Keppel Ltd.

Cyber Security Engineer

Keppel Ltd.  •  Singapore, SG (Onsite)  •  3 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

OT / ICS Operations & Security Management

  • Support the company's ICS/OT operations, including networks, systems, endpoints, and cybersecurity tools.
  • Maintain OT system and network monitoring to ensure availability and reliability.
  • Configure, troubleshoot, and provide day-to-day operational support for cybersecurity solutions within the ICS environment.
  • Support day-to-day control system operations and troubleshoot issues to ensure reliable plant performance.
  • Monitor systems for unusual or suspicious activities and respond to cybersecurity incidents, alerts, and threats.
  • Maintain and enhance security controls for critical systems to meet operational and cybersecurity requirements.
  • Manage CII system and network backup processes to ensure business continuity and recovery readiness.

Information Security Governance & Compliance

  • Manage and maintain the organization's Information Security Management System (ISMS).
  • Conduct annual reviews and updates of ISMS policies, procedures, and supporting documentation.
  • Implement and maintain cybersecurity requirements in compliance with CSA, PSO, EMA, CCOP, ISO 27001:2022, and other applicable standards and regulations.
  • Take ownership of ISMS-related activities and continuous improvement initiatives.
  • Serve as the key liaison between the organization, customers, auditors, service providers, and internal information security stakeholders.

Risk, Vulnerability & Security Assessment

  • Conduct annual cybersecurity risk assessments for Critical Information Infrastructure (CII) systems.
  • Identify, assess, and mitigate cybersecurity risks to ensure critical systems remain secure and resilient.
  • Perform vulnerability management and patch management activities for OT/ICS environments.
  • Plan and execute cybersecurity activities including:
  • Vulnerability Assessments (VA)
  • Penetration Testing (VAPT)
  • Threat Hunting
  • Purple Team Exercises
  • Tabletop Exercises
  • Security Reviews and Assessments
  • Review cybersecurity advisories and implement mitigation measures where necessary.

Audit & Regulatory Management

  • Support and coordinate internal and external cybersecurity audits.
  • Plan and execute annual cybersecurity audit programs.
  • Coordinate CSA audits, vulnerability assessments, compliance reviews, and mandated regulatory audits.
  • Ensure audit findings are tracked, remediated, and closed within agreed timelines.
  • Support information security requirements during both internal and external audits.

Security Projects & Technology Improvement

  • Review existing technology architecture and identify vulnerabilities, weaknesses, and improvement opportunities.
  • Plan, implement, and oversee cybersecurity technology upgrades, enhancements, and major system changes.
  • Develop technical solutions, cost estimations, budgets, and proposals to meet cybersecurity requirements for internal and external projects.
  • Support the delivery, commissioning, and cybersecurity assurance of new projects and plant systems.
  • Ensure all new systems meet operational, cybersecurity, and regulatory requirements before deployment.

Vendor & Stakeholder Management

  • Work closely with business units, service providers, and external stakeholders to ensure OT cybersecurity requirements are met.
  • Collaborate with internal IT security personnel and Site Information Security Officers (SITSO) on cybersecurity initiatives.
  • Evaluate and monitor cybersecurity service performance and Key Performance Indicators (KPIs) of third-party vendors and contractors.
  • Coordinate cybersecurity activities with the EC&I Department and support departmental objectives.

Training & Awareness

  • Develop and deliver cybersecurity awareness programs and training sessions for employees.
  • Promote cybersecurity best practices across the organization.

Provide guidance and support to users on cybersecurity policies, procedures, and compliance requirements.'

JOB REQUIREMENTS

Qualifications & Experience

  • Degree or Diploma in Cybersecurity, Information Technology, Computer Engineering, Electrical & Electronic Engineering, or a related discipline.

BUSINESS SEGMENT

Infrastructure

PLATFORM

Operating Division

Keppel Ltd.

About Keppel Ltd.

Keppel is a global asset manager and operator with strong expertise in sustainability-related solutions spanning the areas of infrastructure, real estate and connectivity. Headquartered in Singapore, Keppel operates in more than 20 countries worldwide, providing critical infrastructure and services for renewables, clean energy, decarbonisation, sustainable urban renewal and digital connectivity.

Keppel creates value for investors and stakeholders through its quality investment platforms and diverse asset portfolios, including private funds and listed real estate and business trusts, and has a total portfolio of S$91 billion of funds under management.

Industry
Finance & Insurance
Company Size
1,001-5,000 employees
Headquarters
Singapore , SG
Year Founded
Unknown
Social Media