Keppel Logo

Keppel

Cyber Security Engineer

Posted 3 Days Ago
Be an Early Applicant
In-Office
Singapore, SGP
Entry level
In-Office
Singapore, SGP
Entry level
Supports ICS/OT cybersecurity operations, monitoring, incident response, system backups, vulnerability and patch management, threat hunting, and security assessments. Maintains the ISMS, policies, regulatory compliance, audits, and risk assessments. Oversees cybersecurity improvements for plant systems, coordinates vendors and stakeholders, supports secure project deployments, and delivers employee security awareness training.
The summary above was generated by AI
JOB DESCRIPTION

OT / ICS Operations & Security Management

  • Support the company's ICS/OT operations, including networks, systems, endpoints, and cybersecurity tools.
  • Maintain OT system and network monitoring to ensure availability and reliability.
  • Configure, troubleshoot, and provide day-to-day operational support for cybersecurity solutions within the ICS environment.
  • Support day-to-day control system operations and troubleshoot issues to ensure reliable plant performance.
  • Monitor systems for unusual or suspicious activities and respond to cybersecurity incidents, alerts, and threats.
  • Maintain and enhance security controls for critical systems to meet operational and cybersecurity requirements.
  • Manage CII system and network backup processes to ensure business continuity and recovery readiness.

Information Security Governance & Compliance

  • Manage and maintain the organization's Information Security Management System (ISMS).
  • Conduct annual reviews and updates of ISMS policies, procedures, and supporting documentation.
  • Implement and maintain cybersecurity requirements in compliance with CSA, PSO, EMA, CCOP, ISO 27001:2022, and other applicable standards and regulations.
  • Take ownership of ISMS-related activities and continuous improvement initiatives.
  • Serve as the key liaison between the organization, customers, auditors, service providers, and internal information security stakeholders.

Risk, Vulnerability & Security Assessment

  • Conduct annual cybersecurity risk assessments for Critical Information Infrastructure (CII) systems.
  • Identify, assess, and mitigate cybersecurity risks to ensure critical systems remain secure and resilient.
  • Perform vulnerability management and patch management activities for OT/ICS environments.
  • Plan and execute cybersecurity activities including:
    • Vulnerability Assessments (VA)
    • Penetration Testing (VAPT)
    • Threat Hunting
    • Purple Team Exercises
    • Tabletop Exercises
    • Security Reviews and Assessments
  • Review cybersecurity advisories and implement mitigation measures where necessary.

Audit & Regulatory Management

  • Support and coordinate internal and external cybersecurity audits.
  • Plan and execute annual cybersecurity audit programs.
  • Coordinate CSA audits, vulnerability assessments, compliance reviews, and mandated regulatory audits.
  • Ensure audit findings are tracked, remediated, and closed within agreed timelines.
  • Support information security requirements during both internal and external audits.

Security Projects & Technology Improvement

  • Review existing technology architecture and identify vulnerabilities, weaknesses, and improvement opportunities.
  • Plan, implement, and oversee cybersecurity technology upgrades, enhancements, and major system changes.
  • Develop technical solutions, cost estimations, budgets, and proposals to meet cybersecurity requirements for internal and external projects.
  • Support the delivery, commissioning, and cybersecurity assurance of new projects and plant systems.
  • Ensure all new systems meet operational, cybersecurity, and regulatory requirements before deployment.

Vendor & Stakeholder Management

  • Work closely with business units, service providers, and external stakeholders to ensure OT cybersecurity requirements are met.
  • Collaborate with internal IT security personnel and Site Information Security Officers (SITSO) on cybersecurity initiatives.
  • Evaluate and monitor cybersecurity service performance and Key Performance Indicators (KPIs) of third-party vendors and contractors.
  • Coordinate cybersecurity activities with the EC&I Department and support departmental objectives.

Training & Awareness

  • Develop and deliver cybersecurity awareness programs and training sessions for employees.
  • Promote cybersecurity best practices across the organization.

Provide guidance and support to users on cybersecurity policies, procedures, and compliance requirements.'

JOB REQUIREMENTS

Qualifications & Experience

  • Degree or Diploma in Cybersecurity, Information Technology, Computer Engineering, Electrical & Electronic Engineering, or a related discipline.

BUSINESS SEGMENT

InfrastructurePLATFORMOperating Division
HQ

Keppel Singapore, Singapore, SGP Office

Singapore, Singapore

Keppel Singapore Office

Singapore

Similar Jobs

11 Days Ago
In-Office
Singapore, SGP
Entry level
Entry level
Fintech • Information Technology • Software • Financial Services
Monitors global cybersecurity events, security tools, vulnerabilities, and threat intelligence for a banking Security Operations Center. Investigates and escalates alerts, supports incident response, performs vulnerability assessments, maintains operational reports and metrics, manages tickets, and updates runbooks and procedures. The role also contributes to security methodology improvements, documentation, small projects, and threat, vulnerability, and incident reporting.
Top Skills: 2FaAesAixAnomaly Detection SystemsAntivirusApplication Penetration TestingDesDigital CertificatesDmzDnsFirewallsForensic AnalysisHipsIpsecLinuxNids/NipsNipsProxy DevicesRsaSsl/TlsTcp/IpThreat IntelligenceUnixVulnerability Assessment ToolsWindows
One Month Ago
In-Office
Singapore, SGP
Mid level
Mid level
Fintech • Information Technology • Software • Financial Services
Support and drive regional security projects, guide L1 incident recovery, investigate security incidents, oversee application deployments and performance, collaborate to identify/mitigate vulnerabilities, and implement automation and process improvements to strengthen the bank's security posture.
Top Skills: 2FaAixAnsibleDesDigital CertificatesDmzIpsecIsoLinuxNistOwaspPowershellPythonSslUnixWindows
One Month Ago
In-Office or Remote
Singapore, SGP
Junior
Junior
Retail • Sports
Support threat intelligence, incident analysis/response, penetration test coordination, vulnerability scanning and remediation tracking, security tool administration, dashboard maintenance, and adherence to security policies while learning and developing cybersecurity skills.
Top Skills: AzureBurp SuiteDhcpDnsGCPLinuxMetasploitNmapOwasp Top 10PowershellPythonRoutingSIEMSwitchingTcp/IpVulnerability ScannersWindowsWireshark

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account