Jobs

    Third Party Information Security Consultant, Global Information Security - Singapore - MERRILL LYNCH GLOBAL SERVICES PTE. LTD.

    Default job background
    Description
    Roles & Responsibilities

    Your background

    • Previous information technology/security audit/assessment experience preferred.
    • Ability to leverage attention to detail and analytical skills.
    • Ability to multi-task and work both independently as well as part of an assessment team
    • Ability to plan, execute and document assessment and remediation activities following established processes and procedures.
    • Must be comfortable in delivering messages across a wide spectrum of individuals having varying degrees of technical understanding.
    • Minimally, CISSP and/or CISA certifications are required as well as five to eight years of experience in information security or business continuity.
    • Technical skills include the domains of information security and business continuity including:
      Information Security Controls (Cloud Security, Infrastructure Security, Access Management, Physical Security, Application Security, etc.),
      IT Compliance, SOX Compliance
      Change Management
      Enterprise Risk Management
      Solid grasp of NIST, PCI, ISO, SDLC, COBIT, and ITIL standards.
    • Must be able to travel up to 25% of the time.
    • Experience in Cloud technologies, OSINT and threat modeling will be advantageous.

    What you can expect

    The Third Party Cyber Security Assessor will conduct information security and business continuity assessments of third parties providing services to Bank of America. The assessor will examine a third party's program to determine if they meet the Bank's requirements, identifying control gaps that may expose the Bank to risks and subsequently work with the third party on all remediation activities.

    To succeed in this role, you should be highly independent, motivated and possess strong, hands-on, technical knowledge of a wide range of information security and business continuity controls and the processes used for evaluating their design and effectiveness and possess strong written and verbal communication skills including ability to communicate clearly and concisely to various levels, up to and including executive level management, and explain the need for key controls to technical and non-technical resources.

    There will be opportunities to be involved in projects to improve processes & transform the assessment program. This will enable you to leverage and grow your leadership skills as you'll be expose to various internal stakeholders and industry partners.

    What you will do

    • Manage and execute assessments of third parties providing services to Bank of America.
    • Evaluate design and effectiveness of controls implemented by third parties providing services to Bank of America
    • Drive remediation of issues identified through the assessments and any subsequent risk conversations with the third parties and other internal stakeholders.
    • Interface with external third parties and internal line of business stakeholders to provide consultation on information security topics and build strong working relationships with these parties.
    • Partner with regional and global GIS teammates to collaborate on opportunities and to identify, analyze, and resolve complex problems or security gaps.
    • Contribute to the development and transformation of the Third Party Cyber Assurance program.
    • Conduct cyber risk assessment in support of technology initiatives to help identify IT related risk and determine appropriate controls to mitigate risks.
    • Monitor, track, and manage risk mitigations and exceptions and ensure adequate monitoring capability is incorporated into solutions.

    About Bank of America

    Our purpose as a firm is to make financial lives better, through the power of every connection. Across the world, we partner with leading corporate and institutional investors through our offices in more than 35 countries. In the U.S. alone, we serve almost all of the Fortune 500 companies and approximately 67 million consumer and small-business clients. We provide a full suite of financial products and services, from banking and investments to asset and risk management. We cover a broad range of asset classes, making us a global leader in corporate and investment banking, sales and trading.

    Connecting Asia Pacific to the world

    Our Asia Pacific team is spread across 19 cities in 12 markets. We are focused on connecting Asia to the world and the world to Asia, using our global expertise to ensure success is shared between us, our clients and our communities. Our regional footprint covers 12 currencies, more than a dozen languages and five time zones, placing us firmly among the region's leading financial services companies.

    Tell employers what skills you have

    Third Party Vendor Management
    Information Security
    COBIT
    Remediation
    Application Security
    Risk Assessment
    Business Continuity
    Cyber Security
    Managing third party vendors
    Third Party Management
    ISO
    Assurance
    Physical Security
    Risk Management
    CISA
    ITIL
    CISSP
    Threat Modeling


  • Bank of Singapore Singapore

    At Bank of Singapore, we are constantly on the lookout for exceptional individuals to join our team. We promote a culture of openness, teamwork and fairness. Most importantly, we invest in our people through our programmes that develop them on both professional and personal level ...


  • Argyll Scott Singapore

    **Are you have passion in Cyber Security? And would want to be a part of Global fuctions?** · - Attractive Salary Package / plus approxmately up to 2 months bonus · - 12 months Contract position with - possibly extendable/convertible/renewable · **Job Description;** · - Perform v ...


  • Bank of Singapore Singapore

    Bank of Singapore SingaporePosted 2 hours ago Permanent Competitive · - Information Security & Digital Risk (Associate Director) · - At Bank of Singapore, we are constantly on the lookout for exceptional individuals to join our team. We promote a culture of openness, teamwork and ...


  • AIA Singapore

    Do meaningful work with us. Every day. · At Amplify Health, we're looking for individuals with ambition, resilience and passion for healthcare, insurance, wellness and digital technology. As a fast-growing business with the ambition of making people and communities across Asia he ...


  • Deel Singapore

    **Who we are is what we do.** · Deel and our family of growing companies are made up of global teams dedicated to helping businesses hire anyone, anywhere, easily. · The team comprises over three thousand self-driven individuals spanning over 100 countries, and our unified yet di ...


  • SPARROW RESEARCH PTE. LTD. Singapore

    **Job Summary** · Implement and oversee Sparrow's IT security operations framework, including security operations role definitions, monitoring, incident and event management, privileged access management, and overall security architecture. Ensure compliance with industry standard ...


  • Ambition Singapore

    **Job details**: · Posted 11 April 2023 · SalaryNegotiable · LocationSingapore · Job type Permanent · DisciplineTechnology · Reference264657_ · We are seeking an **Associate, Information Security & Technology Risk Management** to join a corporate & investment bank. This is a reg ...


  • Good Job Creations Pte Ltd Singapore

    Provides security analysis of IT activities to ensure that appropriate security measures are in place and are enforced. · - Assists with the development and maintenance of corporate security policies and procedures, the remediation of identified risks, and the implementation of s ...


  • KS CONSULTING PTE. LTD. Singapore

    Our client, a leading financial services company, is looking to hire Information Security personnel. The incumbent will be responsible for maintaining information security guidelines and procedures for Asia region as well as managing the security processes to enhance the security ...


  • ALLIANZ INSURANCE SINGAPORE PTE. LTD. Singapore

    **Responsibilities**: · **Information Security** · - Assist in executing Risk Management Compliance remediation plans by Chief Information Security Officer · - Lead/Assist in the documentation and planning for all security-related information, including guidelines, incident respo ...


  • ALPHAEUS PTE. LTD. Singapore

    Essential Job · **Responsibilities**: · - Enterprise security architect, with domain expertise on IAM and zero trust solutions. · - Partnering with enterprise architecture and product teams to design secure identity and access management solutions on hybrid technology platforms t ...


  • DFC RESOURCES PTE. LTD. Singapore

    Shortlisted applicants will be considered for the role of Information Security Auditor / Data Privacy Assessor / IT Auditor / Lead Auditor · Key Responsibilities: · Execution of the Information Security and Data Privacy related audit/assessment process · Exhibits appropriate judg ...


  • percept-solutions Singapore

    Develop and continually refine the security framework, information security policies, processes, procedures, and guidelines. · Ensure compliance with these policies and procedures through regular security reviews and audits, including log analysis and security assessments of cust ...


  • TECHNOPALS PTE. LTD. Singapore

    Design and deliver innovative security solutions and initiatives and manage and support security technology platforms · - Vulnerability assessments and penetration testing to assess the residual risks and mitigation plans · - Assess and advise Technology Solution Delivery and Ope ...


  • Ensign InfoSecurity Singapore

    Ensign is hiring · As Director, Information Security, you will play a crucial role in implementing Ensign's cybersecurity vision. Reporting to the Information Security Office, you will collaborate with senior management and business units on cybersecurity initiatives. You will p ...


  • ISO CONSULTANTS PTE. LTD. Singapore

    **Major Responsibilities** · - Provide leadership to Information security projects at client organizations. · - Understand the applicable legal, statutory, and regulatory requirements and ensure client compliance to those requirements. · - Perform gap analysis against ISO 27001 a ...


  • COMMERZBANK AKTIENGESELLSCHAFT Singapore

    **Job purpose**: · This position is part of the Asia information Security and Data Protection function in Singapore with focus on information security and third-party risk management. · **Key activities**: · - Assisting the Head of Information Security Asia in implementing and ma ...


  • DCS CARD CENTRE PTE. LTD. Singapore

    **Key Responsibilities**: · - First Line of Defense (1LoD), reporting to Chief Technology Officer (CTO) and working with IT team leads to identify and manage the security risks exposed to the organization. · - Review and evaluate new security technologies and practices to protect ...


  • Peoplebank Singapore

    **Information Security Officer** · - 6 months contract, possibility for extension/conversion. · - Office location: Central · **The Client** · - Investment management company · **The Opportunity** · - Drive governance of information security programs in Fund Management Company (FM ...


  • Experis Singapore

    **Responsibilities**: · - Implement, manage, and run Firewalls, IPS, anti-DDoS & Cloud WAF solutions, Encryption tool and APT solutions. · - Ensure adequate support and maintenance of security devices, with vendor support. · - Conduct regular User Account/Access and Firewall Rule ...