Talent.com
Temasek Holdings
AVP/Vice President, Cybersecurity (Insider, Risk & Security)Temasek Holdings • Singapore, SG
AVP/Vice President, Cybersecurity (Insider, Risk & Security)

AVP/Vice President, Cybersecurity (Insider, Risk & Security)

Temasek Holdings • Singapore, SG
13 days ago
Job description

Select how often (in days) to receive an alert:

AVP/Vice President, Cybersecurity (Insider, Risk & Security)

Location: Singapore, SG, 238891

Group: Corporate Group

Department: Cybersecurity

Section: Cybersecurity

Job Type: Permanent

Temasek is a global investment company headquartered in Singapore, with a net portfolio value of S$434 billion (US$324 billion, €299 billion, £250 billion, and RMB2.35 trillion) as at 31 March 2025. Marking our unlisted assets to market would provide S$35 billion of value uplift and bring our mark to market net portfolio value to S$469 billion.

Our Purpose “So Every Generation Prospers” guides us to make a difference for today’s and future generations.

Operating on commercial principles, we seek to deliver sustainable returns over the long term.

We have 13 offices in 9 countries around the world: Beijing, Hanoi, Mumbai, Shanghai, Shenzhen, and Singapore in Asia; and Brussels, London, Mexico City, New York, Paris, San Francisco, and Washington, DC outside Asia.

The increasing reliance of businesses on technology and AI means that cybersecurity and IT risk management is a strategically important function within Temasek. Cyber defences are largely designed to keep external adversaries out, but provide limited visibility and control over insider activity. Adversaries are increasingly exploiting insider access (malicious, negligent or compromised) for espionage, data theft and pre-positioning. At the same time, rapid generative AI adoption introduces new channels for data leakage and misuse, requiring enhanced end-user responsibility, oversight and controls.

This role reports directly to the CISO and is tasked to carry out the insider risk and security function within the Cybersecurity department. This role is focused on preventing, detecting and responding to insider threats across Temasek and its ecosystem, including staff, vendors and partners.

The AVP / Vice President, Cybersecurity will lead the development and ongoing management of the insider risk programme, reporting to the Chief Information Security Officer (CISO), Temasek. The initial focus will be to establish the strategy, operating model and capabilities of the new team, and to drive measurable reduction of insider-related risks through establishment of controls and technical capabilities. In particular, this role will support the establishment of control mechanisms and programme to enable the monitoring of insider activities as well as prevention and detection of insider threats. It will also look into the established of a structured process and mechanisms to enable the effective operationalisation of the insider risk and security functions including joint reviews and investigation with key Business units into potentially / malicious insider activities.

Responsibilities

  • Define and lead Temasek’s insider risk strategy, aligning with the organisation’s risk appetite, regulatory expectations and cybersecurity strategy.
  • Design and implement the insider risk operating model, including roles and responsibilities, processes, technology stack and engagement model with Cybersecurity, Risk, HR, Legal, Compliance and Audit.
  • Establish and maintain an insider risk framework and programme covering policy, use-case development, monitoring, detection, response and remediation.
  • Develop a multi-year plan for development of insider risk capabilities with clear priorities, milestones and outcome-based metrics.
  • Lead the eventual build-out and scaling of the insider risk function, and develop specialist capabilities.

Insider Threat Analytics and Response

  • Establish threat profiling and behavioural monitoring for staff, vendors and partners to provide greater visibility on insider threats and enable timely actions.
  • Define and maintain insider threat personas, use cases and scenarios (e.g. data theft, fraud, espionage, sabotage, negligent data leakage, GenAI misuse), informed by threat intelligence and business context.
  • Work with technical teams to design and operate monitoring and analytics capabilities (e.g. UEBA, DLP, cloud security, endpoint and identity telemetry, privileged access monitoring), and continuously refine detection logic to improve coverage and reduce false positives.
  • Oversee the end-to-end lifecycle of insider risk cases, from alert through triage, investigation, response and closure, coordinating across Cybersecurity, HR, Legal, Compliance and business units.
  • Ensure timely and proportionate responses to insider incidents, promoting a risk-based approach that distinguishes between malicious, negligent and compromised insiders, and driving root-cause analysis to improve controls and processes.
  • Assess and mitigate insider risks associated with Generative AI and other emerging technologies, including data leakage, model misuse and unapproved tool usage.
  • Review and establish the operating mandate, procedures and guidelines to ensure the continuous effectiveness of the insider risk and security function.

Policy, Assurance and Culture

  • Develop, review and maintain insider risk policies, standards and guidelines (e.g. acceptable use, monitoring, data handling, GenAI usage) in collaboration with Legal, HR, Compliance and Risk.
  • Establish clear escalation paths, decision rights and documentation standards for insider related cases, and ensure activities comply with applicable laws, regulations and internal policies, particularly around privacy, data protection and employment practices.
  • Lead or support internal assurance activities on insider risk as directed by the Audit Committee and senior management, including targeted reviews, thematic risk assessments and deep dive investigations into control effectiveness, and produce regular reporting on posture, trends and remediation progress.
  • Build strong relationships with senior stakeholders and design targeted awareness, education and training on insider risk and safe use of collaboration and generative AI tools, tailored to different roles and risk profiles.
  • Foster a culture of trust, accountability and security conscious behaviour, balancing deterrence and transparency, and represent Temasek in relevant external forums and peer networks to leverage industry best practice and continually improve the programme.

Requirements

  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Risk Management, Law, Psychology, Business or equivalent.
  • Relevant professional certifications (e.g. CISSP, CISM, CISA, CPP, CRISC, or equivalent risk / fraud credentials) are an added advantage.
  • 8–12+ years’ experience in cybersecurity, insider risk, fraud, security operations, IT risk management or related fields, including experience designing or running complex security or risk programmes in large organisations.
  • Demonstrable experience in insider risk management, user behaviour monitoring, fraud analytics, security investigations or similar disciplines.
  • Strong understanding of technologies commonly used in insider risk programmes (e.g. SIEM, UEBA, DLP, EDR/XDR, CASB, identity and access management, privileged access monitoring) and how to integrate them into effective monitoring and response capabilities.
  • Familiarity with legal, privacy, employment and ethical considerations relating to employee monitoring, data protection and cross-border data flows; experience working closely with Legal, HR and Compliance is preferred.
  • Experience leading or overseeing complex investigations, including coordination with HR, Legal, Compliance and, where relevant, external parties.
  • Proven ability to build new capabilities and teams, including defining operating models, processes and performance metrics.
  • Strong analytical and problem-solving skills, with experience using data and metrics to drive decisions, measure impact and identify improvements.
  • Excellent communication, influencing and stakeholder-management skills, with experience presenting to senior management, governance bodies and, ideally, Audit Committees or Boards.
  • Ability to balance security, privacy, cultural and operational considerations in a pragmatic, risk-based manner.
  • High level of integrity, discretion and professional judgement, with the ability to handle sensitive and confidential information appropriately.

Stay connected by joining our network! Enter your e-mail and tell us a bit about yourself, and well keep you informed about upcoming events and opportunities that match your interests.

#J-18808-Ljbffr

Create a job alert for this search

AVP/Vice President, Cybersecurity (Insider, Risk & Security) • Singapore, SG

Similar jobs

VP/AVP, Cybersecurity Governance & Compliance Lead, Information Security Services, Group Technology

DBS Bank AustraliaSingapore, SG

VP/AVP, Cybersecurity Governance & Compliance Lead, Group TechnologyApplyremote type: Infrastructure, Cloud & Information Securitylocations: Singapore - Easttime type: Full timeposted on: Posted To... Show more

 • Promoted

VP, Insider Risk & Cybersecurity Strategy

Temasek HoldingsSingapore, SG

A leading investment firm in Singapore is seeking a Vice President of Cybersecurity to oversee the insider risk management program.The ideal candidate will have over 8 years of experience in cybers... Show more

 • Promoted

VP/Director - Compliance (Wholesales)

SMBC Groupsingapore, sg

SMBC Nikko Securities (Singapore) Pte.Singapore-based securities and investment banking subsidiary of SMBC Nikko Securities Inc.Sumitomo Mitsui Financial Group (SMFG), one of Japan's largest financ... Show more

 • Promoted

AVP, Market & Liquidity Risk

First Abu Dhabi Bank (FAB)singapore, sg

This position will assume responsibility in the Market Risk and Liquidity Risk Management.The responsibility covers the risk monitoring, risk reporting, regulatory reporting, risk governance, and r... Show more

 • Promoted

AVP/Vice President, Cybersecurity (Insider Risk & Security)

Temasek HoldingsSingapore, SG

AVP/Vice President, Cybersecurity (Insider Risk & Security).This role reports directly to the CISO and is tasked to carry out the insider risk and security function within the Cybersecurity departm... Show more

 • Promoted

VP Insider Threat & Cybersecurity Assurance

GIC Private LimitedSingapore, SG

A leading sovereign wealth fund in Singapore seeks an VP of Insider Threat in Cyber Security Assurance.The role focuses on safeguarding information assets, managing operational risks, and engaging ... Show more

 • Promoted

Now Hiring: VP/SVP, Technology Risk

Kerry Consultingsingapore, sg

A leading global organisation is looking to hire a Technology Risk & Controls professional to support its enterprise technology environment.This role sits within the Technology function and works c... Show more

 • Promoted

Cyber Defense Lead

Universsingapore, sg

Univers provides the world’s most comprehensive decarbonization system.The Head of Cyber Security Operations leads the organisation’s end-to-end cyber defence capability across enterprise and produ... Show more

 • Promoted

VP, Insider Risk & Security Strategy

Temasek HoldingsSingapore, SG

Temasek Holdings is seeking an AVP/Vice President, Cybersecurity (Insider Risk & Security) in Singapore.The role reports to the CISO and is responsible for building and running the insider risk and... Show more

 • Promoted

VP, Technology Risk

Eames Consultingsingapore, sg

Our client, a leading financial institution, is looking for a hands-on technology assurance leader to strengthen its independent oversight of technology and cyber risk.This role sits at the interse... Show more

 • Promoted

Regional Compensation AVP/VP - Global Investment Management Firm

Frazer Jonessingapore, sg

Global Investment Management Firm.Frazer Jones is pleased to be partnering with a leading global investment management firm to appoint an experienced AVP / VP – Compensation to join their Singapore... Show more

 • Promoted

AVP/VP, Cyber Security - Vulnerability Management

Eames Consultingsingapore, sg

Our client is looking for an AVP/VP to own vulnerability management across the enterprise.This is a hands-on role for someone who wants to be close to the technical work while also engaging stakeho... Show more

 • Promoted

VP/SVP, Technology Risk

Kerry Consultingsingapore, sg

A leading global organisation is looking to hire a Technology Risk & Controls professional to support its enterprise technology environment.This role sits within the Technology function and works c... Show more

 • Promoted

Assistant Director/Senior Consultant, Cyber Strategy

Ensign InfoSecuritysingapore, sg

Report to the Head of Cyber Strategy Consulting.Lead and deliver cybersecurity strategy consulting engagements such as Cybersecurity Maturity Assessments, advisory, business transformation, Framewo... Show more

 • Promoted

Now Hiring: Lead DFIR Specialist (Assistant Director), Technology Firm

Kerry Consultingsingapore, sg

Our client is a leading technology firm with a critical digital mandate and a strong focus on cyber resilience.They are looking for a Senior Cybersecurity professional to lead digital forensics and... Show more

 • Promoted

AVP/VP, Cybersecurity (Governance Oversight)

Temasek HoldingsSingapore, SG

AVP/VP, Cybersecurity (Governance Oversight).Temasek is a global investment company headquartered in Singapore, with a net portfolio value of S$518 billion (US$401b, €350b, £304b, RMB2.Our Purpose ... Show more

 • Promoted

Now Hiring: AVP/VP, Cyber Security - Vulnerability Management

Eames Consultingsingapore, sg

Our client is looking for an AVP/VP to own vulnerability management across the enterprise.This is a hands-on role for someone who wants to be close to the technical work while also engaging stakeho... Show more

 • Promoted

Lead DFIR Specialist (Assistant Director), Technology Firm

Kerry Consultingsingapore, sg

Our client is a leading technology firm with a critical digital mandate and a strong focus on cyber resilience.They are looking for a Senior Cybersecurity professional to lead digital forensics and... Show more