Deputy/ Group Chief Information Security Officer, SingHealth
Lead cybersecurity strategy for Singapore's largest public healthcare cluster and shape the future of healthcare security across our network of hospitals and institutions. As Deputy/Group Chief Information Security Officer, you will establish the vision and direction for protecting critical healthcare systems that serve millions of patients, ensuring the security and integrity of SingHealth’s digital and Information and Communications Technology (ICT) systems.
We are seeking a senior cybersecurity leader to head our Office of Cyber and Information Security. You will drive organisational cybersecurity governance and ensure SingHealth maintains the highest standards of healthcare cybersecurity, working at the executive level to protect our critical digital healthcare infrastructure.
Your Role:
You will develop comprehensive security policies and frameworks tailored for healthcare environments whilst overseeing enterprise-wide risk management across all SingHealth facilities. Your role involves making strategic technology decisions by evaluating and implementing cutting-edge security solutions, providing executive leadership for cybersecurity governance across Electronic Medical Record platforms, telehealth solutions, and medical device networks, and building strategic partnerships with Ministry of Health, Synapxe, and GovTech.
You will cultivate a strong cybersecurity culture through organisation-wide awareness programmes, serve as the primary cybersecurity advisor to executive and clinical leadership, and build high-performing security teams that establish cybersecurity excellence throughout the organisation.
Job Requirements:
- Master's degree in Computer Science, Engineering, Information Systems or equivalent field
- Cybersecurity certifications such as CISSP, CCSP, CCSK, CGEIT, PMP, or equivalent credentials
- Minimum 20 years of relevant experience including at least 5 years in healthcare IT environments
- Extensive experience with EMR systems, medical device security, and healthcare cloud security platforms such as AWS, Azure and GCP
- Deep expertise in healthcare regulations including PDPA, Cybersecurity Act, and compliance frameworks
- Mastery of security frameworks and standards including NIST CSF and ISO 27000 series
- Deep technical knowledge across multiple security domains such as network, endpoint, cloud and application security
- Comprehensive understanding of healthcare operations, clinical workflows, and the criticality of system availability and data integrity in patient care
- Exceptional executive leadership and strategic communication capabilities
- Proven ability to influence and collaborate with C-suite executives and regulatory bodies