Security Consultant
Job Summary We are seeking an experienced Security Consultant to join our Security Architecture and Consultancy team. You will serve as a trusted advisor, guiding project teams in designing secure systems and making sound security decisions throughout the project lifecycle. Responsibilities Advise project teams on secure system design and solutioning across cloud, on-premises, and hybrid environments from concept to deployment Conduct detailed security architecture reviews to identify vulnerabilities, misconfigurations, and control gaps, providing prioritized remediation recommendations Guide teams on applying security design patterns and best practices in cloud security, application security, identity and access management, and data protection Perform structured threat modeling to identify threats and attack vectors, recommending mitigation controls aligned with system risk profiles Conduct risk assessments to evaluate and prioritize security risks, translating technical findings into clear business impacts for informed decision-making Develop and maintain security design patterns covering cloud security, application security, identity and access management, data protection, and AI system deployments Establish and update enterprise security standards and baselines for endpoint security, network security, cryptography, and AI system deployments, ensuring alignment with government policies and evolving threats Assess AI and machine learning system security across the model lifecycle, identifying risks and recommending appropriate controls Advise on secure and responsible AI system deployment, including guardrails, human oversight, and AI-specific incident response considerations Evaluate third-party AI services and large language model integrations for risks related to data residency, vendor access, model behavior, and supply chain exposure Develop AI-powered tools and workflows to improve efficiency and quality in security consultancy activities such as threat modeling, risk assessment, and architecture review Collaborate with teams to identify repetitive security tasks suitable for AI-assisted automation and prototype practical solutions Required competencies and certifications Bachelor’s degree in Computer Science, Information Security, or related field Minimum 9 years of cybersecurity experience focused on security architecture, risk assessment, and consultancy across cloud, on-premises, and hybrid environments Deep knowledge of security architecture principles and practices in cloud security, application security, identity and access management, and data protection Strong understanding of risk management methodologies, threat modeling techniques, and security compliance frameworks Working knowledge of Singapore Government security policies and frameworks, including IM8 and CCoP Familiarity with AI security concepts and security implications of AI and machine learning deployments Excellent communication and stakeholder engagement skills to present complex security concepts clearly to technical and non-technical audiences Ability to work independently, manage multiple engagements, and deliver quality outcomes with minimal supervision Preferred competencies and qualifications Professional certifications such as CISM , CRISC , CISSP , or equivalent Relevant certifications such as AWS Certified Security - Specialty or Certified Cloud Security Professional (CCSP)