Why Work at Lenovo
We are Lenovo. We do what we say. We own what we do. We WOW our customers.
Lenovo is a US$57 billion revenue global technology powerhouse, ranked #248 in the Fortune Global 500, and serving millions of customers every day in 180 markets. Focused on a bold vision to deliver Smarter Technology for All, Lenovo has built on its success as the world's largest PC company with a full-stack portfolio of AI-enabled, AI-ready, and AI-optimized devices (PCs, workstations, smartphones, tablets), infrastructure (server, storage, edge, high performance computing and software defined infrastructure), software, solutions, and services. Lenovo's continued investment in world-changing innovation is building a more equitable, trustworthy, and smarter future for everyone, everywhere. Lenovo is listed on the Hong Kong stock exchange under Lenovo Group Limited (HKSE: 992) (ADR: LNVGY).
Want more jobs like this?
Get jobs in Singapore delivered to your inbox every week.
This transformation together with Lenovo's world-changing innovation is building a more inclusive, trustworthy, and smarter future for everyone, everywhere. To find out more visit www.lenovo.com, and read about the latest news via our StoryHub.
Description and Requirements
You Will:
• To be the first person and POC for all security incidents
• The ITSM shall inform the parties listed in the Technical SOP within the Expected Response Timeline of the Incident Management.
• The information to be provided shall include the incident reference number, description, date and time and the impact (including who had been affected) of the incident.
• To administer, maintain and assess the implementation of security processes.
• To develop System Owner support for acquiring and sustaining adequate resources for incident response.
• To be the corporate intermediary for coordinating communications between System Owner and incident response personnel.
• To serve as a trusted custodian of incident information for ensuring the preservation and admissibility of evidence.
• To ensure the compliance with the required IT security policies.
• To perform the logs review in all security system manager by AFM team
• To review system logs and to work with agency manager and onsite technical team on necessary actions
• To do regular policy check and review, ensure all are in line with agency requirements.
• To promote IT security awareness and responsibility.
• To participate in incident response table-top exercises, simulation and drills either conducted internally by the Contractor or as required by GovTech.
Resolution for Preventing Recurrence of Security Incidents
• For cases where workarounds are implemented, the ITSM shall identify the root causes and implement permanent resolutions according to the Problem Management process.
• To assist with management/containment/remediation/eradication of security incident
• To assist with Risk assessment
• The ITSM shall be responsible to close all IT security incidents in accordance with the Incident Management process.
• For every IT security incident, the ITSM shall submit to the Representative an incident report in draft within one (1) day and a final version within three (3) days of incident resolution, unless otherwise agreed by the Representative.
• The incident record shall be closed only when the incident report is accepted by the Representative. The Representative reserves the right to verify the details in the incident report against the associated incident record maintained by the ITSM. The incident report shall be in the format defined by the Representative.
He/She is required to participate in following audit activities performed by 3rd party auditors or internal auditors:
(a) IT Security Review
(b) IT Vulnerability Assessment
(c) IT Security Penetration Testing
(d) IT Security Compliance Review
You Bring:
• Minimum 5-7 years of experience in Cyber Security Management
• Must have vulnerability management systems hands on (Tenable SC+, Nessus Manager, DLP, Insider security and Splunk )
• Must have certification :CEH, CISSP or CISA or CISM
• Preferred certifications: PMP, CISM, or other professional security certification added advantage
Preferred skills:
• Application Security
• Open Web Application Security
• Penetration Testing
• Identity Management
• Federal Information Processing Standards (Fips)
• Federal Information Security Management Act
#LPS
Additional Locations:
* Singapore - Central Singapore - Singapore
* Singapore - Central Singapore - SINGAPORE