Job matched to your search
Infrastructure Security Engineer (Vulnerability Management)
Morgan McKinley · Singapore
Free · Join 5,000+ job seekers using Qarera
How well do you match this role?
Tap the skills you already have — then see your real match score, what’s missing, and your resume fixed for this job.
Job description
We're hiring on behalf of an established organization in Singapore for an Infrastructure Security Engineer (Vulnerability Management) to join their team. This role sits at the intersection of operational technology (OT) and enterprise IT, offering genuine exposure to both industrial control environments and modern enterprise/cloud systems.
Responsibilities
- Evaluate security vulnerabilities across operational technology, SCADA, critical information infrastructure, and standard IT/network environments, and put forward practical remediation recommendations.
- Weigh the operational impact of proposed fixes on sensitive systems, assessing feasibility and compensating controls, and coordinating remediation timelines, patch windows and maintenance schedules with internal teams, system owners and external vendors.
- Help drive patch rollouts, firmware updates and post-deployment validation across servers, applications, network infrastructure and OT assets.
- Carry out scheduled vulnerability scans spanning OT, air-gapped, enterprise and cloud environments, while coordinating penetration tests and keeping asset inventories current.
- Provide occasional weekend support for emergency patches, critical releases, or planned maintenance windows.
- Maintain and report on key risk and performance indicators (vulnerability exposure, patch compliance, SLA performance) building dashboards and technical summaries for senior stakeholders and the security governance board.
- Draft supporting documentation for change requests, formal deviations and risk acceptance submissions.
- Support internal security reviews, risk assessments and audit cycles, and help ensure follow-through on resulting action items.
- Partner with the Vulnerability Management Lead to run remediation discussions with system owners and other stakeholders.
Requirements
- A Diploma/Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related discipline.
- At least 5 years of experience across OT/SCADA/critical infrastructure, network administration, general IT, or cybersecurity operations.
- Solid working knowledge of ISO 27001, CIS Benchmarks, risk assessment methodology, network security principles, and patch/vulnerability management practices.
- A strong troubleshooting instinct and comfortable diagnosing issues through patching, firmware updates and configuration changes.
Areas of Specialization
- Systems & Virtualization: Linux (Red Hat preferred), Windows, vCenter, ESXi, Kubernetes.
- Network & Security Infrastructure: Routers, switches, and firewalls (ACI, Cisco, Arista, F5, Check Point, Palo Alto); network flow analysis.
- Vulnerability Analytics & Reporting: 3+ years focused on vulnerability management, plus 5+ years in broader analytics, with strong dashboarding and reporting skills
Interested candidates may apply through the application system or send it to jho@morganmckinley.com. Shortlisted candidates will be notified.
Morgan McKinley Pte Ltd
Ho Ji Keat, Joey
EA Licence No: 11C5502
EA Registration No. R1983255
More jobs in Singapore
Browse related jobs
Don’t just read the job — see if you’ll get it.
Get your match score, a resume tailored to this exact role, and jobs like it — free.
Check my fit for this job