NCS

Cyber Security Development Engineer (Tenable and Rapid7)

NCS · Singapore, Singapore

IT Services and IT Consulting · 10,001+ employees

9 h ago
Junior (0-2 yrs) Full-time Singapore
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The engineer will support the deployment and configuration of vulnerability management platforms like Tenable and Rapid7 across various infrastructure environments. They will also perform vulnerability scans, validate results, and maintain technical documentation for security solutions.

What they look for

Tenable Rapid7 Vulnerability Management Nessus InsightVM Nexpose Cloud Security Python PowerShell Bash Network Security Compliance CIS Benchmarks NIST ISO 27001 Cybersecurity

Requirements

Candidates must be Singapore citizens with 1-3 years of experience in cybersecurity or IT infrastructure. A basic understanding of vulnerability management, networking, and cloud platforms is required, along with familiarity with operating systems and scripting.

Full description

Job Description

We are seeking a Vulnerability Management System Engineer to join our Cyber team. This is an entry-level Day 1 role where you will support the design and implementation of enterprise-grade vulnerability management solutions. Working alongside senior engineers, you will gain hands-on experience with cutting-edge platforms such as Tenable and Rapid7 while contributing to robust security solutions for our clients.

Job Description

Implementation Support

  • Assist in the deployment and configuration of Tenable (Nessus, Tenable.io, Tenable.sc) and Rapid7 (InsightVM, Nexpose) platforms
  • Support the installation of vulnerability scanners, agents, and sensors across cloud, hybrid, and on-premises environments
  • Configure scanning schedules, credential management, and basic network segmentation under supervision
  • Assist with Cloud Security Posture Management (CSPM) and Cloud Workload Protection (CWP) implementations
  • Support container security deployments and basic Kubernetes Security Posture Management (KSPM) configurations

Technical Configuration & Testing

  • Perform vulnerability scans and validate scan results across diverse infrastructure environments
  • Configure and test integration points with ticketing systems, SIEM platforms, and security tools
  • Assist in setting up compliance scanning policies (CIS, NIST, PCI-DSS, ISO 27001)
  • Support API integrations and basic automation workflows
  • Conduct quality assurance testing of implemented solutions

 Documentation & Reporting

  • Create and maintain technical documentation including configuration guides and runbooks
  • Document implementation steps, configurations, and troubleshooting procedures
  • Generate vulnerability reports and compliance dashboards
  • Assist in preparing handover documentation for Day 2 operations teams
  • Maintain accurate project records and implementation logs

 Learning & Development

  • Participate in knowledge transfer sessions with senior engineers and client teams
  • Stay current with vulnerability management best practices and emerging threats
  • Learn about security frameworks, compliance requirements, and industry standards
  • Develop proficiency in scripting and automation for security workflows
  • Build expertise in cloud security and DevSecOps practices

Qualifications

Technical Foundation

  • Due to project sensitivity, we can only consider Singapore Citizen
  • 1-3 years of experience in cybersecurity, IT infrastructure, or related technical roles
  • Basic understanding of vulnerability management concepts and security principles
  • Exposure to Tenable or Rapid7 platforms (hands-on experience, training, or certifications)
  • Familiarity with operating systems (Windows, Linux) and networking fundamentals
  • Basic knowledge of cloud platforms (AWS, Azure, or GCP)
  • Understanding of CVE/CVSS frameworks and vulnerability assessment methodologies

 Technical Skills

  • Comfortable working with command-line interfaces and basic scripting (Python, PowerShell, or Bash)
  • Understanding of network protocols, firewalls, and security architectures
  • Ability to read and interpret technical documentation
  • Basic knowledge of security compliance frameworks (CIS Benchmarks, NIST, ISO 27001)
  • Willingness to learn Infrastructure as Code (IaC) and CI/CD concepts

 Professional Attributes

  • Strong attention to detail and commitment to quality
  • Excellent problem-solving mindset and eagerness to learn
  • Good communication skills with ability to work collaboratively in teams
  • Self-motivated with ability to work under guidance and supervision
  • Adaptable and comfortable working in fast-paced project environments

Additional Information

We are driven by our AEIOU beliefs—Adventure, Excellence, Integrity, Ownership, and Unity—and we seek individuals who embody these values in both their professional and personal lives. We are committed to our Impact: Valuing our clients, Growing our people, and Creating our future.

 

Together, we make the extraordinary happen.

 

Learn more about us at ncs.co and visit our LinkedIn career site.

 

Scam Alert

 

We are aware of fraudulent job offers and impersonations of NCS recruiters. Phishing emails using convincing-looking but fake addresses are also commonly used to trick you into thinking that they come from official NCS sources.

 

Please note that all official communications from NCS Group will only be sent from verified corporate email addresses. Always check that the sender’s email address ends with the genuine NCS domain, @ncs.com.sg and beware of extra letters, symbols or misspellings. When in doubt, verify the sender’s identity by contacting us at [email protected].

  • Department: Others