Ant International-Senior Security Engineer-ANEXT Bank
Ant Technology Group Co., Ltd. SingaporeAnt International-Senior Security Engineer-ANEXT Bank
Job description
We are looking for a highly motivated Bank Security Engineer who will join the Bank's cybersecurity team. The Senior Security Engineer will support the CISO in executing day-to-day cybersecurity operations and contribute to the development, implementation, and governance of the Bank's cybersecurity policy framework. This role plays a critical part in maintaining the Bank's security posture, ensuring regulatory compliance, and enabling secure growth of digital banking services.
Key Responsibilities
Security Operations (40%)
• Monitor and respond to security alerts, incidents, and threats across the Bank's infrastructure, applications, and cloud environments
• Conduct triage, investigation, and escalation of security incidents in coordination with the SOC and IT teams
• Maintain and tune security tools (SIEM, EDR, WAF, vulnerability scanners, etc.) for optimal detection and response
• Perform regular security assessments, vulnerability scans, and penetration test coordination
• Support 24/7 incident response activities as part of the on-call rotation
Policy & Governance (30%)
• Assist in developing, reviewing, and updating cybersecurity policies, standards, and procedures aligned with regulatory requirements (e.g., MAS TRM, PDPA)
• Conduct policy compliance assessments and report gaps to the CISO
• Maintain documentation for audit and regulatory examinations
• Support risk assessment activities and maintain the risk register
• Coordinate with internal audit and external regulators during assessments
Security Architecture & Engineering (20%)
• Review and provide security input on new projects, system changes, and cloud deployments
• Implement security controls across network, endpoint, identity, and application layers
• Support secure configuration management and hardening initiatives (e.g., CIS Benchmarks)
• Evaluate and recommend security technologies to address emerging threats
Awareness & Collaboration (10%)
• Deliver security awareness training to staff on policies, threats, and best practices
• Collaborate with IT, DevOps, and business teams to embed security into processes
• Serve as a security point of contact for operational queries and escalations
Job Requirement
Required Qualifications
• Bachelor's degree in Computer Science, Information Security, or related field
• 7+ years of experience in cybersecurity, with at least 2 years in a financial services or regulated environment
• Relevant certifications (e.g., CISSP, CISM, CEH, GSEC, Security+, CCSP, OSCP)
Required Experience
• Hands-on experience with security operations (SIEM, SOAR, incident response)
• Familiarity with cloud security and containerised environments
• Experience implementing and maintaining security policies in a regulated industry
• Knowledge of vulnerability management and patching processes
• Understanding of network security, identity & access management, and endpoint protection
Competencies
• Analytical Thinking: Ability to assess complex security scenarios and prioritise risks
• Communication: Clear written and verbal communication for technical and non-technical audiences
• Attention to Detail: Rigorous approach to documentation, compliance, and operational accuracy
• Collaboration: Works effectively across teams and builds strong stakeholder relationships
• Adaptability: Thrives in a fast-paced digital bank environment with evolving priorities
Preferred Qualifications
• Experience in a digital bank, fintech, or start-up environment
• Knowledge of Singapore regulatory requirements (MAS, PDPA)
• Hands-on experience with DevSecOps practices and CI/CD security integration
• Familiarity with AI/ML security considerations and emerging technology risks