Type de contrat :
CDI

Cybersecurity Engineering Specialist

Modifiée le 06/02/2025

  • Lieu : Singapour - Singapour
  • Secteur : IT, Digital et Data
  • Numéro de l'offre : 2025-96523

Description du poste

Position

We are looking for a Cybersecurity Engineering Specialist with expertise in Security Engineering and Risk Management. Joining the IT Security Officer team within the Chief Information Security Officer (CISO) department, you will focus on reviewing and assessing the security of our corporate desktops, servers, infrastructure applications and networks. Your responsibilities will include policy enforcement, risk management and cyber risk assessments, ensuring alignment with internal information security policies, standards, and external regulatory requirements. This role requires a strong understanding of security best practices, knowledge in Cloud technologies, and hands-on experience with enterprise security tools and frameworks. You will collaborate with the Credit Agricole CIB security community across ASIA and with other global entities.


Main Responsibilities

1.    Security Engineering
Ensure security requirements are incorporated early into the systems development lifecycle of the enterprise IT infrastructure, systems, and applications.
Ensure governance through regular review, reporting and monitoring to ensure compliance with Policies and Standards, and alignment with regulatory requirements.
Evaluate and recommend security tools, technologies, and frameworks to strengthen the security posture of the bank.
Collaborate with stakeholders including IT infrastructure, DevOps, and application teams to ensure security measures and best practices are integrated throughout the development lifecycle of financial applications and services.
Prepare RFQ and evaluation criteria, Proof of concept (POC) during product evaluation. Consulting with vendors to implement security solutions.
Stay updated on emerging security threats and proactively provide solutions to safeguard IT systems from evolving risks.
2.    Governance and Risk Management
Conduct Cybersecurity Risk Assessments on IT systems and/or applications. (on-premises and cloud infrastructure).
Ensure security measures described in the risk analysis of IT projects are properly implemented.
Ensure that the audit on the Information systems has security measures in place that comply with the security policies and standards.
Identify gaps, deficiencies, or deviations on the implementation of the controls and analyse areas for improvement.
Collaborate with cross functional teams to provide evidence and insights during internal and external audits.

3.    Identity and Access Management (IAM)
Ensure Identity Access Management (IAM) policies around access management such as Role-based access control (RBAC), password management, Privileged access management (PAM) comply with security policies and standards.

Complément

4.    Data Protection
Ensure the implementation of data protection strategies are aligned with regulatory and operational requirements of the banking sector. This includes data classification, encryption, and key management (HSM, KMS).
Ensure the implementation of data loss prevention (DLP) solutions is adequate to mitigate the risk of unauthorized access, leakage, or alteration of critical data.
Ensure data access controls that are implemented follow security policies and standards, and regulatory requirements.


5.    Collaboration and Support
Work closely with cross-functional teams such as IT infrastructure, DevOps and Risk management including technology and business stakeholders, to ensure that security requirements are incorporated into system designs and day-to-day operations.
Ensure security training and awareness is provided within the bank to foster a culture of vigilance and proactive security.
Pro-active self-starter demonstrates initiative and works independently with minimum supervision.
Able to work independently and in a collaborative environment.

  • Niveau d'étude minimum
    Bac + 3 / L3
    Formation / Spécialisation
     Education
    • Bachelor’s Degree in Computer Science, Information Technology or equivalent.
    • Minimum of 5-7+ years of experience in Information Security, Governance or Risk Management.
      Professional Certifications: CISSP, CISM, CISA, Cloud or equivalent (preferred).
    • Experience in the financial services sector is highly desirable, with a strong understanding of the banking regulatory environment.

     Requirements·         Minimum of 5-7 years of experience in cybersecurity domain, with a focus on securing enterprise information systems, network security or cloud security.·         Experience in the financial services sector is highly desirable, with a strong understanding of the banking regulatory environment.·         Proficiency with security tools: IPS, VPN, Proxy, AV, EDR, vulnerability management.Technical Skills·         Hands-on experience such as network security, endpoint, EDR and data encryption.·         Strong understanding of SIEM, network security, incident response, and threat detection and response.·         Knowledge of software development lifecycle (SDLC), DevOps and integration with security assessment “Shift Left” is preferred.Soft Skills·         Analytical mindset with the ability to identify complex security challenges and devise effective solutions.·         Effective communication skills, capable of engaging both technical and non-technical stakeholders in a clear and concise manner.·         Meticulous, with a proactive approach to identifying and mitigating potential security risks.·         Ability to work independently as well as part of a collaborative, cross-functional team.
    Niveau d'expérience minimum
    6 - 10 ans
  • A propos de Crédit Agricole Corporate and Investment Bank (Crédit Agricole CIB) Crédit Agricole CIB est la banque de financement et d'investissement du groupe Crédit Agricole, 10ème groupe bancaire mondial en taille de bilan 2021 (The Banker, juillet 2022). Près de 8600 collaborateurs répartis dans plus de 30 implantations en Europe, Amériques, Asie-Pacifique, Moyen-Orient et Afrique du Nord, accompagnent les clients de la Banque dans la couverture de leurs besoins financiers à travers le monde. Crédit Agricole CIB propose à ses clients grandes entreprises et institutionnels une gamme de produits et services dans les métiers de la banque de marchés, de la banque d'investissement, des financements structurés, de la banque commerciale et du commerce international. Pionnier dans le domaine de la finance Climat, la Banque occupe aujourd'hui une position de leader sur ce segment avec une offre complète pour l'ensemble de ses clients. La majorité des postes est éligible au télétravail dans les conditions prévues par notre accord reposant sur le double volontariat (collaborateur & manager) et après une période d'intégration réussie. Crédit Agricole CIB s'engage en faveur de l'insertion des personnes en situation de handicap, ainsi ce poste est ouvert à toutes et à tous. Pour plus d'information : www.ca-cib.fr Twitter: https://twitter.com/ca_cib LinkedIn: https://www.linkedin.com/company/credit-agricole-cib/

Crédit Agricole CIB

Crédit Agricole CIB

Cybersecurity Engineering Specialist

Publiée le 06/02/2025

Type de contrat :
CDI
  • Singapour - Singapour
  • IT, Digital et Data
  • 2025-96523
Rejoignez
-nous

Nos avantages

Une grande variété de métiers

Que vous soyez étudiant, jeune diplômé ou expérimenté, nous vous offrons un environnement de travail stimulant dans lequel vous pourrez développer de nombreuses expertises.

Un environnement international

Nous sommes implantés dans plus de 30 pays à travers le monde et rassemblons plus de 100 nationalités. La dimension internationale de nos activités et la diversité des profils de nos collaborateurs font notre richesse.

Des positions de leadership

L’excellence de nos spécialistes est reconnue dans de nombreux domaines en France comme à l’international. Nous rejoindre, c’est intégrer un réseau mondial d’expertises parmi les plus pointues du marché.

- 1er financeur de l’aéronautique

- 1er émetteur de Green Bonds

Une stratégie de gestion de carrière

Nous faisons de la gestion de carrière de nos collaborateurs une priorité. Formation, mobilité, gestion des talents, nos politiques sont au service de votre potentiel.

Des équipes engagées et responsables

L’engagement de nos collaborateurs est résolument tourné vers nos clients pour le développement d’une économie durable. La lutte contre le réchauffement climatique constitue l’un des axes majeurs de notre politique RSE.

Ces offres pourraient vous intéresser !