Skip to sign up

Job matched to your search

Infrastructure Security Engineer (Vulnerability Management)

Morgan McKinley · Singapore

Singapore · On-siteFull-TimePosted Aug 14, 2026

Free · Join 5,000+ job seekers using Qarera

How well do you match this role?

Tap the skills you already have — then see your real match score, what’s missing, and your resume fixed for this job.

↑ tap the skills you have
Loading sign-in…
Free · no credit card · 30 seconds

Job description

We're hiring on behalf of an established organization in Singapore for an Infrastructure Security Engineer (Vulnerability Management) to join their team. This role sits at the intersection of operational technology (OT) and enterprise IT, offering genuine exposure to both industrial control environments and modern enterprise/cloud systems.

Responsibilities

  • Evaluate security vulnerabilities across operational technology, SCADA, critical information infrastructure, and standard IT/network environments, and put forward practical remediation recommendations.
  • Weigh the operational impact of proposed fixes on sensitive systems, assessing feasibility and compensating controls, and coordinating remediation timelines, patch windows and maintenance schedules with internal teams, system owners and external vendors.
  • Help drive patch rollouts, firmware updates and post-deployment validation across servers, applications, network infrastructure and OT assets.
  • Carry out scheduled vulnerability scans spanning OT, air-gapped, enterprise and cloud environments, while coordinating penetration tests and keeping asset inventories current.
  • Provide occasional weekend support for emergency patches, critical releases, or planned maintenance windows.
  • Maintain and report on key risk and performance indicators (vulnerability exposure, patch compliance, SLA performance) building dashboards and technical summaries for senior stakeholders and the security governance board.
  • Draft supporting documentation for change requests, formal deviations and risk acceptance submissions.
  • Support internal security reviews, risk assessments and audit cycles, and help ensure follow-through on resulting action items.
  • Partner with the Vulnerability Management Lead to run remediation discussions with system owners and other stakeholders.

Requirements

  • A Diploma/Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related discipline.
  • At least 5 years of experience across OT/SCADA/critical infrastructure, network administration, general IT, or cybersecurity operations.
  • Solid working knowledge of ISO 27001, CIS Benchmarks, risk assessment methodology, network security principles, and patch/vulnerability management practices.
  • A strong troubleshooting instinct and comfortable diagnosing issues through patching, firmware updates and configuration changes.

Areas of Specialization

  • Systems & Virtualization: Linux (Red Hat preferred), Windows, vCenter, ESXi, Kubernetes.
  • Network & Security Infrastructure: Routers, switches, and firewalls (ACI, Cisco, Arista, F5, Check Point, Palo Alto); network flow analysis.
  • Vulnerability Analytics & Reporting: 3+ years focused on vulnerability management, plus 5+ years in broader analytics, with strong dashboarding and reporting skills

Interested candidates may apply through the application system or send it to jho@morganmckinley.com. Shortlisted candidates will be notified.

Morgan McKinley Pte Ltd

Ho Ji Keat, Joey

EA Licence No: 11C5502

EA Registration No. R1983255

Don’t just read the job — see if you’ll get it.

Get your match score, a resume tailored to this exact role, and jobs like it — free.

Check my fit for this job
Loading sign-in…
Apply →