The Safer Cyberspace Division in CSA focuses on raising the national cybersecurity posture for non-Critical Information Infrastructure (CII) enterprises in Singapore. The division develops national cybersecurity technology programmes that raise the cybersecurity posture in enterprises, in order to enable a safer cyberspace. We are looking for a candidate to oversee the governance and risk assessment of organisations that may be subject to cybersecurity requirements under CSA’s legislative framework.
Responsibilities:
• Shape and implement governance frameworks for organisations that may be subjected to cybersecurity requirements under CSA’s legislative framework.
• Assess organisational cybersecurity risks and provide recommendations to support effective risk management and regulatory oversight.
• Oversee cybersecurity incident reporting and coordinate engagements with organisations to strengthen cyber reliance and ensure timely follow up.
• Build trusted relationships with industry stakeholders, serving as the primary point of engagement under the division’s purview.
• Design, develop, enhance, and maintain national cybersecurity programmes to address emerging cybersecurity risks and improve cybersecurity capabilities of Singapore enterprises.
• Conducting landscape studies, analyse technology trends, and identify emerging threats and capability gaps to inform programme and policy development.
• Develop strategies and levers to accelerate programme adoption through funding, incentives, partnerships, communications, and policy initiatives.
• Collaborate with government agencies, industry associations, certification bodies, insurers technology providers, and other ecosystem partners to strengthen Singapore’s cybersecurity ecosystem.
• Monitor programme performance, evaluate outcomes, and recommend improvement to maximise national impact.
• Background in Computer Science, Cybersecurity, Engineering, Infocomm Technology, or a related field
• At least 2 years’ experience in a job function involving cybersecurity risk management – Experience in certification frameworks, such as ISO/IEC 27001 is an advantage
• Experience in Chief Information Security Officer (CISO) functions in organisations is an advantage
• Strong analytical, investigative and communication skills, both verbal and written
• Strong interpersonal and stakeholder management skills
• Interest in keeping abreast of regulatory changes and development, as well as cybersecurity risk management frameworks and methodology