IT Security Engineer (CyberSecurity)
Summary
On-site IT Security Engineer in Singapore managing vulnerability management with Tenable (Nessus, Security Center, Tenable One), PAM via CyberArk, and Palo Alto Prisma Cloud. Handles security compliance (CIS, IM8), audits, DR, and automation using Ansible/Python/PowerShell for a CII/financial-sector organization.
Key Responsibilities
This role ensures the security posture of critical systems through proactive monitoring, incident response, system maintenance, and implementation of security enhancements across the organisation's technology stack.
Be part of a team that is responsible for managing and maintaining the cyber security operations of organisation:
Lead Vulnerability Management (VM) of assigned cyber security tools, including proactive monitoring of vulnerabilities, planning remediation schedules, adhering to vulnerability deadlines and seeking deviations via Risk Assessment (RA).
Lead security compliance through regular system hardening, configuration management, and policy enforcement.
Lead IT lifecycle management.
Ensure timely and successful updates and upgrades whilst ensuring minimal disruption to business operations.
Plan downtime and collaborate with cross-functional teams for system updates and upgrades.
Support regular audits and perform remediation actions.
Work closely with vendors.
Provide operations support, in a multi-vendor network including Critical Information Infrastructure (CII).
Participate in Disaster Recovery (DR) exercise and contribute to architectural planning for managed security tools in cloud environments.
Manage tool setups and migrations.
Create, maintain and review technical documentation, Standard Operating Procedures (SOP) as part of Knowledge Management (KM).
Drive efficiencies through AI and automation.
Proactive documentation as part of Knowledge Management (KM).
Occasionally provide after-hours support including weekends as required.
What we are looking for
Requirements
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field.
Minimum 5 years of hands-on experience in cybersecurity operations and security tool management.
Minimum 3 years of hands-on experience administering and maintaining the Tenable vulnerability management platform, including Tenable One, Tenable Security Center, Nessus Scanners, and related components.
Minimum 3 years of experience in administering and troubleshooting the Tenable Nessus platform, including agent-based scans, credentialed scans, plugin updates, scan policies, and vulnerability assessment operations.
Minimum 3 years of hands-on experience developing, maintaining, and optimizing Tenable Audit Files for CIS Benchmark compliance scans, including tailoring audit policies to organizational security standards and regulatory requirements.
Hands-on ability in operating Privileged Access Management (PAM) tools such as CyberArk.
Good vendor management skills.
Good written and verbal communication skills with demonstrated ability to influence and communicate effectively with non-technical audiences including management.
Applicants are expected to manage work in fast-paced environments, across heterogeneous networks including cloud environments, some of which are Critical Information Infrastructure (CII).
Tenable Security Center Specialist or equivalent certification is a mandatory requirement for this role. Candidates who do not have the relevant certification are advised not to apply.
Good understanding of Vulnerability Management (VM) and Compliance Management processes, with hands-on experience using enterprise security tools such as Tenable Nessus and Palo Alto Networks Prisma Cloud (formerly Twistlock) for vulnerability assessment, compliance monitoring, and remediation support.
Experience with automation tools and scripting (Ansible, Python, PowerShell) to automate repetitive tasks.
Experience with Singapore Government security standards and compliance frameworks (IM8, CSA guidelines).
Experience in harnessing AI solutions to continuously improve cyber security operations efficiency, including processes and service delivery, is advantageous.
Experience in demonstrating AI literacy with the ability to use AI tools responsibly, ethically, and securely, ensuring compliance with organisational policies, data privacy, confidentiality, and governance requirements.
Understanding of financial sector security requirements and regulations.
Tenable Security Center Expert or equivalent certification is preferred.