Lead Vulnerability Management Specialist
7 days ago
Responsibilities TikTok is the leading destination for short-form mobile video. At TikTok, our mission is to inspire creativity and bring joy. TikTok's global headquarters are in Los Angeles and Singapore, and its offices include New York, London, Dublin, Paris, Berlin, Dubai, Jakarta, Seoul, and Tokyo. Why Join Us Creation is the core of TikTok's purpose. Our products are built to help imaginations thrive. This is doubly true of the teams that make our innovations possible. Together, we inspire creativity and enrich life - a mission we aim towards achieving every day. To us, every challenge, no matter how ambiguous, is an opportunity; to learn, to innovate, and to grow as one team. Status quo? Never. Courage? Always. At TikTok, we create together and grow together. That's how we drive impact-for ourselves, our company, and the users we serve. Join us. The mission of TikTok's Global Security Organization is to build and earn trust by reducing risk and securing our businesses and products. Also known as "GSO", this team is the foundation of our efforts to keep TikTok safe, secure, and operating at scale for over 1 billion people around the world. We work to ensure that the TikTok platform is safe and secure, that our users' experience and their data remains safe from external or internal threats, and that we comply with global regulations wherever TikTok operates. Trust is one of TikTok's biggest initiatives, and security is integral to our success. In whatever ways users interact with us — whether they're watching videos on their For You page, interacting with a Live video, or buying products on TikTok Shop — GSO protects their data and privacy, so they can have a secure and trustworthy experience. The Lead Vulnerability Engineer is tasked with the day to day activities of the Vulnerability Management Team. They schedule, conduct, and regularly review vulnerabilities, analyzing for key risks and escalating where needed. They should be aware of current policies and procedures and ensure they are being followed properly. The Lead Vulnerability Engineer should have hands on experience with vulnerability management tools and be able to mentor and advise other team members. **Responsibilities**: Vulnerability Assessment - Provide expert guidance and recommendations to development teams on how to effectively remediate/patch vulnerabilities, including code changes, configuration adjustments, and best practices in secure coding **Documentation and Reporting**: - Develop processes and document procedures for use by other team members and to enhance efficiencies - Maintain regular communication with Vulnerability Management Lead and organizational management for collaboration, process optimization, tools tuning, and information sharing **Security Awareness Training**: - Promote security awareness within the organization by conducting training sessions, sharing insights on emerging threats, and fostering a culture of security consciousness **Scripting Coding & Automation**: - Develop scripts, plugins, or integrations to automate repetitive tasks and streamline workflows - Write and maintain scripts (e.g., Python, PowerShell) to automate vulnerability scanning, analysis, and remediation activities **Compliance & Audit Support**: - Participate in audits and assessments to validate vulnerability management processes - Implement controls to address compliance requirements related to vulnerabilities - Assist in the preparation of security reports for compliance and audit purposes **Qualifications**: **Minimum Qualifications**: - Knowledge of common vulnerabilities, vulnerability scoring systems (e.g. CVSSv3) and remediation steps (e.g., OWASP Top 10, Patch Management) - Hands-on experience with cloud platforms (AWS, Azure, GCP) and container technologies (Docker, Kubernetes). - Knowledge of container security best practices (e.g., container hardening, image scanning, runtime security) and familiarity with security scanning tools for cloud environments (e.g., Prisma Cloud, Aqua Security, Sysdig) - Ability to conduct root cause analysis against vulnerabilities and determine feasible technical solutions - Ability to work alongside other security functions to determine vulnerability scoring and impact - Strong communication, analytical and problem-solving skills **Preferred Qualifications**: - Bachelor’s Degree or industry equivalent work experience in vulnerability management in a security program - Approximately 5+ years of applicable experience - CISSP, CISM, or equivalent certification - Experience with external bug bounty programs (e.g., HackerOne, Bugcrowd) is a plus - Hands on operational experience with vulnerability management tools (e.g. Qualys, Nexpose) including the ability to deploy, configure, and run these tools - Familiarity with vulnerability management across SaaS and IaaS cloud platforms (e.g., AWS, Google Cloud, etc.) - Ability to handle large datasets and perform vulnerability analysis - Worki
-
Enterprise Vulnerability Management Lead
2 weeks ago
Singapore Security Vulnerability Management Full timeA cybersecurity firm in Singapore is seeking an experienced professional to oversee the enterprise-wide vulnerability management lifecycle. The successful candidate will identify, assess, and prioritize vulnerabilities across systems and infrastructure, ensuring alignment with risk and compliance requirements. Strong technical skills and experience with...
-
Assistant ManagerDeputy ManagerManager
2 weeks ago
Singapore Security Vulnerability Management Full timeYou will be responsible for overseeing the enterprise-wide vulnerability management lifecycle including identifying assessing prioritizing and driving the remediation of security vulnerabilities across systems applications and infrastructure to reduce cyber risk exposure. This role requires strong technical skills cross-functional coordination and experience...
-
Vulnerability Management Specialist
2 weeks ago
Singapore KRIS INFOTECH PTE. LTD. Full timeVulnerability Management Specialist is an individual role within the Data Security Services team and will be responsible for owning the Vulnerability Management. - The individual is supported by platform teams for remediation actions. - The position is pivotal for driving the process with various cross-functional (transverse) IT teams. - Person will be...
-
Vulnerability Management Specialist
2 weeks ago
Singapore OCBC Full timeJoin to apply for the Vulnerability Management Specialist role at OCBC . About OCBC As Singapore's longest established
-
Singapore Shapoorji Pallonji Group Full timeA leading infrastructure firm in Singapore is seeking a Vulnerability Management Specialist to assess vulnerabilities and recommend patch deployments. The role involves coordinating with teams for patch decisions and conducting periodic scans. Ideal candidates should have a Bachelor's degree in Cybersecurity or Computer Science and 5+ years of relevant...
-
Vulnerability Management Lead
2 weeks ago
Singapore PSA Corporation Limited Full timeA leading logistics company in Singapore is seeking a Vulnerability Management Specialist to oversee the enterprise-wide vulnerability management lifecycle. The role involves identifying and managing security vulnerabilities across systems, applications, and infrastructure. Ideal candidates will have at least 3 years of cybersecurity experience, strong...
-
Vulnerability Management Lead
2 weeks ago
Singapore SEATRIUM (SG) PTE. LTD. Full time**Responsibilities** - Know the vulnerability management lifecycle, including identification, assessment, reporting, prioritization, and remediation. - Lead the development, implementation, and continuous improvement of vulnerability management processes and tools. - Oversee vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7) and ensure accurate...
-
Vulnerability Management Lead
6 days ago
Singapore Seatrium Full timeJOB DESCRIPTIONKnow the vulnerability management lifecycle, including identification, assessment, reporting, prioritization, and remediation.Lead the development, implementation, and continuous improvement of vulnerability management processes and tools.Serve as the subject matter expert (SME) for vulnerability risk, patching standards, and remediation...
-
Vulnerability Management Specialist
5 days ago
Singapore SAGL CONSULTING PTE. LTD. Full time**Job Overview**: This role focuses on enhancing and implementing the global vulnerability management process to protect the organization and its customers from security threats. You will support vulnerability management across on-premises and cloud environments, primarily in the APAC and Greater China regions. The position involves identifying, assessing,...
-
Vulnerability Management Specialists
1 day ago
Singapore Shapoorji Pallonji Group Full timeVulnerability Management Specialists (IT/OT/Network)Responsibilities Assess vulnerabilities and recommend or plan patch deployments. Coordinate with business, application and system teams on patch decisions and schedules. Install updates and patches for servers, applications, and systems. Validate patch stability and compatibility. Conduct periodic scans on...