Thoughtworks logoT

Lead Information Security Specialist

Thoughtworks

Singapore, Singapore, SingaporeFull Time
Apply with OnJob Free profile · takes about a minute

Lead Information Security Specialist at Thoughtworks is a full time role based in Singapore, Singapore, Singapore. It was published on 12 August 2026 and was open at last check.

Lead Information Security Specialist at Thoughtworks — key details
RoleLead Information Security Specialist
CompanyThoughtworks
LocationSingapore, Singapore, Singapore
Employment typeFull Time
Published12 August 2026
StatusOpen at last check

Lead Security Specialists are instrumental in ensuring the delivery of robust and secure software for our clients. These experts thrive in collaborative settings, engaging with diverse cross-functional teams to pinpoint and mitigate vulnerabilities in code, systems architecture, and infrastructure. With strong understanding of application security practices and a keen understanding of agile methodologies, they advocate for security integration as a fundamental aspect of software development.

Their work helps to embed a culture of security that aligns with agile and DevOps philosophies, ensuring that security measures enhance, rather than hinder, organizational objectives. By guiding teams and clients through the nuances of security automation and best practices, Application Security Specialists safeguard digital assets and champion a mindset where security and development go hand in hand.

Due to the nature of the projects and specific client security clearance , this role requires the successful candidate to be a Singapore Citizen.

Job responsibilities

Implement and refine security automation processes, embedding security-by-design and shift-left practices throughout the software delivery lifecycle across all engineering squads via SAST/DAST integration in CI/CD pipelines.

Build and define comprehensive security strategies tailored to our delivery methodologies and client context.

Conduct manual and automated security code reviews, perform penetration testing, and apply security architecture principles to identify and remediate vulnerabilities alongside delivery teams.

Serve as a consultant and advisor to both the delivery team and clients, providing expert guidance on security best practices, Singapore public sector compliance and regulatory expectations, and risk mitigation strategies.

Work closely with delivery, DevOps and Cloud teams to identify and reduce risks associated with code development, system architecture, and infrastructure.

Job qualifications

  • 7+ years of experience as a security engineer with direct involvement in working with delivery teams to identify vulnerabilities in code and systems architecture.
  • Demonstrated experience with implementing security automation and familiarity with agile development methodologies.

Technical Skills

Applied expertise in security architecture principles, manual/automated code reviews, OWASP/SANS standards, and penetration testing techniques.

Proficiency in manual and automated penetration testing tools and techniques.

Experience with SAST, DAST, Dependency checking, and container vulnerability assessment tools such as Checkmarx, Burp, ZAP, Fortify, Trivy, etc.

Basic understanding of firewall, virtualization, container, networking, and OS security.

Knowledge of cloud security best practices and basic knowledge of cloud providers like AWS, Azure and GCP.

Knowledge and experience in password/secret management tools and techniques.

Understanding of DevSecOps and experience in security automation.

Basic understanding of firewall, virtualization, container, networking, and OS security.

Professional Skills

Excellent communication and interpersonal skills, with the ability to manage relationships at senior levels of leadership.

Strong consulting skills, including the ability to promote security awareness and influence decision-making within delivery teams.

Ability to anticipate problems and understand the long-term implications of decisions and actions.

Experience in developing security testing plans and integrating them into the software development lifecycle.

Other things to know

Learning & Development

There is no one-size-fits-all career path at Thoughtworks: however you want to develop your career is entirely up to you. But we also balance autonomy with the strength of our cultivation culture. This means your career is supported by interactive tools, numerous development programs and teammates who want to help you grow. We see value in helping each other be our best and that extends to empowering our employees in their career journeys.

About Thoughtworks

Thoughtworks is a global technology consultancy that integrates strategy, design and engineering to drive digital innovation. For 30+ years, our clients have trusted our autonomous teams to build solutions that look past the obvious. Here, computer science grads come together with seasoned technologists, self-taught developers, midlife career changers and more to learn from and challenge each other. Career journeys flourish with the strength of our cultivation culture, which has won numerous awards around the world.

Join Thoughtworks and thrive. Together, our extra curiosity, innovation, passion and dedication overcomes ordinary.

See here our AI policy.

Share:WhatsAppLinkedIn

Create your free OnJob profile to apply — we'll take you to Thoughtworks's application after sign-up. · Posted 12 Aug 2026.

Lead Information Security Specialist at Thoughtworks — questions answered

What does the Lead Information Security Specialist role at Thoughtworks pay?

Thoughtworks does not publish a salary on this Lead Information Security Specialist listing, so OnJob shows no figure for it rather than an estimate. For what this role pays across the market, the OnJob salary guides aggregate the live listings that do disclose pay.

Where is the Lead Information Security Specialist role at Thoughtworks based?

Thoughtworks lists this Lead Information Security Specialist role in Singapore, Singapore, Singapore, advertised as full time work at that location. Larger employers sometimes cover several sites under one city name, so confirm the exact office with Thoughtworks before you apply.

Is the Lead Information Security Specialist role at Thoughtworks still open?

The Lead Information Security Specialist posting at Thoughtworks was open at OnJob's last check of the employer's careers page, having been published on 12 August 2026. OnJob re-checks source listings on each build and marks a role closed once it disappears, but listings can close without notice, so the employer's own page is the final word.

How do you apply for the Lead Information Security Specialist role at Thoughtworks?

Apply to the Lead Information Security Specialist at Thoughtworks role through OnJob with a free profile: OnJob scores your fit against the listing, shows the skills lowering that score, and submits an ATS-ready profile to Thoughtworks's own application page. Creating a profile is free and needs no card.

Explore more on OnJob

Hiring for a role like this?

Post a job on OnJob and reach AI-matched candidates.

Post a Job