Security Engineer

KOPI RECRUIT PTE. LTD.

Singapore

On-site

SGD 120,000 - 180,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

KOPI RECRUIT PTE. LTD. is seeking a Senior ICT Infrastructure Engineer (Cyber Security Tools) in Singapore to maintain and enhance the security tech stack with emphasis on automation, compliance, and operational excellence.

The role centers on administering Tenable VM/NC platforms, driving CIS benchmark compliance, and leading security tooling within a multi-vendor environment across cloud and on-premises systems. Expect collaboration with vendors and participation in DR planning.

Qualifications

  • Bachelor's degree in Cybersecurity, IT, CS or related field.
  • Minimum 5 years hands-on cybersecurity operations and tool management.
  • Minimum 3 years administering Tenable Vulnerability Management platform and Nessus.
  • Minimum 3 years of experience with Tenable Audit Files for CIS benchmarks.
  • Hands-on ability with Privileged Access Management (PAM) tools such as CyberArk.
  • Tenable Security Center Specialist certification is mandatory.

Responsibilities

  • Lead VM and vulnerability management for security tools with remediation planning.
  • Drive security compliance through system hardening and policy enforcement.
  • Support IT lifecycle management and platform upgrades with minimal business disruption.
  • Create and maintain SOPs; contribute to Knowledge Management.
  • Collaborate with vendors and cross-functional teams on security initiatives.
  • Assist in Disaster Recovery exercises and cloud architecture planning.

Skills

Cybersecurity operations
Tenable VM administration
Vulnerability management
Audit file engineering
Automation scripting
Vendor management
Communication
Cloud platforms
Regulatory compliance

Education

Bachelor's degree in Cybersecurity/IT/CS

Tools

Tenable Security Center
Tenable One
Nessus Scanners
CyberArk PAM
Ansible
Python
PowerShell
Prisma Cloud

Job description

Job Summary

We are seeking a highly skilled and motivated Senior ICT Infrastructure Engineer (Cyber Security Tools) to join our Cyber Security Operations team. The ideal candidate will play a key role in maintaining and enhancing the organisation’s cyber security technology stack, with a strong focus on security, compliance, operational efficiency, automation and service excellence.

The role will have a particular focus on the administration, engineering and continuous improvement of the Tenable Vulnerability Management and Compliance Management platform. This includes platform architecture, vulnerability assessment, CIS Benchmark compliance, audit file engineering, automation and the responsible application of AI to improve operational efficiency.

Key Responsibilities

This role ensures the security posture of critical systems through proactive monitoring, incident response, system maintenance, and implementation of security enhancements across the organisation's technology stack.

Be part of a team thatis responsible formanaging andmaintainingthe cyber security operations of organisation:

  • oLead Vulnerability Management (VM) of assigned cyber security tools, including proactive monitoring of vulnerabilities, planning remediation schedules, adhering to vulnerability deadlines and seeking deviations via Risk Assessment (RA).
  • Leadsecurity compliance through regular system hardening, configuration management, and policy enforcement.
  • Lead IT lifecycle management.
  • Ensuretimelyand successful updates and upgrades whilst ensuring minimal disruption to business operations.
  • Plan downtime and collaborate with cross-functional teams for system updates and upgrades.
  • Support regular audits and perform remediation actions.
  • Work closely with vendors.
  • Provide operations support, in a multi-vendor network including Critical Information Infrastructure (CII).
  • Participatein Disaster Recovery (DR) exercise and contribute to architectural planning for managed security tools in cloud environments.
  • Manage tool setups and migrations.
  • Create,maintainand review technical documentation, Standard Operating Procedures (SOP) as part of Knowledge Management (KM).
  • Drive efficiencies through AI and automation.
  • Proactive documentation as part of Knowledge Management (KM).
  • Occasionally provide after-hours support including weekends asrequired.
What we are looking for
Requirements
  • oBachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field.
  • Minimum5years of hands-on experience in cybersecurity operations and security tool management.
  • Minimum 3 years of hands-on experience administering and maintaining the Tenable vulnerability management platform, including Tenable One, Tenable Security Center, Nessus Scanners, and related components.
  • Minimum 3 years of experience in administering and troubleshooting the Tenable Nessus platform, including agent-based scans, credentialed scans, plugin updates, scan policies, and vulnerability assessment operations.
  • Minimum 3 years of hands-on experience developing, maintaining, and optimizing Tenable Audit Files for CIS Benchmark compliance scans, including tailoring audit policies to organizational security standards and regulatory requirements.
  • Hands-on ability in operating Privileged Access Management (PAM) tools such as CyberArk.
  • Good vendor management skills.
  • Good written and verbal communication skills withdemonstratedability to influence and communicate effectively with non-technical audiences including management.
  • Applicants are expected to manage work in fast-paced environments, across heterogeneous networks including cloud environments, some of which are Critical Information Infrastructure (CII).
  • Tenable Security Center Specialist or equivalent certification is a mandatory requirement for this role. Candidates who do not have the relevant certification are advised not to apply.
Preferred Qualifications,Knowledgeand Experience
  • oProven ability to manage andmaintaincyber security operations.
  • Good understanding of Vulnerability Management (VM) and Compliance Management processes, with hands-on experience using enterprise security tools such as Tenable Nessus and Palo Alto Networks Prisma Cloud (formerly Twistlock) for vulnerability assessment, compliance monitoring, and remediation support.
  • Experience with automation tools and scripting (Ansible, Python, PowerShell)to automate repetitive tasks.
  • Experience with Singapore Government security standards and compliance frameworks (IM8, CSA guidelines).
  • Experience inharnessingAI solutions tocontinuously improvecybersecurityoperations efficiency, including processes and service delivery,isadvantageous.
  • Experience indemonstratingAI literacy with the ability to use AI tools responsibly, ethically, and securely, ensuring compliance with organisational policies, data privacy, confidentiality, and governancerequirements.
  • Understanding of financial sector security requirements and regulations.
  • Tenable Security Center Expert or equivalent certification is preferred.
Deliverables

In addition to the core responsibilities of the role, the engineer will be expected to drive continuous improvement of the Tenable platform through the following AI and automation deliverables:

1. AI-Assisted Tenable Audit File Engineering & Lifecycle Management

oDevelop AI-assisted and automation capabilities to support the end-to-end lifecycle of Tenable Audit Files, including analysis, modification, validation, testing, deployment and ongoing maintenance.

  • Leverage AI to assist with mapping changes in CIS Benchmarks against existing Tenable Audit Files and identify compliance checks requiring modification, addition or retirement.
  • Develop and customise Tenable compliance checks to align with organisational security standards, regulatory requirements and approved deviations.
  • Automate impact analysis and documentation of changes made to Tenable Audit Files, including control mappings, modification rationale and version history.
  • Implement appropriate validation and testing processes to ensure the accuracy and reliability of AI-assisted Audit File modifications.
  • Ensure all AI-generated or AI-assisted changes are subject to engineer review and controlled testing prior to production deployment.
2. Automation of Repetitive Tenable Platform Tasks

oDesign and implement automation using Tenable APIs, Python, PowerShell and Ansible to reduce manual effort associated with recurring Tenable platform administration and engineering activities.

  • Automate routine activities including asset management, platform and scanner health checks, scan configuration, scanner administration, compliance scan management, Audit File lifecycle management, housekeeping and reporting.
  • Develop automated monitoring and health-check mechanisms to proactively identify scanner, scan, plugin, connectivity and platform-related issues.
  • Automate collection of diagnostic information and routine troubleshooting activities to improve incident investigation and resolution time.
  • Develop reusable scripts, workflows and automation modules to standardise common Tenable operational activities and reduce human error.
  • Maintain appropriate documentation, source control and operational procedures for developed automation to ensure maintainability and knowledge transfer.
Expected Outcomes

oThe above deliverables should contribute towards reducing manual operational effort, improving consistency and reliability of Tenable platform operations, accelerating the maintenance of CIS compliance content, and strengthening the team's overall Tenable engineering capability.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Engineer (CyberSecurity)
IT Security Engineer (CyberSecurity)

JOBSTER PRIVATE LTD. • Singapore

On-site
SGD 90,000 - 170,000
Security Engineer Tenable
Security Engineer Tenable

Unison Group • Singapore

On-site
SGD 120,000 - 180,000
Security Engineer
Security Engineer

TECH AALTO PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Security Engineer Tenable
Security Engineer Tenable

JEET ANALYTICS PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Security Engineer REQ122
Security Engineer REQ122

User Experience Researchers Pte Ltd • Singapore

On-site
SGD 120,000 - 180,000
Cyber Security Development Engineer (Tenable and Rapid7)
Cyber Security Development Engineer (Tenable and Rapid7)

NCS Group • Singapore

On-site
SGD 42,000 - 70,000
Tenable Cybersecurity Engineer
Tenable Cybersecurity Engineer

RECRUIT EXPRESS PTE LTD • Singapore

On-site
SGD 90,000 - 130,000
Senior Security Tools Engineer - Tenable & Automation Lead
Senior Security Tools Engineer - Tenable & Automation Lead

Unison Group • Singapore

On-site
SGD 120,000 - 180,000
Security Engineer
Security Engineer

UARROW PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Security Engineer
Security Engineer

RISKDATA CONSULTING PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000