Assistant Manager, Continuous Threat Management (2 Years Contract)

ST Engineering

Singapore

On-site

SGD 120,000 - 180,000

Full time

12 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

ST Engineering is seeking a Cybersecurity Lead to monitor threats, oversee vulnerability management, and engage with SOC, IR, and regional IT teams. You will drive remediation, governance, and security drills to strengthen risk posture across Group IT and business units.

The role requires 3–5 years in information security leadership, strong analytics, and the ability to translate security findings into business actions. A CISSP/CISM/CEH/GIAC would be advantageous.

Qualifications

  • Bachelor’s degree in Cybersecurity, CS, IT or related field.
  • 3–5 years as a technical lead in information security with business outcomes.
  • Strong IT operations experience and ability to produce architectural artifacts.
  • Certifications such as CISSP, CISM, CEH, GIAC are a plus.

Responsibilities

  • Monitor cyber threats, vulnerabilities, and attack surfaces.
  • Coordinate vulnerability scanning and remediate exposures.
  • Collaborate with SOC, Incident Response, Group IT and regional units.
  • Advise system owners on remediation and risk mitigation.
  • Conduct quarterly Cybersecurity Table-top exercises and annual drills.
  • Assist CTM in managing the Continuous Threat Exposure Management program.

Skills

Analytical thinking
Problem solving
Decision making
Communication skills
Stakeholder management
Team collaboration
Cybersecurity certifications

Education

Bachelor’s degree in Cybersecurity, CS, IT or related field

Tools

AES/AEV platforms
CTEM tools

Job description

  • Continuously monitor and assess cyber threats, vulnerabilities, and attack surfaces.
  • Aggregate findings from vulnerability scans, threat intelligence, penetration tests, and red teaming.
  • Identify critical exposures and prioritise based on business risk and impact.
  • Manage takedown services with external providers.
  • Leverage internal and external threat intelligence sources.
  • Map threats to organisational assets and vulnerabilities.
  • Track emerging threats, zero-days, and active campaigns.
Vulnerability Management
  • Coordinate vulnerability scanning activities and ensure coverage.
  • Validate scan results and eliminate false positives.
  • Work with Group IT/International Business Units teams to remediate vulnerabilities.
  • Identify and monitor internal and external attack surfaces.
  • Discover shadow IT, exposed assets, and misconfigurations.
  • Ensure external-facing assets are secured and continuously assessed.
  • Use AI-driven agents to safely simulate and validate exploitability of exposures (AEV) in production-like environments
  • Continuously identify and validate attack paths, privilege escalation, and lateral movement risks. Correlate simulation results into actionable risk insights with proven exploitability.
Collaboration & Stakeholder Engagement
  • Work closely with SOC, Incident Response, Group IT and International Business Units and regional business partners to carry out monitoring of systems for security anomalies and detection of breaches.
  • Advise system owners on remediation and risk mitigation strategies.
  • Support security governance and audit requirements.
  • Conduct quarterly Cybersecurity Table-top exercises with line of business.
  • Conduct annual Group wide cybersecurity drill.
Required Experience and Qualifications
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology or related fields.
  • 3-5 years of experience as a technical lead in information security field with proven track record of execution in ensuring the desired outcomes are tied to business needs.
  • Strong experience in IT Operations, developing architectural artifacts including reference architectures, roadmaps, architectural principles, technology standards, security non-functional requirements, architectural decisions and design patterns.
  • Possess strong analytical, problem solving and decision-making skills in a fast paced and dynamic environment.
  • Knowledge in Network, Web Security and Application Security would be highly valued
  • Ability to establish and manage effective working relationships in a matrix environment with other departments, groups and staff with whom work must be coordinated or interfaced.
  • Exhibit excellent interpersonal skills among team members and other stakeholders with strong written and oral communication skills.
  • Possession of one or more industry-recognised cybersecurity certifications (e.g., CISSP, CISM, CEH, GIAC) is an added advantage.
  • Experience with Agentic Exposure Simulation (AES) / Agentic Exposure Validation (AEV) platforms or similar continuous security validation technologies is highly desirable.
Other info:
  • Assist Lead, Cyber Threat Management (CTM) in managing the Continuous Threat Exposure Management (CTEM) program
  • Maintain Service Level Objectives (SLO) of 3 business days for acknowledgment and 7 business days for remediation by respective IT Custodians, achieving 95% closure of Cyber Threat Intelligence alertsEvaluate, recommend, and drive the adoption of new Cyber Threat Intelligence (CTI) technologies and platforms to enhance threat visibility, external risk monitoring, threat hunting, and proactive cyber defence capabilities
  • Conduct annual Cybersecurity Incident Response exercises.
  • Build and maintain strong relationships with Group IT,regional business partners, regional cybersecurity lead and act as a liaison between cybersecurity operations and business units
  • Partner with Group IT and other functional teams to help them execute on important strategic initiatives or drive security operational scale and efficiency.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Asst Manager, Threat & Exposure Management (2 Years Contract)
Asst Manager, Threat & Exposure Management (2 Years Contract)

ST Engineering • Singapore

On-site
SGD 90,000 - 130,000
Manager, Cyber Threat Management & Security Operations
Manager, Cyber Threat Management & Security Operations

KWE-APLL TECHNOLOGY SERVICES PTE. LTD. • Singapore

On-site
SGD 150,000 - 210,000
Cyber Threat Management Senior/Security Engineer
Cyber Threat Management Senior/Security Engineer

INTELLIPRO SINGAPORE PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Senior Associate/ Assistant Manager, Cyber Threat Intelligence Analyst
Senior Associate/ Assistant Manager, Cyber Threat Intelligence Analyst

Changi Airport Group (Singapore) Pte. Ltd. • Singapore

On-site
SGD 60,000 - 100,000
Senior Associate/ Assistant Manager, Cyber Threat Intelligence Analyst
Senior Associate/ Assistant Manager, Cyber Threat Intelligence Analyst

Changi Airport Group • Singapore

On-site
SGD 70,000 - 110,000
Threat Detection Engineer - Contract
Threat Detection Engineer - Contract

NTT SINGAPORE PTE. LTD. • Singapore

On-site
SGD 70,000 - 110,000
Incident Manager and Cyber Intelligence
Incident Manager and Cyber Intelligence

Commerzbank Aktiengesellschaft • Singapore

On-site
SGD 120,000 - 180,000
[LTA-ITCD] LEAD / PRINCIPAL / SENIOR CYBER THREAT INTEL ANALYST
[LTA-ITCD] LEAD / PRINCIPAL / SENIOR CYBER THREAT INTEL ANALYST

Land Transport Authority (LTA) • Singapore

On-site
SGD 120,000 - 180,000
Senior Associate/ Assistant Manager, Cyber Threat Intelligence Analyst
Senior Associate/ Assistant Manager, Cyber Threat Intelligence Analyst

Changi Airports International Pte Ltd • Singapore

On-site
SGD 60,000 - 85,000
[LTA-ITCD] LEAD / PRINCIPAL / SENIOR CYBER THREAT INTEL ANALYST
[LTA-ITCD] LEAD / PRINCIPAL / SENIOR CYBER THREAT INTEL ANALYST

Public Service Division • Singapore

On-site
SGD 150,000 - 190,000