Information Security Analyst - Financial Services

REVUP CONSULTING PTE. LTD.

Information Security Analyst - Financial Services

Job Summary

Responsible for cyber governance, risk management, and security operations within a regulated financial services environment. Develops and implements security policies, ensures regulatory compliance, coordinates security testing, and manages incident response and business continuity programs.

Key Responsibilities

Governance & Compliance:

  • Provide cyber governance and risk management oversight
  • Develop and maintain security policy framework and standards
  • Ensure compliance with applicable regulations and standards (ISO 27001, NIST, regional financial services guidelines)
  • Manage and track vulnerability remediation status
  • Coordinate penetration testing and escalate material security risks to senior forums
  • Conduct third-party due diligence for compliance and operational risk

Risk & Incident Management:

  • Identify and assess cyber risks; recommend security solutions and initiatives
  • Monitor security alerts and investigate security breaches and incidents
  • Manage security incident response according to established protocols
  • Maintain incident response plans and playbooks
  • Develop and maintain Business Continuity Program; coordinate with department operations to create unified business continuity plan

Regulatory & Stakeholder Relations:

  • Act as primary contact for senior management and regulatory body inquiries
  • Ensure audit findings are remediated and independently validated within agreed timelines
  • Conduct annual disaster recovery exercises with internal and external parties
  • Provide security advisory on emerging threats and vulnerabilities

Access & Infrastructure:

  • Develop and implement identity and access management policies
  • Monitor and audit user access activities
  • Assess infrastructure, systems, and applications for compliance and vulnerabilities

Awareness & Training:

  • Maintain user cyber awareness programs
  • Coordinate security awareness training for staff

Required

  • 5 years' information security experience
  • Strong analytical and problem-solving skills
  • Familiarity with SIEM tools (Splunk) and vulnerability assessment tools (Tenable Nessus)
  • Strong written, oral, and presentation skills
  • Undergraduate degree in Computer Science, Information Technology, Engineering, or equivalent

Preferred

  • CISSP, CISA, or CEH certification
  • Graduate degree in related field
  • Knowledge of regional financial services regulations and guidelines