Manager, Compliance

On-site

About this role

Job Purpose

In today’s rapidly evolving threat landscape, cybersecurity governance is essential to maintaining operational integrity and regulatory compliance. SMRT is seeking a detail-oriented and proactive Manager, Compliance to join our Governance, Risk and Compliance (GRC) team. This role is responsible for ensuring that cybersecurity policies, standards and controls are effectively implemented to manage cybersecurity risks across the organisation. 

Responsibilities

As Manager, Compliance, you will support Head, Governance, Risk & Compliance in managing, developing and implementing a robust cybersecurity governance, risk and compliance framework and strengthening organisational resilience. Your responsibilities include:

  •    Cybersecurity Compliance
    o    Manage, plan and execute cybersecurity compliance activities to assess control effectiveness, identify compliance gaps and recommend remediation actions.
    o    Monitor, assess and report cybersecurity maturity levels, ensuring progressive alignment with industry standards and regulatory expectations.
    o    Manage and coordinate internal cybersecurity compliance activities, ensuring consistent application of cybersecurity requirements across business units and systems.
    o    Investigate identified cybersecurity code of conduct violations or control weaknesses, and work with stakeholders to determine root causes and corrective measures.

 

  •    Cybersecurity Awareness & Training
    o    Drive the design and delivery of cybersecurity awareness initiatives and training programmes to strengthen organisational cyber resilience.
    o    Promote a culture of accountability, risk ownership and cybersecurity-first thinking throughout the organisation.

 

  •    Stakeholder Engagement & Reporting
    o    Work closely with stakeholders, business units and senior management to communicate group cybersecurity posture and risk exposure.
    o    Prepare dashboards, metrics and reports to support governance forums and decision-making.

Qualifications & Work Experience

  •    A bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related discipline.
    •    5–10 years of experience in cybersecurity governance, audit, risk management or compliance.
    •    Familiarity with cybersecurity frameworks such as NIST CSF, ISO/IEC 27001, and CIS Controls will be advantageous.
    •    Experience conducting risk assessments will be advantageous.
    •    Knowledge of regulatory requirements including the Cybersecurity Code of Practice (CCoP), Personal Data Protection Act (PDPA), and sector-specific standards will be advantageous.

Skills

Technical Skills include:
•    Understanding of cybersecurity governance, risk and compliance principles.
•    Ability to assess control effectiveness and identify gaps in policy implementation.
•    Skilled in evidence gathering and report writing.
•    Familiarity with GRC platforms and tools for tracking compliance and risk metrics.

 

Core Competencies include:
•    Excellent analytical and documentation skills, with strong attention to detail.
•    Effective communicator with the ability to engage stakeholders across technical and non-technical domains.
•    High integrity and discretion in handling sensitive information.
•    Proactive and collaborative mindset, with a commitment to continuous improvement

Company at a glance

SMRT Corporation Ltd (SMRT) is a leading public transport services provider in Singapore. As the nation's dominant rail operator, SMRT manages and operates the North-South Line, East-West Line, Circle Line, Thomson-East Coast Line, and Bukit Panjang Light Rail Transit. These services are complemented by its bus, taxi, and private hire vehicle operations. Through Kaizen, SMRT enhances lifestyles by creating vibrant transit destinations for commuters and the communities it serves. In addition, SMRT collaborates with Malaysia's Prasarana to design, build, and subsequently operate, and maintain the RTS Link, which will enhance cross-border connectivity between Singapore and Johor. SMRT's core values are encapsulated in the acronym R.I.S.E, which stands for Respect, Integrity, Safety, Service, and Excellence. SMRT is dedicated to providing safe, reliable, and commuter-centric transport services.

Terms of Use: We welcome your comments, constructive feedback and suggestions. We expect that our users follow the Terms of Use and share their opinions respectfully. We do not discriminate against any view, but we reserve the right to remove comments that contain vulgarities, are personal attacks against individuals or are deemed inappropriate and/ or disrespectful towards users of our page. For the purpose of constructive discussions, please note that SMRT reserves the right to remove irrelevant or offensive comments. Users who breach the above-mentioned may also be banned from this page.

Team Size5,001-10,000 employees
WorkspaceOn-site
IndustryUrban Transit Services
Location
Singapore
LinkedInLinkedIn

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?