Назад
Company hidden
17 часов назад

Security Consultant (Governance Risk and Compliance)

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle/senior
Английский
b2
Страна
Singapore
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Security Consultant (Governance Risk and Compliance): Leading and delivering GRC engagements for IT, OT, and CII environments with an accent on regulatory frameworks, risk assessments, and certification readiness. Focus on producing actionable security reports and providing consultative advisory to clients across critical infrastructure sectors.

Location: Must be based in Singapore. This is a hybrid role requiring office attendance at mTower and occasional client site visits.

Company

hirify.global is an award-winning global provider of cybersecurity and assurance services, specializing in risk management, compliance, and technical advisory for critical infrastructure and regulated industries.

What you will do

  • Plan and lead GRC engagements across frameworks like NIST CSF, ISO 27001, MAS TRMG, and local Singaporean standards.
  • Conduct structured cybersecurity risk assessments, maintain risk registers, and develop treatment plans.
  • Support clients through audit preparation, remediation validation, and coordination with regulatory bodies.
  • Produce high-quality, professional reports and presentations for both technical teams and executive leadership.
  • Provide technical input for business development, including scope definition and effort estimation.
  • Collaborate with cross-functional teams to improve consulting methodologies and mentor junior consultants.

Requirements

  • Must be a resident of Singapore.
  • Practical experience delivering GRC engagements within enterprise IT, Cloud, or OT environments.
  • Broad understanding of networking, operating systems, and cybersecurity technologies.
  • Strong stakeholder management and written communication skills for client-ready documentation.
  • Ability to independently manage multiple client engagements.
  • Relevant certifications such as CISSP, CISM, CISA, or ISO 27001 Lead Auditor are highly desirable.

Culture & Benefits

  • Opportunity to work on cutting-edge engagements across diverse critical infrastructure sectors.
  • Access to a wide spectrum of cybersecurity services including SOC, Incident Response, and Red Teaming.
  • Strong focus on professional development, career progression, and continuous learning.
  • Collaborative environment with industry-leading employee retention.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →