Associate Vulnerability Management Engineer

2 weeks ago


Singapore Sony Electronics Full time

We look for the risk-takers, the collaborators, the inspired and the inspirational. We want the people who are brave enough to work at the cutting edge and create solutions that will enrich and improve the lives of people across the globe. So, if you want to make the world say wow, let's talk.

Sony Electronics Singapore (SES) is seeking a highly motivated, self-driven Associate Vulnerability Management Engineer to join Sony’s Global Security Incident Response Team (GSIRT) Integrated Threat Defense (ITD) team. This position will be responsible for supporting an Enterprise Vulnerability Management Program to secure Sony’s information assets, services, and the products that depend on them. This position will be located in Singapore and will report to the Senior Manager, Vulnerability Management.

What you will be doing
- Perform open-source research and analysis to identify newly disclosed vulnerabilities and emerging exploit techniques.
- Maintain awareness of the latest vulnerabilities, CVEs, misconfigurations, and exploitation trends.
- Write and distribute security advisories on critical vulnerabilities, including mitigation guidance and potential impact analysis.
- Identify and improve the process for collecting, analyzing, and prioritizing vulnerability data.
- Conduct regular assessments of vulnerability management tools and workflows to ensure effectiveness and efficiency.
- Create and update documentation for vulnerability management processes, tooling, and remediation workflows.
- Provide training and support to team members on the use of vulnerability scanning and assessment tools.
- Prepare detailed vulnerability assessment reports, risk analyses, and briefings for GSIRT and relevant stakeholders.
- Support projects to improve vulnerability identification, risk scoring, and remediation tracking processes.
- Leverage threat intelligence to assess and prioritize vulnerabilities based on exploitability, active exploitation, and potential business impact.
- Collaborate with other Security and Incident Response Teams to support coordinated remediation and risk mitigation efforts.

What you should have
- Proven experience in vulnerability management, assessment, and remediation.
- Familiarity with scripting or basic programming (e.g., Python, PowerShell) to support vulnerability analysis and reporting tasks.
- Understanding of system and network security principles, vulnerability exploitation methods, and patch management practices.
- Basic understanding of vulnerability management frameworks and standards (e.g., CVSS, NVD, OWASP Top 10).
- Experience analyzing and correlating vulnerability data to inform risk-based remediation strategies and strengthen the organization’s security posture.
- Familiarity with vulnerability scanning and management tools (e.g., Qualys, Tenable, Rapid7).
- Strong work ethic and commitment to accomplish assigned tasks with a sense of urgency.
- Good communication and advocacy skills, both verbal and written, with the ability to express complex and technical issues in clear, business-relevant language.

Benefits you will have
- Flexible work arrangement (because we understand Life happens)
- Comprehensive medical benefits (including physical health screenings and term life insurance benefits)
- AWS and variable bonus
- Special staff purchase rates
- Flexible benefits (so you can claim for that staycay or gym membership you’ve been eyeing)
- Corporate social responsibility time off for 1 day each year to volunteer for a charity of your choice
- Milestone gifts (such as long service award and marriage gift because we want to celebrate both your professional and personal milestones)
- Wellness activities to promote healthy lifestyles
- Curated training programmes to encourage continuous professional development

At Sony, we strive to create a place for you to realise your potential and inspire you to make positive impact through innovation, smart collaboration and boundless curiosity. We are looking for people who believe that they can enrich lives and help us achieve our purpose - fill the world with emotion, through the power of creativity and technology.



  • Singapore MATRIX PROCESS AUTOMATION PTE. LTD. Full time

    The Vulnerability and Patch Management Specialist will play a leading role in driving information security analysis and vulnerability remediation. This position will report to the Head of Operations. This role is a key business enabler to provide information security risk analysis and strategic recommendations for the ongoing improvement of Information...


  • Singapore Singapore Technologies Engineering Ltd Full time

    Job ID: 19506 - Location: ST Engineering Hub, SG - Description: **About ST Engineering** **ST Engineering** is a global technology, defence, and engineering group with offices across Asia, Europe, the Middle East, and the U.S., serving customers in more than 100 countries. The Group uses technology and innovation to solve real-world problems and improve...


  • Singapore Singapore Technologies Engineering Ltd Full time

    Job ID: 19506Location: ST Engineering Hub, SGDescription: About ST Engineering ST Engineering is a global technology, defence, and engineering group with offices across Asia, Europe, the Middle East, and the U.S., serving customers in more than 100 countries. The Group uses technology and innovation to solve real-world problems and improve lives through its...


  • Singapore ST Engineering Full time

    About ST Engineering ST Engineering is a global technology, defence, and engineering group with offices across Asia, Europe, the Middle East, and the U.S., serving customers in more than 100 countries. The Group uses technology and innovation to solve real-world problems and improve lives through its diverse portfolio of businesses across the aerospace,...


  • Singapore beBeeCybersecurity Full time $90,000 - $120,000

    Enterprise Vulnerability Management LeadThis role involves overseeing the enterprise-wide vulnerability management lifecycle, including identifying, assessing, prioritizing, and remediating security vulnerabilities across systems, applications, and infrastructure to reduce cyber risks.The ideal candidate will have a strong background in cybersecurity, with...


  • Singapore Charterhouse-HK Full time

    **Job details**: **Job Type**: **Permanent** **Discipline**: **Banking & Financial Services** *** **Reference**: **AVPVM/KY171122** **Posted**: **about 2 hours ago** ***Banking & Financial Services** *** **AVP, Vulnerability Management**: **Job description**: My client is a well-established bank with a global network across Asia Pacific, Europe and...


  • Singapore NodeFlair Full time

    **Job Summary**: **Salary** S$8,000 - S$14,000 / Monthly EST **Job Type** Permanent **Seniority** Senior Mid **Years of Experience** At least 5 years **Tech Stacks** Docker Go play VMware Java Linux Kubernetes Python - We are seeking a highly motivated Cyber Security Engineer in the Binary Vulnerability Hunting domain to work with our Information...


  • Singapore KRIS INFOTECH PTE. LTD. Full time

    Focal point of contact for Vulnerability Management and related topics - Person will be responsible preparing the Vulnerability Management Plan and the executes plan through all the phases of Vulnerability Management Lifecycle. - Ensures that the Vulnerability scans are scheduled, configured in tool and are executed as per the schedule. Any failure of scans...


  • Singapore Peoplebank Full time

    1 day ago Be among the first 25 applicants 12 months contract Onsite work arrangement (first 6 months)Work location: Pasir Panjang The Opportunity Team works in Asia and Europe time zones and this role will be aligned primarily to France, UK and SGP working hours. Flexible rotations are allowed based on the nature of duties. The operational support of the...


  • Singapore Shopee Full time

    DepartmentEngineering and Technology- LevelExperienced (Individual Contributor)- LocationSingaporeThe Engineering and Technology team is at the core of the Shopee platform development. The team is made up of a group of passionate engineers from all over the world, striving to build the best systems with the most suitable technologies. Our engineers do not...