Vulnerability Operations Engineer

Ensign InfoSecurity

Singapore

On-site

SGD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Ensign InfoSecurity is seeking a Vulnerability Ops Engineer to drive enterprise vulnerability management and evolve it toward Continuous Threat Exposure Management. You’ll coordinate remediation across on‑premise, cloud, and applications, with emphasis on risk-based prioritisation and automation.

You will leverage frontier AI models to accelerate vulnerability research and maintain validation discipline, while reporting progress to senior leadership.

Qualifications

  • Degree in Cybersecurity, Computer Science, Information Systems, or an equivalent technical field of study.
  • Minimum 3 years of experience in vulnerability management, security operations, or exposure management.
  • Hands-on experience with enterprise vulnerability management platforms (Tenable strongly preferred).
  • Strong foundation in vulnerability management methodologies and risk-based prioritisation (CVE, CVSS, KEV, EPSS).
  • Strong understanding of cloud environments and familiarity with CSPM tooling.
  • Experience managing remediation through ticketing workflows (Jira/Jira Service Management or equivalent).
  • Experience with frontier AI models and demonstrated ability to conduct AI-assisted vulnerability research and automation.
  • Proficiency in scripting and automation to integrate security platforms and streamline operations.
  • Clear written and verbal communication skills for cross-team coordination and reporting.

Responsibilities

  • Operate and continuously improve vulnerability management platforms across on-premise, cloud, and applications.
  • Drive Continuous Threat Exposure Management by scoping attack surfaces and mobilising remediation through workflows.
  • Prioritise exposures using risk-based methods and assess threat intel and exploit code.
  • Monitor and remediate cloud misconfigurations with CSPM tooling with infra partners.
  • Reconcile assets with the asset register and report coverage and risks.
  • Coordinate remediation between system owners, operations, and external vendors, track SLAs.
  • Leverage AI models to accelerate research, root-cause analysis and workflow efficiency.
  • Provide management reporting on remediation performance and exposure metrics.

Skills

Vulnerability management
Security operations
Exposure management
Cloud security
Automation
Scripting
Communication
AI-assisted security

Education

Bachelor's in Cybersecurity/CS/Info Systems

Tools

Tenable
Jira/Jira Service Management
Git
Docker
Kubernetes
Anthropic/OpenAI tooling

Job description

As a Vulnerability Ops Engineer, you will play a crucial role in implementing Ensign's cybersecurity vision by running our enterprise vulnerability management programme and driving its evolution into Continuous Threat Exposure Management (CTEM). Reporting to the Information Security Office, you will be at the operational centre of how we find, prioritise, and eliminate exposures across our infrastructure, applications, and cloud estate, assessing inherent risk and driving remediation decisions together with system owners.

Your primary focus is enterprise-wide impact analysis, risk-based prioritisation, and the rapid coordination of remediation. By leveraging advanced automation and frontier AI models, you will accelerate vulnerability research and analysis while maintaining the validation discipline that keeps AI-assisted work trustworthy and auditable. You will thrive in a dynamic, operationally focused environment where your work directly reduces the organisation's exposure to real-world adversaries.

Responsibilities
  • Enterprise Vulnerability Management: Operate and continuously improve our vulnerability management platforms and scanning infrastructure, ensuring reliable assessment coverage across on-premise, cloud, and application estates.
  • Exposure Management (CTEM): Drive the evolution from point-in-time vulnerability management to Continuous Threat Exposure Management: scope the attack surface, discover exposures across software vulnerabilities, cloud and configuration posture, and external attack surface, validate exploitability, and mobilise remediation through ticketed workflows with measurable programme metrics.
  • Risk & Impact Analysis: Prioritise exposures using threat-informed, risk-based methods. Assess threat actor intelligence, exploit code, and proof-of-concept code to determine realistic attack vectors.
  • Cloud Security Posture: Monitor and remediate cloud misconfigurations through Cloud Security Posture Management (CSPM) tooling, partnering with infrastructure teams to keep secure configurations in place across a cloud-majority estate.
  • Coverage Assurance & Asset Reconciliation: Reconcile scanner-discovered assets against the asset register to close visibility gaps, report coverage ratios, and ensure no critical system sits outside assessment scope.
  • Remediation Coordination: Act as the coordination point between system owners, operations teams, and external vendors to drive timely risk reduction; manage remediation through ticketing workflows, track service-level agreement (SLA) compliance, and maintain the risk-exception register.
  • AI-Assisted Security Operations: Leverage frontier AI models and advanced automation to accelerate vulnerability research, root-cause analysis, and workflow efficiency, validating AI outputs before action and handling operational data according to its classification.
  • Operational Reporting: Maintain comprehensive tracking of remediation performance, time-to-patch, exceptions, and exposure metrics, providing actionable management reporting to senior technology leadership.
Requirements
  • Degree in Cybersecurity, Computer Science, Information Systems, or an equivalent technical field of study.
  • Minimum 3 years of experience in vulnerability management, security operations, or exposure management.
  • Hands-on experience with enterprise vulnerability management platforms (Tenable strongly preferred), including scan architecture, authenticated scanning, and coverage tuning.
  • Strong foundation in vulnerability management methodologies and risk-based prioritisation frameworks (CVE, CVSS, KEV, EPSS).
  • Strong understanding of cloud environments (public, private, and hybrid) and familiarity with cloud security posture management.
  • Experience managing remediation through ticketing workflows (Jira / Jira Service Management or equivalent), including SLA tracking and exception handling.
  • Experience with frontier AI models (e.g. Anthropic, OpenAI, or similar) and the demonstrated ability to conduct AI-assisted vulnerability research, log analysis, or script generation, with strong output-validation habits.
  • Proficiency in scripting and automation to integrate security platforms and streamline operations.
  • Clear written and verbal communication skills for cross-team coordination and management reporting.
  • Operationally focused mindset with the ability to thrive in a dynamic, fast-paced environment centred on timely risk reduction.
Additional Experience/Knowledge (Good to haves)
  • Experience integrating automated security checks and vulnerability testing into CI/CD pipelines and the software development lifecycle, with knowledge of DevOps tooling (Git, Docker, Kubernetes).
  • Aptitude for vulnerability research and exploit development, demonstrated professionally or through Capture the Flag (CTF) challenges.
  • Experience with external attack surface management (EASM) or automated security validation tools.
  • Comfort working with data through APIs, JSON, and query languages (e.g. SQL) to automate reporting and analysis.
  • Professional certifications in vulnerability management or offensive security (e.g. Tenable certifications, CISSP, GIAC, OSCP).
  • Experience in a Linux environment, deploying applications to the cloud, or an intermediate understanding of N-tier architecture.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

CTEM-Driven Vulnerability Operations Engineer
CTEM-Driven Vulnerability Operations Engineer

Ensign InfoSecurity • Singapore

On-site
SGD 90,000 - 130,000
Security Managed Services Lead (VAPT)
Security Managed Services Lead (VAPT)

Accenture Southeast Asia • Singapore

On-site
SGD 140,000 - 180,000
Security Engineer - Cyber Threat Management
Security Engineer - Cyber Threat Management

KWE-APLL Technology Services Pte Ltd • Singapore

On-site
SGD 120,000 - 180,000
Cyber Security Development Engineer (Tenable and Rapid7)
Cyber Security Development Engineer (Tenable and Rapid7)

NCS Group • Singapore

On-site
SGD 42,000 - 70,000
Security Analyst
Security Analyst

Tap Growth ai • Singapore

On-site
SGD 60,000 - 90,000
Senior Engineer, Security Operations
Senior Engineer, Security Operations

kwe-apll technology services pte ltd • Singapore

On-site
SGD 120,000 - 180,000
Security Analyst
Security Analyst

Rapsys Technologies Pte Ltd. • Singapore

On-site
SGD 60,000 - 100,000
Security Analyst
Security Analyst

RAPSYS TECHNOLOGIES PTE. LTD. • Singapore

On-site
SGD 70,000 - 110,000
Security Analyst
Security Analyst

RAPSYS TECHNOLOGIES PTE LTD • Singapore

On-site
SGD 70,000 - 90,000
AVP/VP, Cyber Security - Vulnerability Management
AVP/VP, Cyber Security - Vulnerability Management

Eames Consulting • Singapore

On-site
SGD 200,000 - 320,000