*GOV* Vulnerability Assessment Specialist
SCIENTEC CONSULTING PTE. LTD.
Vulnerability Assessment Specialist
- Working Location: Central
- Working Hours: Office Hours (Hybrid Arrangement)
- Salary Package: Up to $10,000 + AWS
The IT Security Officer supports the organisation in identifying, assessing, and tracking vulnerabilities and exposures across internal and external systems. The role works closely with system owners and stakeholders to ensure security findings are validated, prioritised, and remediated in a timely manner, contributing to an effective vulnerability management and attack surface monitoring programme.
Key Responsibilities
Attack Surface Monitoring & Vulnerability Management
- Monitor and review findings from Attack Surface Management (ASM) and Vulnerability Management tools
- Validate security findings and assess their relevance, severity, and potential impact
- Differentiate true positives from false positives based on system context and asset inventory
- Support prioritisation of vulnerabilities based on risk and business impact
Remediation Coordination
- Coordinate with system and application owners to track remediation actions
- Follow up on open findings to ensure timely resolution
- Support the management of risk acceptance and exception requests where required
- Communicate security findings clearly to technical and non-technical stakeholders
Reporting & Analysis
- Consolidate vulnerability data and remediation status for reporting purposes
- Track key metrics related to vulnerability exposure and remediation progress
- Identify recurring issues and trends across systems and environments
- Support preparation of management reports and security dashboards
Process & Continuous Improvement
- Support improvements to vulnerability management and ASM processes
- Assist in refining workflows, playbooks, and escalation procedures
- Contribute to the maintenance of security policies, standards, and procedures aligned with organisational and industry practices
Requirements
- Bachelor’s degree in Computer Science, Information Security, or a related discipline, or equivalent experience
- Understanding of cybersecurity principles, including vulnerability management, patch management, and CVSS scoring
- Familiarity with security tools such as Tenable, Qualys, Censys, or similar platforms
- Basic scripting or programming knowledge (e.g. Python) will be an advantage
- Ability to analyse security findings and make practical, risk-based recommendations
By submitting your resume, you consent to the collection, use, and disclosure of your personal information per ScienTec’s Privacy Policy (scientecconsulting.com/privacy-policy).
This authorizes us to:
Contact you about potential opportunities.
Delete personal data as it is not required at this application stage.
All applications will be processed with strict confidence. Only shortlisted candidates will be contacted.
Aloysius Tan Sheng Rong - R22110441
ScienTec Consulting Pte Ltd - 11C5781