GovTech is the lead agency driving Singapore’s Smart Nation initiatives and public sector digital transformation. As the Centre of Excellence for Infocomm Technology and Smart Systems (ICT & SS), GovTech develops the Singapore Government’s capabilities in Data Science & Artificial Intelligence, Application Development, Smart City Technology, Digital Infrastructure, and Cybersecurity.
At GovTech, we offer you a purposeful career to make lives better where we empower our people to master their craft through robust learning and development opportunities all year round.
Play a part in Singapore’s vision to build a Smart Nation and embark on your meaningful journey to build tech for public good. Join us to advance our mission and shape your future with us today!
Learn more about GovTech at tech.gov.sg.
[What you will be working on]
We're looking for a Tech Lead to own the architecture and engineering of RAiD's cyber defence and AI platforms supporting the RSAF - building production-grade capability for automated vulnerability management, and security compliance monitoring and remediation across RAiD's digital products and systems, using AI and agentic workflows across cloud and on-premise environments.
This is a hands-on technical leadership role. You'll own key engineering decisions, lead and mentor engineers, and work with internal stakeholders and external SME partners to deliver solutions that are secure, scalable, and reliable.
Job Description
Platform architecture & delivery
Own the architecture and end-to-end engineering delivery of a scalable, secure, production-grade unified cyber defence platform.
AI & agentic engineering
Design and build AI and agentic capabilities for vulnerability detection, compliance assessment, continuous monitoring, security testing, and automated remediation, including deploying and operating LLM-based systems across cloud and restricted environments.
Technical leadership & practice
- Lead technical design and experimentation, making sound architecture and engineering trade-offs across security, scalability, reliability, maintainability, performance, and cost.
- Act as the technical lead - providing engineering direction, reviewing architecture and code, mentoring engineers, and driving strong practices across testing, CI/CD, DevSecOps, observability, and production operations.
Stakeholder partnership
Partner with Product Managers, cyber security teams, infrastructure teams, and other stakeholders to translate operational needs into effective technical solutions.
Vendor & partner oversight
Provide technical oversight of external SME partners and vendors, ensuring sound architecture, engineering quality, integration, risk management, and knowledge transfer.
[What we are looking for]
- 6+ years of software engineering experience, with experience owning and delivering production systems.
- Strong full-stack engineering experience across modern web technologies; current stack includes React, TypeScript/JavaScript, Node.js/Express, and Python.
- Strong foundation in software architecture and system design, including APIs, data modelling, system integration, scalability, and reliability.
- Experience with cloud-native development and production operations, including AWS or equivalent platforms, Infrastructure as Code, container orchestration, observability, CI/CD, and automated testing (e.g. Terraform, Amazon ECS/EKS).
- Experience building and productionising AI-powered applications and agentic workflows, including LLM integration, tool calling, workflow orchestration, evaluation, guardrails, observability, reliability, latency, and security.
- Working knowledge of application and cyber security, including SCA, SAST, DAST, container image vulnerability scanning, CVE/CWE/CVSS, Vulnerability Assessment and Penetration Testing (VAPT), and security compliance.
- Demonstrated technical leadership, including architecture and code reviews, mentoring engineers, and driving technical decisions.
- Strong problem-solving and communication skills, with the ability to make and articulate technical decisions and trade-offs.
Nice to Have
- Experience building LLM and agentic applications using platforms such as Microsoft Foundry / Azure OpenAI and Amazon Bedrock, frameworks such as LangGraph or LangChain, and technologies such as RAG, embeddings, vector databases, MCP, and AI evaluation frameworks.
- Hands-on experience with application security tooling and automation, such as Burp Suite, Nessus, Aikido Security, Semgrep, CodeQL, or equivalent, including integrating security tooling into automated workflows and CI/CD pipelines.
- Familiarity with security frameworks, standards, and secure software supply-chain practices, such as OWASP, CIS, NIST, IM8, and Software Bills of Materials (SBOMs).
- Experience deploying and operating systems across on-premise, private cloud, restricted, or air-gapped environments.
- Experience providing technical oversight of vendors, engineering partners, or externally developed solutions.
Please note that this will be a 2-year fixed term contract.
What we offer you:
GovTech is an equal opportunity employer committed to fostering an inclusive workplace that values diverse voices and perspectives, as we believe that diversity is the foundation to innovation.
Our employee benefits are based on a total rewards approach, offering a holistic and market-competitive suite of perks. These include leave benefits to meet your work-life needs and employee wellness programs.
We champion flexible work arrangements (subject to your job role) and trust that you will manage your own time to deliver your best, wherever you are, and whatever works best for you.
Learn more about life inside GovTech at go.gov.sg/GovTechCareers.
Stay connected with us on social media at go.gov.sg/ConnectWithGovTech

