Senior Cybersecurity Operations Specialist (Security Services)
GovTech
| Company | GovTech |
| Category | Security |
| Location | Singapore |
| Remote | On-site (inferred) |
| Employment | Not stated |
| Level | Senior |
| Salary | Not stated by the employer |
| Posted | 25 May 2026 |
| Last verified | 9 Aug 2026 |
| Source | Employer ATS (greenhouse) |
Description
GovTech is the lead agency driving Singapore’s Smart Nation initiatives and public sector digital transformation. As the Centre of Excellence for Infocomm Technology and Smart Systems (ICT & SS), GovTech develops the Singapore Government’s capabilities in Data Science & Artificial Intelligence, Application Development, Smart City Technology, Digital Infrastructure, and Cybersecurity.
At GovTech, we offer you a purposeful career to make lives better where we empower our people to master their craft through robust learning and development opportunities all year round.
Play a part in Singapore’s vision to build a Smart Nation and embark on your meaningful journey to build tech for public good. Join us to advance our mission and shape your future with us today!
Learn more about GovTech at tech.gov.sg.
[What you will be working on]
The Cyber Security Group (CSG) is the cybersecurity arm of GovTech. CSG is committed to create a digital government that is safe and secure. CSG delivers technical and operational capabilities to counteract cyber threats, provides thought leadership on transformative cybersecurity governance and policies and to strengthen the cybersecurity posture of government agencies in a manner that is sustainable, pragmatic, and effective.
To enhance infocomm security capabilities in GovTech and the Whole-of-Government (WOG), GovTech appoints Chief Information Security Officer (CISO) teams at the various ministries to oversee infocomm security management.
As the Security Services Specialist within the Ministry CISO (MCISO) O ffice, you will be the domain expert responsible for elevating the security testing and "Secure-by-Design" capabilities across the entire Ministry Family. You will bridge the gap between high-level governance and technical implementation, ensuring that all agencies under the Ministry’s purview adopt consistent, high-quality security practices. Your role is pivotal in shifting the Ministry from a reactive security posture to a proactive, resilient one.
Key Responsibilities
Security Testing Governance & Standardisation
Establish Standards: Define and maintain the Ministry-wide framework for security testing (Vulnerability Assessment and Penetration Testing - VAPT).
SOP Development: Create and roll out Standard Operating Procedures (SOPs) to guide Agency project teams on engaging external security vendors and managing internal testing cycles.
Quality Assurance: Develop "Quality Rubrics" to help agencies evaluate the performance of pen-testers. You will conduct periodic sampling of testing reports and project involvements to ensure quality and rigour across the Ministry Family.
Advanced Technical Operations
Red Teaming & Critical Testing: Lead and execute complex Red Teaming exercises and deep-dive penetration tests on the Ministry’s high-impact systems.
Adversary Simulation: Utilise knowledge of the latest Adversary Tactics, Techniques, and Procedures (TTPs) to simulate real-world attacks, helping agencies identify blind spots in their prevention, detection and response capabilities.
Environmental Scanning: Proactively monitor the global threat landscape to identify emerging threats and evolving actor TTPs. Assess how these changes impact the Ministry's current security posture and update testing standards accordingly.
Secure-by-Design & Source Code Excellence
Secure Coding Standards: Establish Ministry-wide secure coding guidelines (e.g., based on OWASP, SANS) to ensure developers build secu