Application Security Officer (Cloud Security, Cyber-Security, DevOps Infrastructure Security)

Application Security Officer (Cloud Security, Cyber-Security, DevOps Infrastructure Security)
See all offers

Application Security Officer (Cloud Security, Cyber-Security, DevOps Infrastructure Security)

Asia - Singapore
Digital and Information System
Permanent
7/18/2024
APPLY

About the role

Job Description:

  • Manage the risks of the Cloud-related projects
  • Act as an IT Risk, Continuity & CyberSecurity Lead on the division's strategic transformation Program
  • With a thorough understanding of the organization's technology and IT systems, planning, researching, and designing security architectures, to identify IT security risks in advance
  • Ensure the compliance level of the applications with the Security architecture standards including Third-party and cloud security risks.
  • Participate and follow-up on different transversal initiatives to improve the security standpoint
  • Leveraging on a deep knowledge of Security standards such as NIST, CIS, ISO2700x, ensure the compliance with the IT security requirements
  • Ensure the compliance with the Third-party Technology risks and the Cloud security
  • Ensure the solutions of Data Management, Data analytics and data science solutions are implemented with the Group security architecture requirements (e.g. Tableau, PowerBI, AI and other Data analytics solutions).
  • Alignment on the objectives and means, contribution to the different global reporting (WM Cybersecurity Committee, Project Architecture and Security validation committees, Application Security Dashboard).
  • Coordination with the Global security teams concerning integration of banking assets within production sites.
  • Participate in the deployment of new security practices and DevSecOps pipeline
  • Ensure that SSDLC practices are well followed

Job Description:

  • Manage the risks of the Cloud-related projects
  • Act as an IT Risk, Continuity & CyberSecurity Lead on the division's strategic transformation Program
  • With a thorough understanding of the organization's technology and IT systems, planning, researching, and designing security architectures, to identify IT security risks in advance
  • Ensure the compliance level of the applications with the Security architecture standards including Third-party and cloud security risks.
  • Participate and follow-up on different transversal initiatives to improve the security standpoint
  • Leveraging on a deep knowledge of Security standards such as NIST, CIS, ISO2700x, ensure the compliance with the IT security requirements
  • Ensure the compliance with the Third-party Technology risks and the Cloud security
  • Ensure the solutions of Data Management, Data analytics and data science solutions are implemented with the Group security architecture requirements (e.g. Tableau, PowerBI, AI and other Data analytics solutions).
  • Alignment on the objectives and means, contribution to the different global reporting (WM Cybersecurity Committee, Project Architecture and Security validation committees, Application Security Dashboard).
  • Coordination with the Global security teams concerning integration of banking assets within production sites.
  • Participate in the deployment of new security practices and DevSecOps pipeline
  • Ensure that SSDLC practices are well followed

Your profile

This is some text inside of a div block.

Job Requirements:

  • At least Bachelor's Degree in Computer Science or related field
  • 5-8 years' experience in information security and IT risk management
  • Experience in evaluation and design of technical architectures and processes
  • Functional as well as technical knowledge of the common architecture and Cybersecurity frameworks and solutions
  • Strong knowledge in secure development and SSDLC processes
  • Knowledge of the Norms and Standards of the banking and cybersecurity industry
  • Banking Knowledge and understanding of Wealth Management specificities
  • Strong knowledge on Cloud security
  • Network protocols and network connectivity concepts; Firewall and Internet technologies
  • Secure application design and architecture principles - including DevSecOps tools and practices (CI/CD)
  • Encryption and Key Management techniques
  • Technical proficiency in various Operating Systems (Linux, AIX, Windows, AS400) and Databases (Oracle, MSSQL, PostGreSQL, MongDB)   
  • Knowledge of understanding digital transformation and mobile technologies and Cloud (Containers Docker, Kubernetes)
  • Deep understanding of cybersecurity threats and remediation options
  • IT Security Risk Assessment and Risk Management
  • Knowledge of emerging technologies (NFT, encryption)
  • Knowledge in technologies like OAuth, Single Sign On, API based approach, TDD, BDD
  • Advanced IT security certifications: CISSP / CISM / SANS Certification
  • Experience in Operational Risk and Permanent Control is an advantage

About Antaes

Founded in 2007, Antaes is a Swiss management and technology consulting company ranked among the top 15 consulting firms in Switzerland. We employ over 300 experienced consultants who share our passion.

 

With offices in Switzerland, Singapore, Hong Kong and France, we support our Swiss and international customers at clients in the following areas:

  • Organization and transformation consulting
  • Industrial Engineering
  • Information Systems Management

 

By joining our teams you will discover :

  • A dynamic team in a start-up spirit
  • Human support and career development monitoring
  • Challenges to help develop your network
  • Events: team building, meet-up, workshop, Winter Event ...
  • An @HappyAtWork certified company with a committed CSR policy (Ecovadis2023 Gold Medal)

APPLY
Our other offers

Logistics Data Analyst

Switzerland - Geneva
Permanent
Industrial Engineering and Life-Science

We are recruiting a Logistics Data Analyst (M/F) on a permanent contract to join our expertise center as part of a large-scale, long-term project to expand our partner's activities.

 

As a Logistics Data Analyst, your responsibilities will include:

 

  • Participate in logistics initiatives and projects by providing analytical expertise through sizing studies and the definition of key performance indicators.
  • Understand business challenges in interaction with operational teams and clients in order to identify, formalize, and analyze needs, constraints, and objectives.
  • Map logistics flows by modeling physical and digital flows, and identifying data collection points and associated performance indicators.
  • Extract data from source systems (SAP, MES, LES, industrial equipment).
  • Process, structure, and ensure the reliability of data in order to guarantee its quality, consistency, and relevance for analysis.
  • Conduct in-depth analyses to identify trends and optimization levers, or to meet project requirements (choice of concepts, logistical organization).
  • Design dashboards and indicators for management and monitoring using Tableau.
  • Present results, analyses, and recommendations in a clear, concise, and impactful manner to facilitate decision-making.
See the offer

Industrial Metrologist - Dimensional Control M/F

Switzerland - Vaud
Permanent
Industrial Engineering and Life-Science

We are recruiting an Industrial Metrologist - Dimensional Control (M/F) on a permanent contract to join our industrial expertise division, as part of a large-scale, long-term project to expand our partner's activities.

 

As an Industrial Metrologist - Dimensional Control, your responsibilities will include:

 

  • Perform physical measurements using three-dimensional inspection equipment such as coordinate measuring machines (CMMs), laser trackers, and Faro polyarticulated measuring arms.
  • Ensure the programming, validation, and optimization of 3D measurement programs, ensuring their performance and compliance with metrological requirements.
  • As a leader in three-dimensional metrology, you also play a training role for internal teams. In this capacity, you assist technicians in learning how to use 3D equipment and applying best measurement practices.
  • Develop and implement metrology procedures, instruction sheets, and related monitoring documents.
  • Write inspection reports by analyzing, interpreting, and utilizing measurement results and statistical data.
  • You will occasionally visit suppliers in Europe (approximately 10% of the time), where you will carry out checks during the manufacturing process, analyze non-conformities, and write the associated reports.
See the offer

Watchmaking Product Industrialization Project Manager F/H

Switzerland - Geneva
Permanent
Industrial Engineering and Life-Science

We are recruiting a Watchmaking Product Industrialization Project Manager on a permanent contract to join our Industrial Expertise division as part of a large-scale, long-term project to expand the activities of our partner in Geneva.

 

As a Watchmaking Product Industrialization Project Manager, your responsibilities will include :

 

 

  • Plan and lead technical convergence reviews, including process plans, controls and capabilities.
  • Develop and industrialize ranges and bills of materials for new products.
  • Manage activity planning and risk management.
  • Unite the resources involved.
  • Manage and implement product and process evolutions, adapting the governance of series during their life cycle.
  • Capitalize on best practices and contribute to the development of reference systems.
  • Manage the model plan approach in line with industrial tool capacities.
See the offer

Cloud Architect

Asia - Singapore
Permanent
Consulting and Business Management

Responsibilities

  • Maintain the Division/Department architecture reference documentation along with the changes brought about by projects:
  1. IT system diagrams (Division level, or per sub-block)
  2. Application referential (with the help of Application Owners)
  3. Division-level principles and related non-conformities and remediation plans
  4. Obsolescence KPIs
  • Lead the solution architecture on the projects he/she is assigned to:
  1. Supporting the Project Manager/Business Analysts during solution ideation, design, and implementation
  2. Collaborating with application teams and business analysts/tech leads of impacted applications to design the solution
  3. Ensuring that projects align with our architecture principles and IT standards
  4. Ensuring the solution is optimized for running on our IBM Private Cloud
  • Support project managers and tech leads throughout the architecture validation process by:
  1. Leading the development of consistent architecture documentation
  2. Presenting projects to the architecture validation committee
  3. Serving as the reference point for a set of applications for support/development activities
  4. Supporting the architecture process until go-live
  5. Bringing cloud and architecture awareness to application teams
  • Being the reference architect on a set of applications for support/evolution activities (having low architecture impacts), before and after they are migrated into the Cloud platform.
  • Collaborate with the following roles:
  1. Project managers/Business analysts of major cross-functional projects to which he/she is assigned
  2. Tech leads/Developers, to understand the architecture of the applications/screens and analyze potential issues
  3. Application owner, to update the reference information on applications
  4. Engineering and Production team, to check availability/compatibility with infrastructure/Cloud services
  5. Enterprise Architects, to facilitate the review and validation process.
  • Ensure that the reference documentation is updated throughout the changes brought about by projects:
  1. Application reference
  2. IT architecture diagrams and documents
  3. Application non-conformities and remediation plans
  4. Architecture principles, checklist, guidelines
  • Provide and share specific expertise on our Cloud capabilities and in selected technical areas
  • Participate in studies and proof-of-concepts with the business before a project is launched
See the offer

Senior Frontend Developer - Angular

Asia - Singapore
Permanent
Consulting and Business Management

We are seeking a hands-on Software Developer to design, implement, and refine features across the product. You will collaborate with peers to deliver maintainable software, participate in code reviews, and mentor junior developers. You will also help evolve the codebase, estimate development effort, and contribute to end-to-end delivery from feature inception to production.

Key Responsibilities

  • Develop and test new features for our product, ensuring quality and maintainability.

  • Participate in constructive design discussions to deliver practical, maintainable solutions.

  • Make recommendations on how to evolve the code base to improve performance, reliability, and scalability.

  • Accurately estimate development effort and contribute to sprint planning.

  • Fix bugs promptly and implement robust fixes.

  • Participate in peer code reviews to share knowledge and ensure code quality.

  • Mentor junior developers to help grow technical capability within the team.

Functional and Cross-Functional Competencies

  • Familiar with CI/CD of Frontend Deployment.

  • Familiar with the banking domain (or tailor to your domain if not banking).

See the offer
APPLICATION FORM
* required fields
By submitting this form, you acknowledge that you have read our website's privacy policy, which includes your rights regarding your personal data.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Application Security Officer (Cloud Security, Cyber-Security, DevOps Infrastructure Security)

Asia - Singapore
Digital and Information System
Permanent

About the role

This is some text inside of a div block.

Job Description:

  • Manage the risks of the Cloud-related projects
  • Act as an IT Risk, Continuity & CyberSecurity Lead on the division's strategic transformation Program
  • With a thorough understanding of the organization's technology and IT systems, planning, researching, and designing security architectures, to identify IT security risks in advance
  • Ensure the compliance level of the applications with the Security architecture standards including Third-party and cloud security risks.
  • Participate and follow-up on different transversal initiatives to improve the security standpoint
  • Leveraging on a deep knowledge of Security standards such as NIST, CIS, ISO2700x, ensure the compliance with the IT security requirements
  • Ensure the compliance with the Third-party Technology risks and the Cloud security
  • Ensure the solutions of Data Management, Data analytics and data science solutions are implemented with the Group security architecture requirements (e.g. Tableau, PowerBI, AI and other Data analytics solutions).
  • Alignment on the objectives and means, contribution to the different global reporting (WM Cybersecurity Committee, Project Architecture and Security validation committees, Application Security Dashboard).
  • Coordination with the Global security teams concerning integration of banking assets within production sites.
  • Participate in the deployment of new security practices and DevSecOps pipeline
  • Ensure that SSDLC practices are well followed

Your profile

This is some text inside of a div block.

Job Requirements:

  • At least Bachelor's Degree in Computer Science or related field
  • 5-8 years' experience in information security and IT risk management
  • Experience in evaluation and design of technical architectures and processes
  • Functional as well as technical knowledge of the common architecture and Cybersecurity frameworks and solutions
  • Strong knowledge in secure development and SSDLC processes
  • Knowledge of the Norms and Standards of the banking and cybersecurity industry
  • Banking Knowledge and understanding of Wealth Management specificities
  • Strong knowledge on Cloud security
  • Network protocols and network connectivity concepts; Firewall and Internet technologies
  • Secure application design and architecture principles - including DevSecOps tools and practices (CI/CD)
  • Encryption and Key Management techniques
  • Technical proficiency in various Operating Systems (Linux, AIX, Windows, AS400) and Databases (Oracle, MSSQL, PostGreSQL, MongDB)   
  • Knowledge of understanding digital transformation and mobile technologies and Cloud (Containers Docker, Kubernetes)
  • Deep understanding of cybersecurity threats and remediation options
  • IT Security Risk Assessment and Risk Management
  • Knowledge of emerging technologies (NFT, encryption)
  • Knowledge in technologies like OAuth, Single Sign On, API based approach, TDD, BDD
  • Advanced IT security certifications: CISSP / CISM / SANS Certification
  • Experience in Operational Risk and Permanent Control is an advantage
Our positions are open to people who have been recognized as disabled workers. T&S Group promotes diversity and equality in the workplace. All qualified M/F candidates are considered for employment on an equal basis.

About Antaes

Founded in 2007, Antaes is a Swiss management and technology consulting company ranked among the top 15 consulting firms in Switzerland. We employ over 300 experienced consultants who share our passion.

 

With offices in Switzerland, Singapore, Hong Kong and France, we support our Swiss and international customers at clients in the following areas:

  • Organization and transformation consulting
  • Industrial Engineering
  • Information Systems Management

 

By joining our teams you will discover :

  • A dynamic team in a start-up spirit
  • Human support and career development monitoring
  • Challenges to help develop your network
  • Events: team building, meet-up, workshop, Winter Event ...
  • An @HappyAtWork certified company with a committed CSR policy (Ecovadis2023 Gold Medal)