Information Security Analyst - Financial Services
REVUP CONSULTING PTE. LTD.
Information Security Analyst - Financial Services
Job Summary
Responsible for cyber governance, risk management, and security operations within a regulated financial services environment. Develops and implements security policies, ensures regulatory compliance, coordinates security testing, and manages incident response and business continuity programs.
Key Responsibilities
Governance & Compliance:
- Provide cyber governance and risk management oversight
- Develop and maintain security policy framework and standards
- Ensure compliance with applicable regulations and standards (ISO 27001, NIST, regional financial services guidelines)
- Manage and track vulnerability remediation status
- Coordinate penetration testing and escalate material security risks to senior forums
- Conduct third-party due diligence for compliance and operational risk
Risk & Incident Management:
- Identify and assess cyber risks; recommend security solutions and initiatives
- Monitor security alerts and investigate security breaches and incidents
- Manage security incident response according to established protocols
- Maintain incident response plans and playbooks
- Develop and maintain Business Continuity Program; coordinate with department operations to create unified business continuity plan
Regulatory & Stakeholder Relations:
- Act as primary contact for senior management and regulatory body inquiries
- Ensure audit findings are remediated and independently validated within agreed timelines
- Conduct annual disaster recovery exercises with internal and external parties
- Provide security advisory on emerging threats and vulnerabilities
Access & Infrastructure:
- Develop and implement identity and access management policies
- Monitor and audit user access activities
- Assess infrastructure, systems, and applications for compliance and vulnerabilities
Awareness & Training:
- Maintain user cyber awareness programs
- Coordinate security awareness training for staff
Required
- 5 years' information security experience
- Strong analytical and problem-solving skills
- Familiarity with SIEM tools (Splunk) and vulnerability assessment tools (Tenable Nessus)
- Strong written, oral, and presentation skills
- Undergraduate degree in Computer Science, Information Technology, Engineering, or equivalent
Preferred
- CISSP, CISA, or CEH certification
- Graduate degree in related field
- Knowledge of regional financial services regulations and guidelines