jobs in MORGAN MCKINLEY PTE. LTD.

MORGAN MCKINLEY PTE. LTD. Hiring! Full Time Senior Cyber Security Operations Lead (2 Year Contract) in Islandwide (Singapore), Earn up to SGD 9,000 - Ricebowl

Senior Cyber Security Operations Lead (2 Year Contract)

MORGAN MCKINLEY PTE. LTD.

SGD9,000 - SGD9,000 Per Month

Islandwide (Singapore)

Share
Save

Working Location

  • Islandwide (Singapore) Singapore

Job Description

Responsibilities

Job Summary

We are seeking a highly skilled and motivated Senior Cyber Security Operations Lead to join our Cyber Security Operations team. The ideal candidate will play a key role in maintaining and enhancing the organisation’s cyber security technology stack, with a strong focus on security, compliance, operational efficiency, automation and service excellence. The role will have a particular focus on the administration, engineering and continuous improvement of the Tenable Vulnerability Management and Compliance Management platform. This includes platform architecture, vulnerability assessment, CIS Benchmark compliance, audit file engineering, automation and the responsible application of AI to improve operational efficiency.
Key Responsibilities

This role ensures the security posture of critical systems through proactive monitoring, incident response, system maintenance, and implementation of security enhancements across the organisation's technology stack.

Be part of a team that is responsible for managing and maintaining the cyber security operations of organisation: 

  • Lead Vulnerability Management (VM) of assigned cyber security tools, including proactive monitoring of vulnerabilities, planning remediation schedules, adhering to vulnerability deadlines and seeking deviations via Risk Assessment (RA).
  • Lead security compliance through regular system hardening, configuration management, and policy enforcement.
  • Lead IT lifecycle management.
  • Ensure timely and successful updates and upgrades whilst ensuring minimal disruption to business operations.
  • Plan downtime and collaborate with cross-functional teams for system updates and upgrades.
  • Support regular audits and perform remediation actions.
  • Work closely with vendors.
  • Provide operations support, in a multi-vendor network including Critical Information Infrastructure (CII).
  • Participate in Disaster Recovery (DR) exercise and contribute to architectural planning for managed security tools in cloud environments.
  • Manage tool setups and migrations.
  • Create, maintain and review technical documentation, Standard Operating Procedures (SOP) as part of Knowledge Management (KM).
  • Drive efficiencies through AI and automation.
  • Proactive documentation as part of Knowledge Management (KM).
  • Occasionally provide after-hours support including weekends as required.  

AI-Assisted Tenable Audit & Task Automation

  • Develop AI-assisted and automation capabilities to support the end-to-end lifecycle of Tenable Audit Files, including analysis, modification, validation, testing, deployment and ongoing maintenance.
  • Leverage AI to assist with mapping changes in CIS Benchmarks against existing Tenable Audit Files and identify compliance checks requiring modification, addition or retirement.
  • Develop and customise Tenable compliance checks to align with organisational security standards, regulatory requirements and approved deviations.
  • Automate impact analysis and documentation of changes made to Tenable Audit Files, including control mappings, modification rationale and version history.
  • Implement appropriate validation and testing processes to ensure the accuracy and reliability of AI-assisted Audit File modifications.
  • Ensure all AI-generated or AI-assisted changes are subject to engineer review and controlled testing prior to production deployment.
    Design and implement automation using Tenable APIs, Python, PowerShell and Ansible to reduce manual effort associated with recurring Tenable platform administration and engineering activities.
  • Automate routine activities including asset management, platform and scanner health checks, scan configuration, scanner administration, compliance scan management, Audit File lifecycle management, housekeeping and reporting.
  • Develop automated monitoring and health-check mechanisms to proactively identify scanner, scan, plugin, connectivity and platform-related issues.
  • Automate collection of diagnostic information and routine troubleshooting activities to improve incident investigation and resolution time.
  • Develop reusable scripts, workflows and automation modules to standardise common Tenable operational activities and reduce human error.
  • Maintain appropriate documentation, source control and operational procedures for developed automation to ensure maintainability and knowledge transfer.

Requirements
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field.

Minimum 5 years of hands-on experience in cybersecurity operations and security tool management.

Minimum 3 years of hands-on experience administering and maintaining the Tenable vulnerability management platform, including Tenable One, Tenable Security Center, Nessus Scanners, and related components.

Minimum 3 years of experience in administering and troubleshooting the Tenable Nessus platform, including agent-based scans, credentialed scans, plugin updates, scan policies, and vulnerability assessment operations.

Minimum 3 years of hands-on experience developing, maintaining, and optimizing Tenable Audit Files for CIS Benchmark compliance scans, including tailoring audit policies to organizational security standards and regulatory requirements.

Hands-on ability in operating Privileged Access Management (PAM) tools such as CyberArk.

Good vendor management skills.

Good written and verbal communication skills with demonstrated ability to influence and communicate effectively with non-technical audiences including management.

Applicants are expected to manage work in fast-paced environments, across heterogeneous networks including cloud environments, some of which are Critical Information Infrastructure (CII).

Tenable Security Center Specialist or equivalent certification is a mandatory requirement for this role. Candidates who do not have the relevant certification are advised not to apply.


If you are interested in this role and would like to discuss the opportunity further please click apply now or email Chew Kai-Xinn at ************* for more information.

Only shortlisted candidates will be responded to, therefore if you do not receive a reply within 14 days please accept this as notification that you have not been shortlisted.

Morgan McKinley Talent Solutions

Morgan McKinley Pte Ltd EA Licence No: 11C5502

EAP Registration No: R2196712

EAP Name: Chew Kai-Xinn

Important Information

Never provide your bank or credit card details when applying for jobs. Do not transfer any money or complete unrelated online surveys. If you see something suspicious, Report this Job ad.

Learn More