Back to jobs Featured

Contracting_ IT Security & Infrastructure Manager

The Role:

The IT Security & Infrastructure Manager is a hands-on professional responsible for securing and optimizing the enterprise IT environment and supporting the seamless integration of new platforms as the business grows.
This role will focus on implementation and operational improvement of IT infrastructure, information security policies, user access protocols, and system integration across cloud tools (Google Workspace, CRM, wallets, trading systems, KYC platforms, etc.).
This role is suitable for someone who is comfortable working independently in a lean environment, coordinating with external IT vendors, and translating technology requirements into practical solutions for the business. This role may evolve into a full-time Information Security Manager position depending on organisational needs and candidate performance.

Key Responsibilities:

IT Security & Governance
●Support development of IT enterprise system that complies with MAS technology risk management and cyber hygiene requirements.
●Design and enforce core IT security policies and controls for data, access, passwords, and remote work.
●Assist management in implementing information security frameworks and best practices.
●Monitor compliance with internal policies relating to IT usage, access control, and data protection.
●Conduct periodic security reviews, phishing simulations, and training.
●Conduct vendor security reviews for new SaaS integrations and data handling.

Technology and Security Implementation
● Coordinate implementation of identified IT security solutions with external vendor(s) (e.g. MDM, endpoint security, cloud protection tools).
● Act as the primary liaison between internal stakeholders and external IT/security vendors.
● Track implementation progress, manage timelines, and ensure delivery of agreed solutions.
● Develop SOPs for new system usage and manage system lifecycle governance.

Enterprise IT Oversight
●Administer and secure Google Workspace (email, drive, user access, MFA, DLP policies).
●Own endpoint security: laptops, mobile phones, antivirus/MDM tools, patching.
●Maintain a central inventory of IT assets, software, and access controls.
●Coordinate onboarding and offboarding of staff with secure device & system provisioning.

Vendor Management
●Work closely with external IT vendors responsible for infrastructure, helpdesk and security tools.
●Lead the review and renewal of IT service contracts and software licenses.


Strategic Technology Initiatives & Strategic Input
●Lead initiatives to improve operational efficiency (e.g., shared folder and access control structures, knowledge management tools, AI-enabled workflows, etc.)
●Recommend automation opportunities across business functions (e.g., secure file transfers, email routing, AI-enabled workflow solutions, etc.).
●Regularly assess evolving risks (e.g., phishing, social engineering, admin access vulnerabilities).
●Provide relevant updates to management on IT risks, security priorities, and IT process improvement recommendations.


Requirements:


Qualifications & Experience
●8 - 10 years of progressive experience in IT infrastructure, operations, and security.
●Proven ability to lead IT governance and security implementation in a regulated environment.
●Strong knowledge of:
●Google Workspace administration.
●Endpoint protection, MDM solutions, VPNs, firewalls.
●Network basics and cloud integrations (e.g., with CRMs, KYC, productivity tools).
●Excellent project management skills - able to work independently and collaboratively across functions with little supervision.
●Practical problem solver who can prioritise in a lean environment and provide practical advice/recommendations to management on technology risk, security priorities, IT process improvements and technology investment decisions.
●Experience managing external IT vendors or managed service providers (MSPs).
●Certifications (preferred but not essential): CISSP, CISM, CompTIA Security+, Google Certified Admin.
●Familiarity with financial regulations, particularly Monetary Authority Singapore (MAS)and crypto/fintech environments is a plus.


What You'll Bring
●Strong judgment on risk vs. productivity trade-offs in a fast-moving tech environment.
●An owner's mindset: proactive, resourceful, solutions-focused.
●Ability to simplify complex systems and educate non-technical stakeholders.