Be wary of WhatsApp messages impersonating Jobline Resources's staff offering job opportunities. Those who encounter suspicious messages can contact Jobline at +65 6339 7198

Responsibilities

  • Coordinate vulnerability management activities across on-premises infrastructure, servers, endpoints, applications, and Azure cloud environments.
  • Utilise security tools such as Vulnerability Management Systems (VMS), TenableOne, Cloudscape, and related platforms to identify, assess, and monitor security vulnerabilities.
  • Conduct regular reviews of vulnerability assessment results and patch compliance reports to identify remediation priorities.
  • Monitor patching progress and ensure vulnerabilities are remediated within defined timelines and compliance requirements.
  • Support security audits, compliance assessments, and reporting activities by providing required vulnerability management evidence and documentation.
  • Ensure remediation activities comply with IM8 requirements, internal policies, and cybersecurity standards.
  • Support cybersecurity incident response activities in collaboration with the CISO, Infrastructure Team, and security service providers.
  • Follow up on remediation activities arising from security incidents and ensure completion within agreed timelines.
  • Support the operation and administration of DDoS mitigation and Web Application Firewall (WAF) services protecting NParks' Internet-facing applications.
  • Coordinate with service providers and internal stakeholders to ensure the effectiveness of deployed security controls.
  • Facilitate WAF policy reviews, rule updates, and change requests in accordance with operational requirements.
  • Support investigations involving web application attacks, suspicious traffic, and DDoS-related events.
  • Assist in service reviews and operational assessments of DDoS and WAF solutions.
  • Coordinate cybersecurity and infra operational activities across application teams, infrastructure teams, Onsite FM teams, GCC FM teams, and external security vendors.
  • Maintain security risk, remediation, and compliance tracking registers.
  • Support security governance activities through effective communication and collaboration with stakeholders.
  • Collect, consolidate, and analyse vulnerability, incident, compliance, and operational security data.
  • Prepare regular operational reports, dashboards, and management updates on cybersecurity posture and remediation progress.
  • Monitor compliance against prescribed security requirements, policies, and standards.
  • Produce metrics and reports on vulnerability remediation, incident management, patch compliance, and security service performance.
  • Support management review meetings by providing timely and accurate cybersecurity status updates.

Requirements

  • Diploma or Degree in Information Technology, Cybersecurity, Computer Science, Information Systems, or a related field.
  • 2–5 years of experience in IT security operations, cybersecurity operations, vulnerability management, or related IT security functions.
  • Experience working with vulnerability management tools such as Tenable, or equivalent solutions, coordinating cybersecurity incidents and remediation activities. 
  • Familiarity with cybersecurity frameworks and standards such as IM8, NIST, ISO 27001, CIS Controls, or equivalent.
  • Proficiency in Microsoft Office applications, particularly Excel and PowerPoint, for reporting and analysis.
  • Familiarity with DDoS protection and WAF technologies is preferred.  
  • Exposure to Microsoft Azure security and cloud environments is advantageous.
  • Experience supporting compliance and governance requirements within enterprise or public-sector environments is advantageous.
  • Preferred Certifications: CompTIA Security+ / Microsoft Security Certifications / CEH (Certified Ethical Hacker)

Shortlisted candidates will be offered a 6 Months agency contract employment.