Senior Assistant Director (GCS-Dev/Government/Healthcare),CPSC

Be among the first applicants.
Cyber Security Agency of Singapore
Singapore
SGD 90,000 - 150,000
Be among the first applicants.
4 days ago
Job description

What the role is:

The successful candidate will be assigned to work in one of the various pillars in the division such as “Government Central Systems Development (GCS-Dev)-” , “ Government” , “Healthcare”. Lead a team of assistant directors, senior consultants, consultants and system engineers to provide cybersecurity consultancy through evaluating the risk assessment, security design review and plan and review security testing of GCS-Dev / Government/ Healthcare so as to ensure that the Systems are well protected while System owner accepts justifiable risk levels.

What you will be working on:

  1. Perform the risk assessment for GCS-Dev/ Government/ Healthcare to ensure it is well protected and justify the risks to the System owner for risk acceptance.
  2. Collaborate with system owners and project team to understand the business and system requirements so that you can analyse and identify the cyber and physical threats and formulate the relevant project-specific scenarios and potential risks.
  3. Propose people, process and technology (PPT) cybersecurity mitigation controls on the completed TRA Template and project-specific scenarios.
  4. Justify the residual risks level for acceptance and approval by the designated approving authority.
  5. Review the security design of GCS-Dev/ Government/ Healthcare ICT systems to identify areas of weaknesses and recommend security solution or controls to mitigate against highlighted threats.
  6. Identify, assess and review cybersecurity solutions to secure ICT networks and systems.
  7. Collaborate with system owners and project team to review and provide advice on the final proposed security design and mitigation controls.
  8. Collaborate with system owners and project team to identify additional risks due to deviations in the final proposed security design and propose mitigation controls.
  9. Review security testing scopes and plans that validate and verify the security design of the GCS (Dev) / Government/ Healthcare ICT Systems.
  10. Review vendor’s system security testing proposals and Penetration Test (PT) plans, and if needed, insert or counter propose test plans and test cases to make sure the security testing is comprehensive.
  11. Review and provide advice to system owners and project team on the conduct of system security testing and PT.
  12. Serves as controller to verify the execution of the system security testing and PT.
  13. Assess and provide advice, identify risks and propose remediation measures on the findings and recommendations from the system security testing and PT reports.
  14. Optimise cybersecurity consultancy practices for effectiveness and efficiency of GCS-Dev/ Government/ Healthcare systems.
  15. Develop security reference architectures and threat reference models to optimise consultancy effectiveness and efficiencies.
  16. Work with team members to develop, operate and publish the security reference architectures and threat reference models.
  17. Enforce approved security reference architecture and threat reference models during cybersecurity consultancy.
  18. Analyse lessons learned from consultancy works and incorporate areas of improvement to enhance Consultancy Models, security reference architecture and threat reference models.
  19. Manage Team Capability Development.
  20. Managed Team esprit de corps, professional and personal developments.
  21. Develop training plans for the team based on competency framework i.e. RTEC (Raise + Train + Evaluate = Capability) Framework.
  22. Identify suitable training programmes/events/seminars for each team role to associate the required capability in dealing with ever-changing cybersecurity threats landscape.
  23. Monitor training budget allocated and provide updates to management when required.
  24. Establish processes for Knowledge Management for purpose of cybersecurity consultancy knowledge sharing and retentions.

What we are looking for:

  • Bachelor Degree in Information Communication Technology-related discipline (Cybersecurity, Information Security, Information Technology, Computer Science, Management Information Systems), Science or Engineering etc.
  • Professional qualifications such as CISSP, SANS, CISA, CRISC or equivalent.
  • At least 15 to 20 years relevant working experience and more than 10 years of supervisory experience to manage, work and collaborate with various parties including stakeholders, system owners, teammates and contractors.
  • Good understanding and interest in Cybersecurity.
  • Technically hands-on and curious about inner workings of technology.
  • Strong analytical and conceptualisation skills.
  • Good communications and interpersonal relationship skills, stakeholder management.
  • Driven and capable to work independently. Resourceful, responsible, motivated and able to work independently as well as in a team.

If you share our passion to make a difference in the cyber security landscape, take up the challenge and apply now. All applicants will be notified of whether they are shortlisted or not within four weeks of the closing date of this job posting. For any issues with the application, you may drop your resume with us at csa_recruit@csa.gov.sg.


Note: CSA will be shifting to Punggol Digital District (PDD) in year 2026.


About Cyber Security Agency of Singapore

About the Cyber Security Agency of Singapore Established in 2015, the Cyber Security Agency of Singapore (CSA) seeks to keep Singapore’s cyberspace safe and secure to underpin our Nation Security, power a Digital Economy and protect our Digital Way of Life. It maintains an oversight of national cybersecurity functions and works with sector leads to protect Singapore’s Critical Information Infrastructure. CSA also engages with various stakeholders to heighten cyber security awareness, build a vibrant cybersecurity ecosystem supported by a robust workforce, pursue international partnerships and drive regional cybersecurity capacity building programmes. CSA is part of the Prime Minister’s Office and is managed by the Ministry of Digital Development and Information. For more news and information, please visit www.csa.gov.sg.
Get a free, confidential resume review.
Select file or drag and drop it
Avatar
Free online coaching
Improve your chances of getting that interview invitation!
Be the first to explore new Senior Assistant Director (GCS-Dev/Government/Healthcare),CPSC jobs in Singapore