Surbana Jurong Logo

Surbana Jurong

Cybersecurity Ops and Infrastructure Security Manager

Posted An Hour Ago
Be an Early Applicant
In-Office
Singapore, SGP
Expert/Leader
In-Office
Singapore, SGP
Expert/Leader
Manages cybersecurity operations across cloud, IoT, OT, and smart facility environments. Leads incident response, monitoring, vulnerability management, cloud security controls, ISO 27001 ISMS governance, audits, risk assessments, and compliance reporting. Oversees SIEM/SOAR operations, network segmentation, zero-trust implementation, patching, and remediation. Coordinates internal teams, vendors, auditors, and managed security providers while reporting security posture, incidents, risks, and performance to senior management.
The summary above was generated by AI

The Cybersecurity Ops and Cloud Security Manager is responsible for establishing, managing, and continuously enhancing the organisation’s cybersecurity operations capability, with a focus on cloud environments, IoT platforms, and smart facility management systems.

The role ensures that the organisation maintains operational readiness to detect, respond to, and recover from cybersecurity incidents, and that all systems comply with ISO/IEC 27001 and related standards.

This position is critical in mitigating cybersecurity risks across ongoing digital and smart infrastructure projects, where the absence of in house operational expertise would expose the organisation to significant vulnerabilities. The role will work closely with internal teams, vendors, and stakeholders to ensure that smart facility solutions are resilient, compliant, and aligned with organisational cybersecurity standards.
 

Roles & Responsibilities:

A. Cybersecurity Operations & Incident Management

  • Establish and manage end‑to‑end cybersecurity operations, including monitoring, detection, incident response, and recovery.

  • Develop, implement, and maintain a Cybersecurity Incident Response Plan (CIRP) in accordance with ISO/IEC 27035.

  • Lead and coordinate responses to cybersecurity incidents affecting cloud platforms, IoT systems, and smart facility infrastructure.

  • Ensure timely incident triage, containment, eradication, and post‑incident reviews (lessons learned).

  • Conduct regular incident response drills and tabletop exercises to ensure organisational preparedness.

 

B. ISO 27001 Compliance & Security Operations Governance

  • Establish and maintain an Information Security Management System (ISMS) aligned with ISO/IEC 27001.

  • Operationalise ISO controls, including but not limited to:

    • A.5 Information Security Policies

    • A.8 Asset Management

    • A.12 Operations Security

    • A.13 Communications Security

    • A.16 Incident Management

  • Ensure all cybersecurity operations processes are documented, audited, and continuously improved.

  • Lead internal and external audits, risk assessments, and compliance reviews.

  • Maintain risk registers, treatment plans, and security KPIs for management reporting.

 

C. Cloud Security Management

  • Define and enforce cloud security policies across platforms (e.g. Azure, AWS, Google Cloud).

  • Implement and manage:

    • Identity and Access Management (IAM)

    • Security monitoring and logging (SIEM/SOAR)

    • Data protection controls (encryption, DLP)

    • Secure configuration and posture management (CSPM)

  • Ensure secure integration between cloud systems and on‑premise / IoT environments.

  • Conduct cloud security assessments and remediation tracking.

 

D. IoT & Smart Facility Security Operations

  • Oversee operational security of IoT devices, smart building systems, and facility management platforms.

  • Monitor vulnerabilities across OT and IoT ecosystems, including BMS, SCADA, and sensor networks.

  • Implement network segmentation and zero‑trust principles across IT/OT convergence environments.

  • Establish patch management, firmware updates, and lifecycle controls for connected devices.

 

E. Threat Monitoring & Vulnerability Management

  • Establish continuous monitoring capabilities using SIEM/SOC tools.

  • Lead vulnerability scanning, penetration testing coordination, and remediation tracking.

  • Integrate threat intelligence into operational processes to proactively identify risks.

 

F. Stakeholder Management & Reporting

  • Serve as the primary POC for cybersecurity operations across projects and business units.

  • Provide regular reporting to senior management on:

    • Security posture;

    • Incident trends and response performance;

    • Compliance status and key risks.

  • Engage vendors, managed security service providers, and auditors to ensure security requirements are met.

Education Qualification

Degree in Information Technology, Computer Science, Cybersecurity, Engineering, or a related discipline.

 
Relevant Experience

Minimum 8–10 years’ experience in IT cybersecurity, with at least:

  • 5 years in security operations / SOC / incident response, and

  • Proven experience in cloud security management and ISO 27001 implementation.

Hands‑on experience managing cybersecurity operations in environments involving IoT, OT, or smart infrastructure systems is highly desirable.

 
Professional Accreditations

(Preferred)

  • CISSP, CISM, or CISA

  • GIAC, CEH, or equivalent cybersecurity certification

  • Cloud security certification (e.g. CCSP, AWS/Azure Security)

  • OT / ICS security certification (advantageous)

Professional Knowledge/ Skills

  • Proven track record in cybersecurity risk assessment, architecture review, and secure system implementation.

  • Experience working in complex, multi‑vendor digital or smart infrastructure projects is highly desirable.

  • Strong practical knowledge of:

  • Security Operations Centre (SOC) tools and processes

  • SIEM / SOAR platforms (e.g. Splunk, Sentinel, QRadar)

  • Cloud security architectures and controls

  • Incident response frameworks and playbooks

  • Deep understanding of ISO standards:

  • ISO/IEC 27001 (ISMS)

  • ISO/IEC 27002 (Security Controls)

  • ISO/IEC 27035 (Incident Management)

  • Familiarity with:

  • NIST Cybersecurity Framework

  • IEC 62443 (OT security)

  • Zero Trust Architecture principles

  • Ability to translate technical cybersecurity risks into clear business and operational implications.

  • High level of professionalism, integrity, and attention to detail.

At Surbana Jurong, we put talent, hard work, teamwork and a fun workplace together to approach problems and solve them creatively and collaboratively. Join us in making a positive impact on the world!

HQ

Surbana Jurong Singapore, Singapore, SGP Office

Singapore, Singapore

Similar Jobs

16 Minutes Ago
In-Office
Singapore, SGP
Senior level
Senior level
Artificial Intelligence • Hardware • Information Technology • Machine Learning
Design and lead leadership development programs aligned with business strategy and AI-driven workforce transformation. Identify capability gaps, create leadership journeys, manage cross-functional initiatives, establish program objectives and budgets, evaluate outcomes, and drive continuous improvement. Partner with executives, business leaders, universities, learning providers, and industry organizations. Facilitate workshops and executive forums, present strategic recommendations, and translate organizational challenges into actionable development solutions.
Top Skills: AISemiconductor Manufacturing
18 Minutes Ago
In-Office
Singapore, SGP
Internship
Internship
Artificial Intelligence • Hardware • Information Technology • Machine Learning
Develop AI Agent prototypes and Python automation solutions to improve productivity in semiconductor photo engineering workflows. Responsibilities include analyzing engineering data, identifying automation opportunities, building data-processing pipelines, creating dashboards, evaluating solution effectiveness, documenting designs, and presenting technical findings. The intern will gain experience with generative AI, large language models, data analytics, and semiconductor manufacturing engineering.
Top Skills: Ai AgentsArtificial IntelligenceData AnalyticsData ProcessingData VisualizationGenerative AiLarge Language ModelsMachine LearningPython
18 Minutes Ago
In-Office
Singapore, SGP
Expert/Leader
Expert/Leader
Artificial Intelligence • Hardware • Information Technology • Machine Learning
Leads global semiconductor manufacturing alignment for implant processes and equipment. Drives tool utilization, cost reduction, preventive-maintenance standardization, best-known-method deployment, equipment qualification, and process improvement across multiple fabs and international sites. Coordinates with engineering, operations, procurement, quality, suppliers, and central teams; leads projects, audits, training, change management, and continuous-improvement initiatives while ensuring safety and manufacturing performance.
Top Skills: Best Known Methods (Bkm)Corrective Maintenance (Cm)Equipment EngineeringImplant Process EngineeringIon ImplantationPreventive Maintenance (Pm)Seal StandardizationSemiconductor Front-End ManufacturingTool Installation And Qualification (Tiq)

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account