Remote job
Chief Information Security Officer
Job details
About this role
Role overview A founding-level CISO seat in Singapore, accountable for standing up the local information security function for a regulated financial services business focused on enterprise payments and digital assets. The role reports to the Singapore country CEO with a dotted line to the Global CISO, balancing local regulatory obligations against alignment with the global security programme. It is highly visible and hands-on, spanning governance, technical controls, regulatory engagement, and team building.
Responsibilities - Own the information security strategy and programme for the Singapore business, including governance, policies, standards, controls, and processes suited to a regulated financial services environment. - Ensure operations align with MAS technology risk, cyber security, and operational resilience expectations, and lead engagement with regulators, auditors, and examiners on security matters. - Establish and run core security capabilities, including monitoring, identity and access management, vulnerability management, incident response, third-party security risk, data security, and operational resilience. - Build and maintain an information security risk management framework, escalating material risks to leadership and governance forums with clear reporting and metrics. - Lead incident preparedness and response, including crisis management, escalation paths, and post-incident follow-through. - Partner with Product, Engineering, and Technology to embed security into new products and infrastructure from the earliest design stages. - Shape the future structure, resourcing, and capabilities of the Singapore security function as the business scales.
Requirements - Senior leadership experience owning information security for a regulated financial services or payments business, including accountability to boards, regulators, and audit functions. - Deep familiarity with MAS technology risk, cyber security, and operational resilience requirements. - Experience building a security function from scratch, including hiring, defining standards, and implementing governance forums. - Strong technical grounding across security operations, identity, vulnerability management, incident response, and third-party risk. - Demonstrated ability to partner with engineering and product on secure-by-design architectures and trade-offs. - Excellent communication and stakeholder skills across regulators, executives, engineers, and cross-functional partners.
Nice to have - Experience operating inside a global security organisation while owning a local entity's programme.
Benefits and work setup - Competitive compensation with flexible working hours and a hybrid model. - Equipment provided, including a MacBook and required accessories. - Flexible holiday approach and opportunities to travel to other offices globally. - Open, creative culture with growth-minded peers.