Principal Consultant for Cybersecurity (Data Centers and Critical Facilities)

Singapore 23 months agoFull-time External
Negotiable
We are currently working with a Japan centric Data Centre Design and Build Operator with strong expansion growth strategy to bring in a talented Cybersecurity Principle Consultant with Data Centre experience who is dependable and possesses a technical and commercial mindset to support the enhancement of cybersecurity rating score for their suite of Data Centers in Japan. This role will be based in Singapore or Japan. If you are successful in this role, you will have the opportunity to lead an exciting, energetic team with a strong, open culture with a strong desire to grow aggressively, regionally. Key Responsibilities: Cybersecurity: - Serve as the primary point of contact and first responder for cybersecurity concerns related to data center construction and operations. - Conduct security risk assessments, formulate risk treatment plans, and provide security requirements based on data classification and operating environment. - Support vendor due diligence and contribute to defining third-party risk management efforts. - Review security testing reports, including vulnerability assessments, penetration testing, and secure code reviews. - Track and monitor security vulnerabilities, collaborating with the team to plan remediation or implement controls. - Assist in defining and managing cybersecurity policies, standards, and guidelines for legal, regulatory, and general IT compliance. - Manage enterprise security solutions deployed within data centers with vendor support. - Oversee cybersecurity awareness activities, such as workshops, phishing campaigns, BCP exercises, and tabletop exercises. - Continuously monitor the effectiveness of implemented cyber controls. - Support internal and external audits (e.g., ISO) and other IT governance initiatives. - Ensure detailed design plans align with company’s overall Basis of Design (BOD) requirements. - Lead discussions with 3rd Party Peer Review consultants. Team Collaboration: - Collaborate closely with assigned ECMS engineers and the operations team. - Work with vendors on security performance metrics and management reporting. - Cultivate strong relationships with internal and external stakeholders. - Assist businesses in performing business impact analysis and maintaining the cybersecurity risk register. Tenant Management: - Lead or support monthly/quarterly calls with tenants. Governance: - Report to, and collaborate closely with, the Head of Design & Build. - Work with the Operations Director to produce Monthly Status Reports for management review. - Implement risk management initiatives and maintain an up-to-date Risk Register. - Highlight risks or issues to the Management for preemptive actions and decisions. Key Requirement: - Qualified degree in Information Technology or related fields. - Prior experience in data center design or construction is highly desired but not mandatory. - Proficiency in reading and understanding Basis of Design (BOD) documentation, Technical Design Requirements & Specifications, and Basic and Detailed Design Construction Drawings. - Extensive technical knowledge of network topologies, networking equipment, and tools. - Good understanding of threat identification and cybersecurity protections. - Strong hands-on experience with FortiGate, Cisco products, and relevant certifications (CCNA, CCNP, FNSE, CEH). - Knowledge of LAN, SDWAN, WAN, MPLS, and IoT networking. - Certifications such as CISSP/CISM/CISA or equivalent are encouraged. - Experience in managing security solutions like Enterprise Antivirus Solution, PAM, 2FA, or similar security technology stack. - Experience supporting Cloud Environments (e.g., AWS or Azure). - Ability to work with distributed teams, ensuring real-time awareness of security posture and baseline. - Effective communication of complex concepts across different audiences and organizational levels. - Project management experience is advantageous. - Familiarity with international standards such as ISO27001, NIST, etc., is advantageous. - Minimum of 10 years of experience in relevant cybersecurity fields. If you are interested to find out more, please apply now to explore more