls, risk

management, and governance processes.

2. Roles and Responsibilities

Security Architecture

  • Assist in maintaining security architecture diagrams, records, and approved design

documentation.

  • Track security architecture review requests and coordinate inputs from project teams

and relevant stakeholders.

  • Maintain records of architecture decisions, recommendations, and approved designs.
  • Support preparation of security advisory materials and architecture review

documentation.

Vulnerability Assessment & Penetration Testing

  • Coordinate and schedule VAPT engagements with system owners, vendors, and

security testers.

  • Maintain the VAPT tracker and follow up on remediation of identified vulnerabilities.
  • Coordinate re-testing activities and update finding closure status.
  • Assist in preparing VAPT reports, summaries, and presentation materials.

Risk Assessment

  • Coordinate cybersecurity risk assessment exercises with system owners and

stakeholders.

  • Maintain the cybersecurity risk register and track risk treatment and remediation

actions.

  • Support preparation of risk reports and management review materials.
  • Facilitate risk acceptance, exception, and approval processes in accordance with the

Board's requirements.

Hardening Compliance

  • Coordinate security hardening compliance assessments with system and infrastructure

teams.

  • Track hardening gaps and follow up on remediation progress.
  • Maintain hardening compliance records, checklists, and trackers.
  • Support preparation of periodic hardening compliance reports.

Cloud Security Posture Management

  • Monitor and triage findings generated by Cloud Security Posture Management tools.
  • Track cloud security misconfigurations and follow up on remediation with system and

cloud owners.

  • Maintain CSPM findings and remediation status records.
  • Prepare periodic cloud security posture reports and summaries.

Software Clearance

  • Receive, log, and track software security clearance requests.
  • Coordinate with requestors and vendors to obtain required technical and security

documentation.

  • Maintain the software clearance register and approval status.
  • Support preparation of software security evaluation summaries and monitor expiring

clearances.

Firewall & Network Deviation Management

  • Receive, track, and maintain firewall rule change and network security deviation

requests.

  • Follow up with requestors and network teams on outstanding actions and expiring

deviations.

  • Maintain deviation registers and prepare review summaries for approval.
  • Coordinate periodic firewall rule and network deviation reviews with relevant teams.

Policy, Standards & Governance / Cyber Specifications

  • Assist in drafting, reviewing, and updating cybersecurity policies, standards,

guidelines, and procedures.

  • Maintain the cybersecurity policy and standards documentation repository.
  • Track document review cycles, approvals, and expiry dates.
  • Support preparation and review of cybersecurity specifications for projects,

procurements, and tenders.

Security Metrics & Reporting

  • Collate and consolidate cybersecurity data and status updates from relevant teams and

systems.

  • Maintain cybersecurity dashboards covering vulnerabilities, risks, deviations,

compliance, and audit items.

  • Prepare routine security metrics and management reports.
  • Follow up with responsible parties on outstanding cybersecurity actions and

remediation items.

Security & Compliance

  • Ensure activities are performed in accordance with the Board's cybersecurity policies,

applicable regulatory requirements, and the Cybersecurity Code of Practice (CCoP).

  • Support cybersecurity assessments, internal and external audits, and evidence

collection activities.

  • Maintain accurate and up-to-date cybersecurity records, reports, registers, and

supporting documentation.

  • Protect sensitive and security-classified information in accordance with the Board's

requirements.

3. Technical Requirements

Mandatory Technical Skills

  • Good understanding of enterprise cybersecurity concepts, including vulnerability

management, security risk assessment, system hardening, firewall controls, cloud

security, and security governance.

  • Experience coordinating cybersecurity assessments, remediation activities, and

security review processes involving multiple technical and business stakeholders.

  • Ability to review and understand vulnerability assessment findings, security risk

assessments, security architecture diagrams, firewall rules, and security compliance

reports.

  • Familiarity with security frameworks, policies, standards, and cybersecurity

governance processes.

  • Strong analytical, documentation, stakeholder coordination, and follow-up skills.

Good-to-Have

  • Familiarity with CSPM platforms and cloud security concepts across AWS, Azure, or

equivalent cloud environments.

  • Experience with vulnerability management or VAPT tools and interpreting

CVE/CVSS information.

  • Understanding of enterprise network architecture, firewall rules, security zones, and

network segmentation.

  • Experience supporting cybersecurity audits, governance, risk, and compliance

activities.

Certifications

  • CompTIA Security+, ISC2 Certified in Cybersecurity (CC), or equivalent

foundational cybersecurity certification is highly preferred.

  • Certified Information Systems Security Professional (CISSP), Certified Information

Security Manager (CISM), or equivalent will be advantageous.

  • Certified in Risk and Information Systems Control (CRISC), ISO 27001-related

certification, or equivalent risk/governance certification will be advantageous.

  • Relevant cloud security certification such as Microsoft Azure Security, AWS

Security, or equivalent will be advantageous.

4. Working Arrangement

  • Onsite at designated PUB secure premises in Singapore, as required.
  • The officer will work closely with system owners, infrastructure teams, cybersecurity

teams, project teams, vendors, and contractors.

  • Must comply with all security, confidentiality, and access control requirements of

PUB premises and systems.

  • The officer shall be subjected to security clearance by the Board prior to

commencement of work.

If you're passionate about protecting digital assets and driving a culture of security excellence — apply now to join our team! 🚀

Resumen del puesto

Tipo de empleo

Tiempo completo

Correo electrónico

himanshu.s@rapsystechnologies.com

Habilidades requeridas

Vulnerability management (tracking, remediation, re-testing)Vulnerability Assessment & Penetration Testing (VAPT) coordinationInterpreting CVE/CVSS and vulnerability findingsSecurity architecture maintenance and review (diagrams, design documentation)Cloud Security Posture Management (CSPM) and cloud security (AWS/Azure concepts)System hardening compliance and checklist managementFirewall rule and network deviation managementCybersecurity risk assessment and risk register managementDevelopment and maintenance of security policies, standards, guidelines and specificationsSecurity metrics, dashboarding and management reportingStakeholder coordination and vendor management for security activitiesSupport for security audits and evidence collection (compliance assurance)Software security clearance coordination and evaluationHandling and protection of sensitive/security‑classified information

Empleos similares

Tap Growth ai

Project Manager-Procurement ,Quotation

Tap Growth ai

Singapore, SGPresencialPermanenteTiempo completo
hace 1 hora
Tap Growth ai

Frontend Developer

Tap Growth ai

Singapore, SGPresencialPermanenteTiempo completo
hace 1 hora
Rapsys Technologies Pte Ltd.

Project Manager-Procurement ,Quotation

Rapsys Technologies Pte Ltd.

Singapore, SGPresencialPermanenteTiempo completo
hace 1 hora
Rapsys Technologies Pte Ltd.

Frontend Developer

Rapsys Technologies Pte Ltd.

Singapore, SGPresencialPermanenteTiempo completo
hace 1 hora
Tap Growth ai

QA Engineer

Tap Growth ai

Singapore, SGPresencialPermanenteTiempo completo
hace 1 hora
Rapsys Technologies Pte Ltd.

QA Engineer

Rapsys Technologies Pte Ltd.

Singapore, SGPresencialPermanenteTiempo completo
hace 1 hora