ALTEN Group is a world leader in Engineering and Technology consulting services providing outsourced Engineering, R&D, and IT Services for different industries such as Transportation, Defence, Energy and Security with 55,000 engineers in nearly 35 countries. ANOTECH is the subsidiary of the Group delivering ALTEN's Engineering Services in Singapore.
As a Cybersecurity Operations Lead, you will drive the mission-critical security operations/services in a 24/7 environment. Deeply integrated into operation and service team, this role is responsible for threat monitoring, incident response, vulnerability management, providing world-class security services/advisory to customers, ensuring the solution environment stay resilient and compliance to IM8 governance standards and cybersecurity practices.
You will be the primary bridge between our security engineers, operations team, internal stakeholders and our valued customers. You will ensure accurate risk communication, deliver clear remediation guidance, manage security infrastructure, drive continuous improvements and promote cybersecurity best practices internally and externally with poise and professionalism.
Responsibilities
· Threat Monitoring &Incident Response
Ø Oversee day-to-day security monitoring using SIEM and endpoint protection tools.
Ø Lead incident response, containment, eradication, and root cause analysis for cybersecurity events.
Ø Ensure clear incident classification, escalation workflows, and communication protocols.
Ø Leverage and share up-to-date threat intelligence with both internal stakeholders and customers to proactively safeguard digital assets.
· Vulnerability & Patch Management
Ø Primary coordinator/lead on vulnerability assessments and penetration testing engagement with third-party agencies and internal vulnerability scan exercise in regular frequencies.
Ø Manage remediation of vulnerabilities across servers, network devices, middleware, containers and security appliances in timely manner compliance to regulatory mandate
Ø Ensure timely patching cycles across all environments. Clear communication of findings, risk and action plans for both technical and non-technical stakeholders/customers.
· Security Infrastructure& System Hardening
Ø Implement, configure, and maintain security technologies (firewalls, IDS/IPS, HSM, PAM).
Ø Oversee OS, application, and network hardening (RHEL, Windows Server, Kubernetes).
Ø Review and approve security architecture designs for new components and projects.
· Privileged Access Management
Ø Govern privileged access across Active Directory domains.
Ø Ensure segregation of duties, emergency access procedures, and periodic access reviews.
· Governance & Compliance
Ø Enforce compliance with IM8 cybersecurity policies and standards.
Ø Drive audit readiness, maintain risk registers, and track remediation progress.
· Team Leadership
Ø Liaise with cross function teams
Ø Ensure clear documentation, SOPs, and knowledge transfer for all security activities.
Ø Drive continuous training and certification for team members.
Ø Deliver workshop, training or briefing to enhance the cybersecurity posture of internal stakeholder and customers
Requirements
· Bachelor’s degree in Information Security, Computer Science, Engineering, or related discipline.
· Minimum 5 years of proven experience in cybersecurity or information security roles supporting mission-critical operations, preferably in the public sector.
· Strong competency in operating system security (RHEL, Windows Server), network security, and Kubernetes security.
· Hands-on experience with two or more tools such as SIEM (LogRhythm), Vulnerability Scanner (Nessus), IAM/PAM (BeyondTrust /CyberArk), HSM, TLS/PKI, Firewalls (Check Point, Palo Alto), IDS/IPS is a must.
· CISSP, CISM, CEH or equivalent preferred.
· Security principles (CIA, defense in depth, least privilege).
· Networking and OS fundamentals.
· Identity & Access Management, cryptography basics.
· Application security fundamentals (OWASP Top 10, secure coding principles).
· Incident response and IM8 compliance knowledge.
· Strong composure under pressure and ability to lead during incidents.
· Excellent communication skills (written and spoken).
· High integrity, attention to detail, and accountability.
· Proactive, collaborative, and able to manage cross-functional coordination.
· Proven track-record in customer-facing experience in cybersecurity domain will be a strong plus.