Principal Security Engineer
Job description
The NETS Group is a leading payments services group, enabling digital payments for merchants, consumers and banks across the entire payments value chain.
The Group operates Singapore’s national debit scheme enabling customers of DBS Bank/POSB, HSBC, Maybank, OCBC Bank, Standard Chartered Bank and UOB to make payments using their ATM cards or mobile devices at more than 130,000 acceptance points in the country as well as online payments.
Position Summary
The Principal Engineer plays a critical role in designing, implementing, and maintaining identity and access management solutions that safeguard systems and data through strong authentication, authorization, and access controls.
The ideal candidate will work closely with IT, business application owners, security operations, and information security risk teams to deploy and optimise PAM solution.
Key Responsibilities
- Design, implement, and maintain enterprise Privileged Access Management (PAM) architecture aligned with organizational security strategy, risk posture, and business requirements.
- Review and validate vendor designs, configurations, and deliverables to ensure security, scalability, resilience, and regulatory compliance
- Engage with PAM vendors and system integrators, ensuring delivery of solutions adheres to defined security, architectural, and operational standards.
- Lead the end-to-end implementation, configuration, and rollout of PAM platforms across on-premises, cloud, and hybrid environments, ensuring scalability, resilience, and high availability.
- Integrate PAM platforms with core infrastructure, applications, identity systems, SOC tools to enable secure privileged access & monitoring across environments.
- Manage privileged account lifecycle, including discovery, onboarding, maintenance, and decommissioning of privileged identities to eliminate orphan and unmanaged accounts.
- Ensure continuous monitoring and session auditing, including logging, recording, and review of privileged activities to detect and respond to anomalous behaviour.
- Drive proactive risk remediation, identifying excessive access, policy violations, and control gaps, and ensuring timely resolution in alignment with risk management frameworks.
- Collaborate with IT, Security, Risk, and business stakeholders to continuously enhance PAM controls while improving usability and operational efficiency.
- Manage PAM platform lifecycle, ensuring systems operate on supported, secure, and stable versions, including patching, upgrades, and vulnerability remediation.
- Support critical operational activities, including privileged access provisioning, KRI/KPI reporting, audit coordination, compliance initiatives, and service request fulfilment.
- Support security incident response and investigations, providing privileged session logs, recordings, and forensic insights as required.
- Drive automation and integration initiatives, leveraging APIs, scripting, and orchestration tools (e.g., SOAR) to enhance PAM efficiency and reduce manual effort.
- Maintain up-to-date documentation, including standards, procedures, architecture diagrams, and runbooks to support daily operations, knowledge transfer, and audits.
- Continuously improve PAM maturity, aligning with industry best practices, regulatory expectations, and evolving threat landscape.
Network for Electronic Transfers (Singapore) Pte Ltd.
Skills mentioned
Apply for this job
Use the application link supplied with this listing to apply to Network for Electronic Transfers (S). Check the destination before entering personal information.

