About SC Ventures
SC Ventures is Standard Chartered’s innovation, fintech investment and ventures arm. We were established to reinvent banking, as the significant technological disruptions to the industry was impacting its ability to serve clients and customers, in the ways they needed to be served.
We are a unique ecosystem of innovators, banking experts, business builders and partners who are focused on rewiring the DNA in banking and bringing breakthrough ideas to scale, together.
We are building ecosystems around four high conviction themes: Online Economy & Lifestyle, SMEs & World Trade, Digital Assets, and Sustainability & Inclusion.
We are a global team of "Members" (excluding individual ventures), including dedicated colleagues from the Group's support functions, based in Singapore, Hong Kong, London, and the United Arab Emirates.
As a Core Tech member, you will play a crucial role in building a secure foundation for our ventures throughout their lifecycle, from ideation to launch and scale.
RESPONSIBILITIES
Strategy & Business
- Security Architecture Design: Design and implement robust security architectures for multiple ventures and the core SC Ventures technology platform. This includes defining security controls, frameworks, and standards to ensure confidentiality, integrity, and availability of information assets.
- Security Consulting: Provide expert security guidance to venture teams throughout the venture building lifecycle. This includes advising on secure coding practices, infrastructure security, data protection, and compliance requirements.
- Innovation & Research: Stay abreast of emerging security threats, technologies, and best practices. Research and recommend new security frameworks and architectures to ensure SC Ventures remains at the forefront of security innovation.
Processes
- Cost Optimization: Evaluate the cost-effectiveness of various security solutions and make recommendations for optimizing security investments.
- Proactive Security: Develop and implement mechanisms to proactively identify and respond to security incidents, minimizing impact on ventures and the core platform.
- Security Enhancement: Continuously improve security posture by recommending and championing structural changes to enhance the security of facilities, systems, and processes
- Documentation: Create and maintain clear technical documentation and playbooks.
People & Talent
- Collaborate with Venture teams, SCV teams (Tech, Architecture, ICS) to ensure smooth cloud operations
- Educate and mentor team members on cloud best practices and tools
- Create and maintain technical documentation and playbooks
- Stay current on cloud technologies and best practices
- Risk Management & Governance
- Conduct threat modeling, vulnerability assessments, and penetration testing to identify and mitigate potential security risks
- Design action plans to address ICS platform/tools/solutions’ control shortcomings.
- Monitor, measure, and report Venture platform accounts against SCV service standards
- Provide guidance on platform compliance violations and follow up with Venture tech/ICS leads.
- Ensure resource tagging for ICS cost allocation, budgeting, governance, and reporting
- Assist Ventures in defining and monitoring baselines for platform resource health/utilization
Key Stakeholders
- SCV CTO, CISO
- Head of Architecture SCV
- Head of Tech Platform SCV
- CTO/CISO Ventures
Skills and Experience
- Experience: 10+ years of experience in information security, with 5+ years in a security architecture role. Demonstrated experience designing and implementing security solutions in fast-paced, dynamic environments, including start-ups and organizations with complex financial systems (FSI, Banking et al).
- Technical Skills: Deep understanding of security principles, technologies, and best practices across various domains, including cloud security, network security, data security, application security, and identity and access management.
- Communication & Collaboration: Excellent communication, interpersonal, and presentation skills. Ability to effectively communicate complex security concepts to both technical and non-technical audiences. Strong collaboration skills to work effectively with diverse stakeholders.
- Problem-Solving & Analytical Skills: Proven ability to analyze security risks, identify vulnerabilities, and develop effective mitigation strategies.
- Passion for Innovation: A strong interest in emerging technologies and a desire to contribute to the development of innovative security solutions.
Our Ideal Candidate
- Education Bachelor's degree in Computer Science, Information Security, or a related field.
- Certifications Relevant security certifications (e.g., CISSP, CISM, AWS Security Specialty) are highly desirable.
Role Specific Technical Competencies
- Cloud Security
- Extensive experience with cloud security architectures and best practices (AWS, Azure, GCP).
- Network Security
- Strong understanding of network security concepts, protocols, and technologies (firewalls, intrusion detection/prevention systems, VPNs).
- Data Security:
- Expertise in data protection techniques, including encryption, data loss prevention (DLP), and data masking
- Application Security:
- Knowledge of secure coding practices, application security testing methodologies (SAST, DAST), and web application firewalls (WAFs).
- Identity & Access Management (IAM): Experience with identity management solutions, access control models, and authentication protocols.
- Security Information and Event Management (SIEM):
- Familiarity with SIEM technologies and log analysis for security monitoring and incident response.
- DNS Security:
- Understanding of DNS security principles, including routing, authentication, VPN, proxy services, and DDoS mitigation technology.
- Security Frameworks:
- Familiarity with ISO 27001/27002, CIS, NIST, COBIT, and ITIL frameworks.
About Standard Chartered
We're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.
Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.
Together we:
- Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
- Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
- Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term
What we offer
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.
- Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
- Time-off including annual leave, parental/maternity (20 weeks), sabbatical (12 months maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum.
- Flexible working options based around home and office locations, with flexible working patterns.
- Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits
- A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
- Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.
Recruitment Assessments
Some of our roles use assessments to help us understand how suitable you are for the role you've applied to. If you are invited to take an assessment, this is great news. It means your application has progressed to an important stage of our recruitment process.
Visit our careers website www.sc.com/careers