Cybersecurity Lead

About Company

Company Name EM Services Pte Ltd
Company UEN 198803538N

Job Detail

Own and maintain baseline cybersecurity policies, standards and minimum security controls applicable across Town Councils (and EM Group where applicable). Translate cybersecurity expectations into practical standards that can be implemented by IT Officers and vendors across varying Town Council environments. Define and maintain cybersecurity governance artefacts (e.g., control checklists, compliance reporting templates) to support consistent implementation and auditability. Provide guidance on cybersecurity requirements that can be embedded into IT tenders and vendor scopes (e.g., incident response obligations, security monitoring expectations, baseline configurations). Coordinate incident response protocols and act as the escalation point for cybersecurity events affecting EM & Town Councils related operations. Establish and maintain incident response runbooks, escalation paths and communications templates (internal and stakeholder-facing), aligned to vendor operating models. Lead cybersecurity incident triage, containment coordination, and post-incident review, including recommendations for remediation and prevention of recurrence. Coordinate with external incident response providers (retainer service) to ensure timely mobilisation, clear handover, and effective delivery during major incidents. Advise on cybersecurity compliance expectations, including risk assessments, gap analysis, and remediation planning. Maintain a consolidated view of cybersecurity risks and recurring control gaps across Town Councils to inform prioritisation and uplift planning. Support Town Councils and IT Officers in preparing evidence and responding to cybersecurity audits, reviews, and governance queries. Support IT Officers in implementing security controls and conducting awareness initiatives, including coaching and technical guidance on baseline controls (e.g., identity security, endpoint hygiene, access governance, incident reporting discipline). Define a structured approach for cybersecurity awareness and uplift across on-site colleagues, leveraging practical scenarios and recurring lessons from incidents. Partner with the IT Service Delivery Manager to ensure cybersecurity policies are operationalised through standard service processes, ticketing, change discipline, and escalation governance. Liaise with vendors to ensure alignment on cybersecurity expectations, reporting, and incident coordination. Participate in vendor governance on cybersecurity-related matters, ensuring vendors understand and meet required security baselines and incident response obligations. Provide cybersecurity input into service reviews, tender specifications, and scope discussions where cyber responsibilities and boundaries require clarification. Where applicable, lead or co-lead EMHQ cybersecurity programme planning, including group-level governance, awareness, incident readiness, and capability development. Build and mature cybersecurity operating rhythms (e.g., quarterly posture reviews, incident simulations/tabletop exercises, periodic control uplift campaigns) to improve resilience over time.

Job Requirements

Degree in Cybersecurity, Information Security, Computer Science, Information Technology, or related discipline. 7–10 years of experience in cybersecurity, cyber governance, incident response, or security operations, including ownership of security programmes, cybersecurity awareness initiatives and incident coordination. Hands-on experience developing security policies/standards and translating them into implementable controls across multi-site or multi-entity environments. Proven experience coordinating cybersecurity incidents with internal stakeholders and external service providers/vendors. Experience operating in regulated, public-facing, or multi-stakeholder environments is highly desirable. Cybersecurity Leadership & Ownership – Takes accountability for cyber posture, readiness, and outcomes. Governance & Structure – Able to define standards, controls, evidence and assurance processes across multiple entities. Incident Command & Calm Execution – Able to lead triage, escalation, and coordination under pressure. Stakeholder & Vendor Management – Effective communicator across Town Councils, vendors, and coordinating stakeholders. Pragmatism & Risk-Based Judgement – Balances “ideal security” with operational realities and prioritisation. Enablement Mindset – Coaches IT Officers and operational teams to implement controls consistently

Job Title Cybersecurity Lead
Salary SGD9,000.00 - 13,000.00
Employment Type Full Time
Working Experience 7 Years
Qualification Degree