795,157open jobs
50,783companies
124,735added this week
Browse all
Salary
≈ $20k – $52k per year (Estimated)
Location
In office (Petaling Jaya)
Seniority
Staff
Employment
Full-Time

First seen by Alion on Sep 25, 2026.

Overview
Company
Impact
Profile match
StarHub is a Singaporean telecommunications company offering mobile, broadband, pay television and enterprise services. It has expanded into cybersecurity and regional managed network businesses. The company is listed on the Singapore Exchange.

Vulnerability Management Specialist

We are seeking a Vulnerability Management Specialist to lead the identification, assessment, prioritization, and remediation tracking of security vulnerabilities across our technology environment. This role will work closely with application, infrastructure, cloud, and security teams to reduce cyber risk through a structured, risk-based vulnerability management programme.

Key Responsibilities

Operate and maintain vulnerability scanning platforms, preferably including Tenable/Nessus and Qualys.

Conduct authenticated and unauthenticated vulnerability scans across servers, endpoints, network devices, cloud workloads, and applications.

Analyse scan results, validate findings, eliminate false positives, and assess business and technical risk.

Manage the end-to-end vulnerability lifecycle: discovery, triage, prioritisation, assignment, remediation tracking, validation, exception management, and closure.

Apply risk-based prioritisation using CVSS, exploitability, asset criticality, internet exposure, business impact, and known active threats.

Partner with infrastructure, application, cloud, and DevOps teams to define practical remediation plans and meet agreed remediation timelines.

Produce regular vulnerability reports, dashboards, metrics, and management updates, including SLA compliance, overdue findings, vulnerability ageing, and risk trends.

Maintain vulnerability management policies, procedures, asset coverage, scan schedules, and evidence for audit and compliance requirements.

Support remediation of application and software-supply-chain vulnerabilities through tools and platforms such as JFrog, Bitbucket, SonarQube, Fortify, and CI/CD pipelines.

Identify gaps in asset inventory, scanning coverage, and remediation ownership, and recommend process or automation improvements.

Stay current on emerging vulnerabilities, exploit activity, vendor advisories, and threat intelligence relevant to the organisation.

Required Qualifications

Degree in Cybersecurity, Information Technology, Computer Science, or equivalent practical experience.

Experience in vulnerability management, security operations, infrastructure security, application security, or a related cybersecurity function.

Hands-on experience with vulnerability scanning tools, especially Tenable/Nessus and/or Qualys.

Strong understanding of vulnerability management processes, including scanning, validation, CVSS, risk assessment, remediation verification, exception handling, and reporting.

Familiarity with common operating systems, networks, cloud environments, and enterprise infrastructure.

Understanding of common application vulnerabilities and the OWASP Top 10.

Experience working with ticketing and workflow tools such as Jira, ServiceNow, or equivalent.

Ability to analyse technical findings and explain risk and remediation actions clearly to technical and non-technical stakeholders.

Strong attention to detail, organisation, and follow-through in managing findings through closure.

Preferred Qualifications

Experience with application-security or DevSecOps platforms such as JFrog, Bitbucket, SonarQube, Fortify, SAST, DAST, SCA, and container-security tools.

Familiarity with cloud-security and cloud-native vulnerability management across AWS, Azure, or Google Cloud.

Knowledge of threat intelligence sources, CISA Known Exploited Vulnerabilities, and exploitability assessment.

Experience developing vulnerability dashboards, metrics, or automated reporting.

Security certifications such as Security+, CEH, CISSP, CISM, CSSLP, or relevant vendor certifications.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
795,157 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Petaling Jaya
$38k – $51k per year • In office • Tokyo
Python
Apply
≈ $22k – $45k per year (Estimated) • Remote (likely Russia) • Full-Time • 3+ years exp • Bachelor's Degree • Pervouralsk
DevOps
Docker
Kubernetes
Cybersecurity
OWASP
Apply
≈ $48k – $123k per year (Estimated) • In office • Courbevoie
Apply
≈ $69k – $163k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Cologne
DevOps
IAM
Cybersecurity
ISO 27001
SIEM
Apply
≈ $54k – $142k per year (Estimated) • In office • South Korea
Apply
$76k – $88k per year • In office
Python
JavaScript
TypeScript
SQL
Databases
MySQL
PostgreSQL
MariaDB
AI/ML
Machine Learning
Frontend
Next.js
React.js
DevOps
Rest API
Helm
CI/CD
Git
Docker
Kubernetes
Nginx
Grafana
Analytics
Power BI
ETL/ELT
Superset
Management
Slack
Miro
Confluence
Notion
Jira
Google Workspace
QA
Cypress
Playwright
Apply
$173k – $359k per year • In office • 7+ years exp • Bachelor's Degree • Akron
AI/ML
AI Agents
LLM
DevOps
CI/CD
Git
Kubernetes
FinOps
Management
Jira
Agile
Scrum
Kanban
Apply
≈ $39k – $95k per year (Estimated) • In office • Full-Time • Athens
Python
SQL
Python
pySpark
Databases
Databricks
Delta Lake
Azure SQL Database
AI/ML
Spark
DevOps
Azure
CI/CD
Git
Analytics
Power BI
Azure Data Factory
Collibra
Management
Agile
Apply
≈ $37k – $93k per year (Estimated) • In office • Full-Time • Athens
Python
PowerShell
Databases
Databricks
DevOps
Terraform
Azure DevOps
Azure
CI/CD
Git
Docker
Kubernetes
Grafana
Platform Engineering
Azure AKS
Management
Agile
Scrum
Apply
In office • Full-Time • Athens
Databases
Azure SQL Database
DevOps
Azure
CI/CD
Analytics
Azure Data Factory
Apply
≈ $22k – $49k per year (Estimated) • In office • Full-Time • 8+ years exp • Petaling Jaya
Databases
Snowflake
AI/ML
Amazon SageMaker
Machine Learning
DevOps
Splunk
CloudFormation
PagerDuty
Prometheus
CI/CD
AWS
Docker
Kubernetes
Blue-Green Deployment
Platform Engineering
Self-Healing
Amazon EKS
AWS Lambda
Amazon EC2
Cortex
Amazon S3
IAM
Amazon CloudWatch
Cybersecurity
GDPR
CVE
Management
Slack
ServiceNow
Apply
Senior QA Engineer 1 day ago
≈ $14k – $35k per year (Estimated) • In office • Full-Time • Petaling Jaya
Python
JavaScript
SQL
DevOps
Azure DevOps
GitHub Actions
GitLab CI
Azure
CI/CD
Jenkins
Platform Engineering
Management
Jira
Agile
QA
TestRail
Selenium
Cypress
Playwright
Appium
Postman
Rest-Assured
Apply
Community Manager 1 day ago
≈ $12k – $35k per year (Estimated) • In office • Full-Time • Petaling Jaya
Cybersecurity
TheHive
Apply
≈ $13k – $35k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Petaling Jaya
Design
AutoCAD
Apply
≈ $4.5k – $13k per year (Estimated) • In office • Full-Time • Petaling Jaya
Apply
≈ $8k – $20k per year (Estimated) • In office • Full-Time • 1+ year exp • Bachelor's Degree • Petaling Jaya
Apply
≈ $94k – $215k per year (Estimated) • In office • Full-Time • 15+ years exp • Jakarta • Petaling Jaya
Apply
See all jobs
This is one of many
795,157 more open roles from verified company boards, updated every day.