Glenn Bucog

Singapore Citizen | Global Head IT Security Manager (CISO)|Cybersecurity Executive | 10 Years Leading Enterprise Security Programs | Align Security Framework with business | CISSP #CISO #Head #Director #VP #Manager #Lead

Singapore

About

Singapore Citizen | Experienced IT and Cyber Security Leader (CISO) reporting to CIO and COO of Noble| Cybersecurity Executive with 10+ years of enterprise security leadership across Singapore's leading MNCs. Expertise in cybersecurity strategy development, security governance, and risk management in large-scale regulated environments. CORE EXPERTISE • Cybersecurity Strategy & Governance – Formulated comprehensive IT security strategies and programs, creating enterprise-wide IT policies that achieved zero critical vulnerabilities • Team Leadership – Led cross-functional cybersecurity teams, managing security operations and overseeing security architecture implementations • Risk Assessment & Compliance – Ensured regulatory compliance and risk mitigation across financial services and enterprise environments • Threat Intelligence & Incident Response – Implemented robust cybersecurity solutions and security controls to strengthen cyber resilience • Cloud Security & Zero Trust Architecture – Deployed modern security frameworks and vulnerability management programs • Vendor Management – Optimized SaaS cybersecurity tools and compliance programs, reducing costs by 5–10% INDUSTRY EXPERIENCE Extensive background with prestigious MNCs including JP Morgan, Wellington Management, MUFG Bank, Hewlett Packard, and Dimension Data. Deep expertise in financial services security and regulated industry requirements. TECHNICAL LEADERSHIP Hands-on security professional skilled in security transformation, digital risk management, and adapting to evolving threat landscapes. Strong communicator able to present cybersecurity strategies to C-suite executives and board members. CERTIFICATIONS & CONTINUOUS LEARNING • CISSP – Certified Information Systems Security Professional (2023) • Cisco CCDA, CCNA-Security, CCNA-Routing and Switching (2016) • Microsoft MCP | ECE Licensed Engineer • Committed to continuous learning in AI and emerging security technologies AVAILABILITY Open to cybersecurity leadership opportunities in Singapore, Asia-Pacific region, and globally.

Experience

  • Cybersecurity Executive Manager (CISO) at The Kallang Group
    2025 - Present · 1 yr 7 mos

  • Head IT Cyber Security Manager (CISO) at Noble Group
    May 2021 - 2025 · 3 yrs 9 mos

    •Report to CIO and COO and communicated security strategies at the board level, ensuring a clear understanding of the company's cyber risks and actions taken to address them. •Developed and implemented comprehensive cybersecurity strategies that aligned with the company’s business objectives, leading to zero security incidents. •Spearheaded risk management initiatives, identifying and mitigating critical vulnerabilities across the organization, including risk assessments and threat modelling. •Led the incident response management process, developed IT policies and improved the company’s security posture through proactive threat intelligence efforts using threat intel. •Ensured compliance with industry standards and regulations such as GDPR, and ISO 27001, through rigorous internal audits and security assessments and penetration testing. •Directed vendor management for security solutions, overseeing the procurement and deployment of cutting-edge cybersecurity tools, including SIEM and advanced endpoint protection. •Manage the IT security budget, balancing resource needs with strategic security initiatives. •Led security awareness programs, reducing phishing attack success rates to 15% through improved employee training and engagement. •Drove the adoption of cloud security best practices, securing the migration to Azure with hardening and vulnerability controls. Deployed zero trust architecture, privileged access management and asset registry. •Conducted security audits and assessments based on the NIST Cybersecurity Framework, achieving a successful external audit and bolstering the company’s resilience to cyber threats.

  • AVP Network and Cyber Security at Wellington Management
    Dec 2019 - May 2021 · 1 yr 6 mos

    Plan and Manage Network and Cyber Security solutions, both on-premise and cloud, for Asia. Manage and meet risk, regulations and compliance requirements for IT. Manage IT resilience using infrastructure and BCP process. Conduct risk assessment and provide solution using MAS regulations. Lead and complete multiple projects. Vendor management, solutions evaluation and proof of concept (POC). Manage and respond to cyber, network and security incidents and operations.

  • Deputy Manager at MUFG
    Dec 2018 - Dec 2019 · 1 yr 1 mo

    Lead delivery of end-to-end Cyber security solutions from requirements, sizing, compliance, planning, implementations to operations and system life cycle. Work in partnership with colleagues in global Cyber & IT Security teams in the regional offices of Japan, Europe, America, China and other offices to share knowledge, do presentations, support regional/global initiatives and best practices on cyber security. Technical lead to operations team to perform cyber-forensics, continuously monitor and enhance technical policies and configuration in security systems to enhance security protection and coverage. Manage vendors, service providers, audits, risk and compliance. A subject matter expert for all Cyber & IT Security Matters (i.e., Cloud proxy, DLP, 0-day, Threat intel.)

  • Senior Cyber Security Network Engineer (Associate VP) at JPMorgan Chase & Co.
    2014 - Aug 2018 · 4 yrs 8 mos

    A Subject Mater Expert (SME) in charge of implementing and maintaining security controls in network infrastructure such as network SPAN/TAP switches, firewalls, anti virus solutions, and intrusion detection systems. A Cyber Security Engineer is an expert who takes on himself the hands-on duties of designing, building, implementing, deploying, documenting and maintaining cyber security solutions for a certain organization; solutions such as firewalls, intrusion detection/prevention systems, SIEM, honeypots, and security software. In charge of infrastructure projects from POC, RFP, design, build/implement/configure, document, develop run-book procedure, to training Analyst and Operations team. performs vulnerability assessment, incident response, encryption, decryption, policy enforcement, audit compliance, improve resilience, monitor and improve SIEM alerts, automate scripts, analyze and recommend cloud infrastructure security/controls. Develop and perform cyber security exercise. •Devices; FireEye, VSS Monitoring tap switch, Gigamon switch, Splunk, Arcsight. • Completed implementation of FireEye and VSS Monitoring tap switch, as well as integration with Splunk, Arcsight and Active Directory.