Ministry Chief Information Security Officer (MCISO)
To enhance infocomm security capabilities in GovTech and the whole-of-government, GovTech will be appointing Chief Security Information Officers (CISO) at the various ministries to oversee infocomm security management. The CISO is responsible for the planning, development and ensuring all implementation of information security strategies and related policies. He/She is also required to follow, implement and refine organisational security policies and best practices in line with regulatory requirements and whole-of-government directions.
What to Expect:
- Obtain executive support and provide leadership for the Ministry and its agencies within the information security sphere through development of appropriate cyber security strategies and action plans
- Formulate information security goals and establish policies, standards and procedures in line with whole-of-government cyber security directions
- Develop the culture of appropriate cyber security risk assessment and risk acceptance across stake holders to end users and ICT professional
- Ensure cyber security compliance to whole-of-government policies and standards
- Review, endorse, and align information security and develop risk management and mitigation plans
- Advise management on the appropriate cyber security solutions and technologies to be deployed
- Align IT needs with the strategic cyber security direction of whole-of-government
- Implement change management process to keep up with evolving cyber threat landscape
How to Succeed:
- Degree in Computer Science, Information Systems, Engineering or equivalent
- Strong interpersonal and stakeholder management skills
- Ability to work with cross-functional, multi-disciplined team to formulate, institute and monitor security policies and procedures
- At least 10 years of management experience related to information security and working knowledge of ICT operations, security policies and procedures
- Good understanding of both IT and business processes and the relationship between them
- Preferably ‘Certified Information Systems Security Professional’ (CISSP), or ‘Certified Information Systems Auditor’ (CISA) or ‘Certified Information Security Manager’ (CISM) certifications
- Singaporeans only