sg happening
← Back to jobs

IT Security Analyst - Contract

Professional Contract 3+ years exp

Monthly Salary

$6,000 – $8,000

Posted

24 March 2026

Expires 7 April 2026

Description

ROLE OVERVIEW
The IT Security Executive / Analyst is responsible for managing vulnerability assessments, supporting security testing activities, administering security training programmes, and coordinating regular security review activities across IT systems and SaaS platforms. This role works closely with System Administrator (SA) OICs and User OICs to ensure timely remediation and compliance with security policies.

KEY RESPONSIBILITIES

Vulnerabilities Management

• Arrange and facilitate bi-weekly vulnerability review meetings with application SA OICs.

• Consolidate results from vulnerability platforms including AppScan, SonarQube, and Nexus Scanning.

• Perform quarterly result consolidation and seek risk acceptance for extensions to vulnerability remediation timelines.

• Track and consolidate risks and timelines from other vulnerability sources.

• Perform waiver of Nexus policy violations in SHIP-HATS when instructed.

Security Testing

• Prepare all pre-requisites (e.g. software installation, firewall requests, laptop requests) to ensure security testing commences in a timely manner.

• Provide technical resolution support for AppScan, SonarQube, Nexus, SHIP-HATS, and other security tools as required.

• Conduct network vulnerability scans using Nmap scanning tools.

Security Training

• Administer the Secure Code Warrior training platform, including enrolment of new members and consolidation of training results.

Other Security-Related Tasks

• Track and coordinate regular review activities for all IT systems with SA OICs.

• Track and coordinate regular review activities for all SaaS platforms with User OICs.

Facilitate the onboarding of non-staff in ISGGs and ensure they receive appropriate security training.

REQUIREMENTS

Education & Experience

• Degree in Information Technology, Cybersecurity, Computer Science, or a related field.

• Minimum 1–3 years of experience in an IT security or related role.

Technical Skills

• Hands-on experience with vulnerability management tools such as AppScan, SonarQube, or Nexus.

• Familiarity with SHIP-HATS and CI/CD security pipelines.

• Experience conducting network vulnerability scans using Nmap or equivalent tools.

• Basic understanding of secure coding practices and OWASP principles.

Soft Skills

• Strong coordination and stakeholder management skills.

• Meticulous attention to detail with the ability to track and report on multiple concurrent issues.

• Good written and verbal communication skills.

• Ability to work independently and manage priorities in a fast-paced environment.