The Cyber Security Group (CSG) is the cybersecurity arm of GovTech. CSG is committed to create a digital government that is safe and secure. CSG delivers technical and operational capabilities to counteract cyber threats, provides thought leadership on transformative cybersecurity governance and policies and to strengthen the cybersecurity posture of government agencies in a manner that is sustainable, pragmatic, and effective.
To enhance infocomm security capabilities in GovTech and the Whole-of-Government (WOG), GovTech appoints Chief Information Security Officer (CISO) teams at the various ministries to oversee infocomm security management.
Reporting to the Ministry CISO (MCISO), you will be the primary architect of the Ministry’s security governance and risk management framework. You will ensure that all agencies within the Ministry Family operate under a unified, effective, and modern security standard. Your mission is to transform GRC from a compliance-heavy exercise into a strategic enabler. You will establish the frameworks that allow the Ministry Family to adopt new technologies with confidence, moving away from a "risk-averse" posture toward a "risk-informed" one. You will ensure that risk management is deeply integrated into the lifecycle of every digital system, from web applications to critical Operational Technology (OT) environments.
1. Incident Management & Response Standardisation
Unified Playbooks: Establish and maintain Ministry-wide Incident Response (IR) playbooks for diverse threat scenarios (e.g., Ransomware, Data Exfiltration, Cloud breaches).
Crisis Leadership: Provide direct guidance and technical oversight to agencies during High and Critical severity incidents, ensuring timely reporting and effective containment.
Incident Governance: Work with Agency CIOs and CISOs to establish clear command structures and roles, empowering leaders to make difficult, high-stakes decisions during a crisis.
2. Operational Readiness & Resiliency Testing
Advanced Exercises: Design and oversee high-quality Tabletop Exercises (TTX) for various stakeholders (system owners, SIROs, CISOs, CIOs). You will evaluate external vendors to ensure these exercises are realistic, comprehensive, and push the Ministry’s limits.
Chaos Testing: Drive the adoption of chaos testing across agencies to validate the adequacy of resiliency plans and identify hidden failure points in critical systems.
Capability Building: Continuously assess the operational readiness of the Ministry Family and lead initiatives to bridge identified gaps in incident management.
3. Continuous Monitoring & Asset Governance
Centralised Monitoring: Ensure all Ministry systems are effectively onboarded to central monitoring services. Work with system owners on overcoming challenges encountered during onboarding.
Asset Visibility: Partner with Agency CIOs to maintain a robust and updated IT asset inventory, ensuring that "you cannot protect what you do not know."
Custom Threat Scenarios: Provide expert guidance for agencies with unique threat use cases or specialised systems (e.g., OT/ICS) that fall outside standard monitoring coverage, helping them build bespoke detection capabilities.
4. Vulnerability & Attack Surface Management
Full-Spectrum SOPs: Establish Standard Operating Procedures for vulnerability management across on-premises, cloud (GCC), and OT environments. Ensure that there are proper procedures for managing unpatched vulnerabilities.
Attack Surface Scanning: Ensure agencies deploy adequate internal and external scanning tools. You will oversee the workflow for finding prioritisation and validate that patches are applied and effective.
5. Advocacy & Education
Resilience Culture: Educate agency stakeholders on the critical importance of Response and Business Continuity Planning (BCP).
Stakeholder Inculcation: Foster a mindset of "assumed breach," ensuring project owners and agency leaders understand their roles in threat monitoring and incident management.