- Experience
- 3–5 yrs
- Salary
- —
- Openings
- 1
- Posted
- 4 hours ago
- Work mode
- In office
- Education
- Degree/Diploma in Computer Science, Cybersecurity, or related field
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
About OCBC
Established in 1932, OCBC is Singapore’s oldest bank committed to supporting individuals and businesses in achieving their goals through personalized services and innovative financial solutions. Currently undergoing a digital transformation, OCBC aims to become Asia’s foremost financial partner, leveraging technology and creativity while fostering a future-ready workforce.
Your Role
As a Cyber Engineering - Risk professional, you will play a vital role in protecting our customers’ data and assets, working on the front lines of cybersecurity in the financial sector. Collaborating with engineering teams, you will focus on identifying, prioritizing, and mitigating cyber risks through an effective vulnerability management program.
Key Responsibilities
- Implement and maintain a comprehensive vulnerability management strategy.
- Create and manage automated vulnerability scanning routines, asset classification, and risk-based prioritization.
- Evaluate scan outcomes, validate security exposures, and produce actionable analysis reports for both technical teams and executive leadership.
- Work alongside IT and application teams to monitor remediation progress and ensure prompt resolution of critical vulnerabilities.
- Design customized dashboards and key performance indicators to track vulnerability trends and compliance status.
- Enhance vulnerability management processes and tooling continuously.
- Ensure compliance with industry regulations such as MAS TRM, BNM RMIT, and HKMA guidelines, supporting audit preparations.
Candidate Profile
- Holds a degree or diploma in Computer Science, Cybersecurity, or related fields.
- Possesses 3 to 5 years of practical experience managing vulnerabilities and utilizing vulnerability assessment tools.
- Demonstrates solid knowledge of vulnerability scoring systems including CVSS, exploit techniques, and remediation solutions.
- Familiar with OWASP Top 10 security risks.
- Exhibits excellent communication skills to clearly translate technical vulnerabilities into business impacts.
- Experienced in working with regulatory compliance and audit standards.
- Proficient with Microsoft Office and skilled in programming with Python and Bash scripting.
- Hands-on experience with vulnerability assessment tools such as Tenable, Qualys, and Rapid7.
- Certifications such as CISSP, CISM, OSCP, GPEN, or GWAPT are advantageous.
Our Commitment
We offer a competitive salary along with a comprehensive range of flexible benefits tailored to diverse lifestyles. You will have opportunities for ongoing professional development and growth in an inclusive and empowering environment. We prioritize the wellbeing and aspirations of our employees equally with the needs of our customers.
Minimum education
Diploma / ITI / Vocational
Industry
Banking