Middleware Vulnerability Consultant

2 days ago


Singapore ITCAN PTE. LIMITED Full time

Competencies (Technical / Behavioral): ▪ At least 10 - 15 years of technical experience in following middleware technologies listed below: o Open-source Apache Server (2.4.x) o Open-source Tomcat application Server (9.x, 10.x, 11.x) o Microsoft IIS server (IIS 10.x) o REDHAT Jboss EWS (Apache / Tomcat 5.x, 6.x) o REDHAT EAP application server (EAP 7.x) o Wildfly application server (35.x, 36.x) o IBM WebSphere Application server BASE & ND (8.x, 9.x) o IBM WebSphere MQ server (8.x, 9.0, 9.1, 9.2) o Oracle WebLogic server (12.x, 14.x) ▪ Analysis, remediation planning and execution for all overdue Vulnerabilities for IBM MQ, IBM WAS, Apache, Tomcat, Jboss EAP/EWS products. ▪ Analysis, remediation planning and execution for all Critical Compliance deviations on Digital Platform assets, and ideally on High deviations for IBM MQ, IBM WAS, Apache, Tomcat, Jboss EAP/EWS. ▪ Assess and implement Middleware technologies in line with compliance baseline and best practices, avoiding any disruptions to the business. ▪ Understand the principles of vulnerability scoring, including CVE, to accurately assess and prioritize tasks according to potential impact. ▪ Work with owners (system, network, application define realistic remediation timelines and verify patch applicability. ▪ Draft remediation tickets, track progress in the ticketing system (e.g., ServiceNow) and close the loop with validation testing. ▪ Ability to extract key details from large documents and take necessary action. Should be good with Excel built-in automation features. ▪ Re‑scan remediated assets to confirm vulnerability closure. ▪ Generate weekly, monthly, and quarterly dashboards (KPI: Mean Time to Remediate, % of assets compliant, open critical findings) using Tableau, Power BI, or Excel macros. ▪ Present status and trend analysis to senior leadership and cross‑functional committees (e.g., Security Steering, Streeco, IT Governance). ▪ Develop Ansible playbooks (Linux & Windows) and scripts (PowerShell, Python, Bash) to automate patch deployment, configuration hardening, and reporting. ▪ Enhancement of the current processes for remediation for all APAC assets where the remediation owner is Digital Platform (including assets provided to and supported for CIB, WM, Cardif entities), on the vulnerability management and compliance management remits. ▪ Continuous improvement of the security watch process for the products under APAC Digital Platform management, to proactively plan for patching. ▪ Experience in creating and producing Weekly/Monthly reports and Dashboard KPI. ▪ Obtain skill for reporting: Tableau / Power query / Excel Micro programing / Power BI / SQL query / Python / API. ▪ Optional skill set: Prometheus / Grafana / Kibana / ELK ▪ Obtain skill for automation: Ansible scripting + Ansible tower ▪ Middleware Skill: IBM MQ, IBM WAS, Apache, Tomcat, Jboss EAP/EWS ▪ To apply security vulnerability fixes on timely manner as per business needs. ▪ To apply security hardening policies for middleware products on timely manner as per business needs. ▪ Must have excellent written and verbal communication skills. Key Responsibilities: Technical Management * Responsible for the overall Middleware Vulnerability Management of Core Middleware systems in APAC (infrastructure in Singapore, Hong Kong, Japan and China) and regional oversight of the rest of APAC countries. * Must have a mindset to provide continuous team and service improvements, be risk adverse in change management, focus on mitigating middleware vulnerabilities and be eager to improve the monitoring, efficiency, reliability, capacity and quality of all IT services. * Strive to ensure 100% uptime for all Core Middleware systems infrastructure in APAC, taking into



  • Singapore Newtone consulting Full time

    We're looking for a Middleware Vulnerability Consultant to lead vulnerability and compliance management for core middleware systems. You'll plan and execute remediation for security vulnerabilities, automate reporting, and ensure compliance with industry standards. If you have a hands‐on approach, strong technical expertise in middleware, and enjoy...


  • Singapore Newtone Consulting Full time $90,000 - $120,000 per year

    We are seeking an experienced Middleware Vulnerability Consultant to oversee vulnerability and compliance management for core middleware systems. This role involves planning and executing remediation for security vulnerabilities, ensuring compliance with industry standards, and developing automated processes for reporting and dashboard...


  • Singapore Sopra Steria I2S Singapore PTE. LTD. Full time

    Company: Sopra Steria is a listed European tech leader specializing in Consulting, Digital Services, and Software. With 60,000 employees worldwide across Europe, North America and Asia, Singapore serves as the HQ for our APAC operations. We focus on delivering Infrastructure, Cloud and Cybersecurity services across the region. Description : This role is for...


  • Singapore ITCAN Pte Ltd Full time

    Description Get AI-powered advice on this job and more exclusive features. Essential Technical Knowledge/Skills At least 5 - 10 years of technical experience in middleware technologies listed below: Open-source Tomcat application Server (9.x, 10.x, 11.x) REDHAT EAP application server (EAP 7.x) Wildfly application server (35.x, 36.x) IBM WebSphere Application...


  • Singapore ITCAN Pte Ltd Full time

    Get AI-powered advice on this job and more exclusive features. Essential Technical Knowledge/Skills At least 5 - 10 years of technical experience in middleware technologies listed below: Open-source Tomcat application Server (9.x, 10.x, 11.x)REDHAT EAP application server (EAP 7.x)Wildfly application server (35.x, 36.x)IBM WebSphere Application server BASE &...


  • Singapore ITCAN PTE. LIMITED Full time

    Overview Competencies (Technical / Behavioral): At least 10 - 15 years of technical experience in following middleware technologies listed below: Open-source Apache Server (2.4.x)Open-source Tomcat application Server (9.x, 10.x, 11.x)Microsoft IIS server (IIS 10.x)REDHAT Jboss EWS (Apache / Tomcat 5.x, 6.x)REDHAT EAP application server (EAP 7.x)Wildfly...


  • Singapore Argyll Scott Singapore Full time

    Company / Role Overview This position offers an opportunity to join a high-performing regional IT operations team responsible for securing and maintaining critical middleware infrastructure across multiple APAC locations. The Middleware Vulnerability Consultant will play a central role in managing security compliance, patching, and remediation across a range...


  • Singapore SOPRA STERIA I2S SINGAPORE PTE. LTD. Full time $80,000 - $120,000 per year

    Company:Sopra Steria is a listed European tech leader specializing in Consulting, Digital Services, and Software. With 60,000 employees worldwide across Europe, North America and Asia, Singapore serves as the HQ for our APAC operations. We focus on delivering Infrastructure, Cloud and Cybersecurity services across the region.Description :This role is for a...


  • Singapore Sopra Steria Full time

    Middleware Vulnerability Management Engineer Company: Sopra Steria is a listed European tech leader specializing in Consulting, Digital Services, and Software. With 60,000 employees worldwide across Europe, North America and Asia, Singapore serves as the HQ for our APAC operations. We focus on delivering Infrastructure, Cloud and Cybersecurity services...


  • Singapore Sopra Steria I2S Singapore PTE. LTD. Full time

    Roles & Responsibilities Company: Sopra Steria is a listed European tech leader specializing in Consulting, Digital Services, and Software. With 60,000 employees worldwide across Europe, North America and Asia, Singapore serves as the HQ for our APAC operations. We focus on delivering Infrastructure, Cloud and Cybersecurity services across the region....