Head of Vulnerability Management

Kerry Consulting

Singapore

On-site

SGD 240,000 - 380,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Kerry Consulting's client seeks a senior cybersecurity leader to drive enterprise Vulnerability Management, evolving to a threat-informed approach across infrastructure, apps, cloud and identity.

You will own the strategy and roadmap, oversee vulnerability scanning, penetration testing, remediation governance and reporting, and build a high-performing team with strong stakeholder engagement in a regulated environment.

Qualifications

  • Extensive cybersecurity leadership experience across vulnerability management or cyber assurance.
  • Proven track record maturing enterprise-scale vulnerability management programmes.
  • Expertise in vulnerability management, attack surface management, penetration testing and exposure validation.
  • Experience with threat intelligence, cloud security and security automation.

Responsibilities

  • Own the strategy and roadmap for enterprise vulnerability management.
  • Drive visibility and assessment of attack surface across cloud, on-prem, applications and identity.
  • Establish risk-based prioritisation using threat intel, exploitability and business impact.
  • Oversee vulnerability scanning, penetration testing, attack-path analysis and breach/attack simulations.
  • Partner with technology teams to drive remediation and address root causes of exposures.
  • Establish governance for vulnerability, remediation and patch-management standards.
  • Develop KRIs, KPIs and management reporting to track exposure and programme effectiveness.
  • Leverage automation and AI to improve discovery, prioritisation and remediation.

Skills

Vulnerability management
Threat-informed prioritisation
Attack surface management
Security automation
Penetration testing
Risk assessment
Stakeholder management
Leadership
Cloud security
Certifications

Job description

We are currently supporting a global client in seeking a senior cybersecurity leader to drive its enterprise Vulnerability Management capability.

The role will evolve traditional vulnerability management towards a more proactive, threat-informed approach, covering infrastructure, applications, cloud and identity environments.

Key Responsibilities:
  • Own the strategy and roadmap for enterprise vulnerability management.
  • Drive continuous visibility and assessment of the organisation's attack surface across cloud, on-premises, applications and identity.
  • Establish risk-based prioritisation using threat intelligence, exploitability, asset criticality and business impact.
  • Oversee vulnerability scanning, penetration testing, attack-path analysis and breach/attack simulation.
  • Partner with technology teams to drive remediation, address root causes and reduce recurring exposures.
  • Establish vulnerability, remediation and patch-management standards and governance.
  • Develop KRIs, KPIs and management reporting to track exposure and programme effectiveness.
  • Leverage automation, analytics and AI to improve discovery, prioritisation and remediation.Partner with Technology Risk and Audit on assurance and control matters.
  • Build and lead a high-performing team.
Requirements:
  • Extensive cybersecurity experience with senior leadership responsibility across vulnerability management, or cyber assurance.
  • Proven experience building or maturing an enterprise-scale vulnerability management programme.
  • Strong expertise across vulnerability management, attack surface management, penetration testing and exposure validation.
  • Good understanding of threat-informed prioritisation, attack paths and business-criticality-based risk assessment.
  • Experience with threat intelligence, cloud security and security automation.
  • Experience within financial services or another complex regulated environment preferred.
  • Strong senior stakeholder management and communication skills.
  • Relevant certifications such as CISSP, CISM, CRISC, SANS or OffSec would be advantageous.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Management Specialist (Multiple Headcounts), Global Firm
Vulnerability Management Specialist (Multiple Headcounts), Global Firm

Kerry Consulting • Singapore

On-site
SGD 70,000 - 110,000
Senior Vulnerability Management Analyst
Senior Vulnerability Management Analyst

Income Insurance Limited • Singapore

On-site
SGD 120,000 - 180,000
Senior Vulnerability Management Analyst
Senior Vulnerability Management Analyst

Income • Singapore

On-site
SGD 90,000 - 130,000
Chief Vulnerability Management & Threat Visibility
Chief Vulnerability Management & Threat Visibility

Kerry Consulting • Singapore

On-site
SGD 240,000 - 380,000
Senior Security Analyst (Governance, Risk and Compliance)
Senior Security Analyst (Governance, Risk and Compliance)

energy market company • Singapore

On-site
SGD 120,000 - 180,000
Security Operations Vice President, Vulnerability Management
Security Operations Vice President, Vulnerability Management

JPMorgan Chase & Co. • Singapore

On-site
SGD 260,000 - 420,000
Head of Security Operations
Head of Security Operations

Kerry Consulting • Singapore

On-site
SGD 260,000 - 420,000
Cyber Threat Management Senior/Security Engineer
Cyber Threat Management Senior/Security Engineer

INTELLIPRO SINGAPORE PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Senior Security Analyst (Governance, Risk and Compliance)
Senior Security Analyst (Governance, Risk and Compliance)

energy market company pte ltd • Shenton Way

On-site
SGD 120,000 - 180,000
Cyber Security Lead (Vulnerability Management) - 1 year contract
Cyber Security Lead (Vulnerability Management) - 1 year contract

GMP Technologies • Singapore

On-site
SGD 180,000 - 240,000