Primary Purpose
We are seeking an experienced Vulnerability Management System Engineer to join our Cyber team. This is a specialist Day 1 role focused exclusively on the design, architecture, and implementation of enterprise-grade vulnerability management solutions. You will work with cutting-edge platforms such as Tenable and Rapid7 to deliver robust security solutions for our clients
Job Description
Solution Design & Architecture
- Design comprehensive vulnerability management architectures aligned with client requirements and industry best practices
- Develop technical solution blueprints for enterprise-scale deployments across cloud, hybrid, and on-premises environments
- Create integration strategies with existing security infrastructure and SIEM platforms
- Define scanning strategies, policies, and compliance frameworks (CIS, NIST, PCI-DSS, HIPAA, ISO 27001)
Implementation & Deployment
- Lead end-to-end implementation of Tenable (Nessus, Tenable.io, Tenable.sc), Rapid7 (InsightVM, Nexpose) platforms or equivalent
- Configure vulnerability scanners, agents, and sensors across diverse infrastructure environments
- Implement Cloud Security Posture Management (CSPM) and Cloud Workload Protection (CWP) capabilities
- Deploy container security and Kubernetes Security Posture Management (KSPM) solutions
- Configure automated scanning schedules, credential management, and network segmentation strategies
Integration & Configuration
- Integrate vulnerability management platforms with CI/CD pipelines for DevSecOps workflows
- Implement Infrastructure as Code (IaC) scanning capabilities
- Configure API integrations with ticketing systems, SIEM, and security orchestration platforms
- Develop automation scripts for reporting, remediation workflows, and compliance tracking
Technical Documentation & Knowledge Transfer
- Produce comprehensive technical documentation including architecture diagrams, configuration guides, and runbooks
- Develop standard operating procedures and best practice guidelines
- Conduct knowledge transfer sessions and training for client teams
- Create handover documentation for Day 2 operations teams
Due to project sensitivity, we can only consider Singapore Citizen
Technical Expertise
- 5+ years of hands-on experience implementing enterprise vulnerability management solutions
- Deep expertise with Tenable platforms (Tenable.io, Tenable.sc, Nessus Professional, Rapid7 solutions (InsightVM, Nexpose) or equivalent
- Strong understanding of vulnerability assessment methodologies, CVE/CVSS frameworks, and threat intelligence
- Experience with cloud platforms (AWS, Azure, GCP) and cloud-native security tools
- Proficiency in scripting languages (Python, PowerShell, Bash) for automation
- Knowledge of network protocols, security architectures, and enterprise infrastructure
Security & Compliance Knowledge
- Understanding of security frameworks and compliance standards (CIS Benchmarks, NIST CSF, PCI-DSS, HIPAA, ISO 27001)
- Familiarity with MITRE ATT&CK framework and threat modelling
- Knowledge of Software Composition Analysis (SCA) and container security principles
- Experience with Identity and Access Management (IAM) and Cloud Infrastructure Entitlement Management (CIEM)
Professional Skills
- Proven track record of delivering complex security implementation projects on time and within scope
- Strong analytical and problem-solving capabilities
- Excellent communication skills with ability to articulate technical concepts to diverse audiences
- Experience working in Agile environments and collaborating with cross-functional teams
We are driven by our AEIOU beliefs-Adventure, Excellence, Integrity, Ownership, and Unity-and we seek individuals who embody these values in both their professional and personal lives. We are committed to our Impact: Valuing our clients, Growing our people, and Creating our future.
Together, we make the extraordinary happen.
Learn more about us at ncs.co and visit our LinkedIn career site.