Associate Vulnerability Management Engineer

3 days ago


Singapore Sony Electronics Full time

We look for the risk-takers, the collaborators, the inspired and the inspirational. We want the people who are brave enough to work at the cutting edge and create solutions that will enrich and improve the lives of people across the globe. So, if you want to make the world say wow, let's talk.

Sony Electronics Singapore (SES) is seeking a highly motivated, self-driven Associate Vulnerability Management Engineer to join Sony’s Global Security Incident Response Team (GSIRT) Integrated Threat Defense (ITD) team. This position will be responsible for supporting an Enterprise Vulnerability Management Program to secure Sony’s information assets, services, and the products that depend on them. This position will be located in Singapore and will report to the Senior Manager, Vulnerability Management.

What you will be doing
- Perform open-source research and analysis to identify newly disclosed vulnerabilities and emerging exploit techniques.
- Maintain awareness of the latest vulnerabilities, CVEs, misconfigurations, and exploitation trends.
- Write and distribute security advisories on critical vulnerabilities, including mitigation guidance and potential impact analysis.
- Identify and improve the process for collecting, analyzing, and prioritizing vulnerability data.
- Conduct regular assessments of vulnerability management tools and workflows to ensure effectiveness and efficiency.
- Create and update documentation for vulnerability management processes, tooling, and remediation workflows.
- Provide training and support to team members on the use of vulnerability scanning and assessment tools.
- Prepare detailed vulnerability assessment reports, risk analyses, and briefings for GSIRT and relevant stakeholders.
- Support projects to improve vulnerability identification, risk scoring, and remediation tracking processes.
- Leverage threat intelligence to assess and prioritize vulnerabilities based on exploitability, active exploitation, and potential business impact.
- Collaborate with other Security and Incident Response Teams to support coordinated remediation and risk mitigation efforts.

What you should have
- Proven experience in vulnerability management, assessment, and remediation.
- Familiarity with scripting or basic programming (e.g., Python, PowerShell) to support vulnerability analysis and reporting tasks.
- Understanding of system and network security principles, vulnerability exploitation methods, and patch management practices.
- Basic understanding of vulnerability management frameworks and standards (e.g., CVSS, NVD, OWASP Top 10).
- Experience analyzing and correlating vulnerability data to inform risk-based remediation strategies and strengthen the organization’s security posture.
- Familiarity with vulnerability scanning and management tools (e.g., Qualys, Tenable, Rapid7).
- Strong work ethic and commitment to accomplish assigned tasks with a sense of urgency.
- Good communication and advocacy skills, both verbal and written, with the ability to express complex and technical issues in clear, business-relevant language.

Benefits you will have
- Flexible work arrangement (because we understand Life happens)
- Comprehensive medical benefits (including physical health screenings and term life insurance benefits)
- AWS and variable bonus
- Special staff purchase rates
- Flexible benefits (so you can claim for that staycay or gym membership you’ve been eyeing)
- Corporate social responsibility time off for 1 day each year to volunteer for a charity of your choice
- Milestone gifts (such as long service award and marriage gift because we want to celebrate both your professional and personal milestones)
- Wellness activities to promote healthy lifestyles
- Curated training programmes to encourage continuous professional development

At Sony, we strive to create a place for you to realise your potential and inspire you to make positive impact through innovation, smart collaboration and boundless curiosity. We are looking for people who believe that they can enrich lives and help us achieve our purpose - fill the world with emotion, through the power of creativity and technology.



  • Singapore Singapore Technologies Engineering Ltd Full time

    Job ID: 19506 - Location: ST Engineering Hub, SG - Description: **About ST Engineering** **ST Engineering** is a global technology, defence, and engineering group with offices across Asia, Europe, the Middle East, and the U.S., serving customers in more than 100 countries. The Group uses technology and innovation to solve real-world problems and improve...


  • Singapore Charterhouse-HK Full time

    **Job details**: **Job Type**: **Permanent** **Discipline**: **Banking & Financial Services** *** **Reference**: **AVPVM/KY171122** **Posted**: **about 2 hours ago** ***Banking & Financial Services** *** **AVP, Vulnerability Management**: **Job description**: My client is a well-established bank with a global network across Asia Pacific, Europe and...


  • Singapore SEDHA CONSULTING PTE. LTD. Full time

    **Vulnerability Assessment Analysts** **Job Scope**: - Perform scans and audits of systems to identify and categorize vulnerabilities. - Utilize various tools and software to systematically evaluate the security posture of IT infrastructures. - Analyse vulnerability reports and prioritize findings based on risk. **Qualifications**: - Strong understanding...


  • Singapore BitMEX Full time

    BitMEX is the world's leading cryptocurrency derivatives trading platform, which has pioneered cryptocurrency trading through relentless commitment to change, and continues to set benchmarks for innovation, liquidity, and security today. As the world's most advanced peer-to-peer crypto-products trading platform and API, BitMEX gives knowledge, confidence,...

  • Linux/Unix Engineer

    1 week ago


    Singapore Epergne Solutions Full time

    Linux/Unix Engineer - Patching and Vulnerability Management Join to apply for the Linux/Unix Engineer - Patching and Vulnerability Management role at Epergne Solutions Linux/Unix Engineer - Patching and Vulnerability Management Join to apply for the Linux/Unix Engineer - Patching and Vulnerability Management role at Epergne Solutions Job Title: Senior...


  • Singapore Assurity Trusted Solutions Full time

    Assurity Trusted Solutions (ATS) is a wholly-owned subsidiary of the Government Technology Agency (GovTech), incorporated to operate the National Authentication Framework (NAF) and National Certification Authority (NCA). We seek to be the Source of Trust in the use of digital services and committed to improving Trust and High Assurance of digital services by...


  • Singapore Sopra Steria Full time

    Middleware Vulnerability Management Engineer Company: Sopra Steria is a listed European tech leader specializing in Consulting, Digital Services, and Software. With 60,000 employees worldwide across Europe, North America and Asia, Singapore serves as the HQ for our APAC operations. We focus on delivering Infrastructure, Cloud and Cybersecurity services...

  • Cybersecurity Engineer

    22 hours ago


    Singapore NodeFlair Full time

    **Job Summary**: **Salary** S$8,000 - S$13,000 / Monthly **Job Type** **Seniority** Mid **Years of Experience** At least 3 years **Tech Stacks** Docker Go VMware Java Linux Kubernetes Python - Conduct cyber risk assessment (red team engagement) in support of technology initiatives to emulate the APT adversary scenarios, and help identify IT related risk...


  • Singapore Singapore Airlines Full time

    Information Technology - Senior Systems Engineer (Vulnerability Management)Join to apply for the Information Technology - Senior Systems Engineer (Vulnerability Management)role at Singapore Airlines . Job Overview The successful candidate will be part of the Information Security Department within the Information Technology Division. Key Responsibilities...


  • Singapore Seatrium Full time

    ***: - Know the vulnerability management lifecycle, including identification, assessment, reporting, prioritization, and remediation. - Lead the development, implementation, and continuous improvement of vulnerability management processes and tools. - Oversee vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7) and ensure accurate coverage and...