Search by job, company or skills
Maltem Asia is seeking a Middleware Vulnerability Consultant for an Investment Banking Client based in Singapore.
Skillset (Must have):
. Analysis, remediation planning and execution for all overdue Vulnerabilities for IBM MQ, IBM WAS, Apache, Tomcat, Jboss EAP/EWS products.
. Analysis, remediation planning and execution for all Critical Compliance deviations on Digital Platform assets, and ideally on High deviations for IBM MQ, IBM WAS, Apache, Tomcat, Jboss EAP/EWS.
. Assess and implement Middleware technologies in line with compliance baseline and best practices, avoiding any disruptions to the business.
. Understand the principles of vulnerability scoring, including CVE, to accurately assess and prioritize tasks according to potential impact.
. Work with owners (system, network, application define realistic remediation timelines and verify patch applicability.
. Draft remediation tickets, track progress in the ticketing system (e.g., ServiceNow) and close the loop with validation testing.
. Ability to extract key details from large documents and take necessary action. Should be good with Excel built-in automation features.
. Rescan remediated assets to confirm vulnerability closure.
. Generate weekly, monthly, and quarterly dashboards (KPI: Mean Time to Remediate, % of assets compliant, open critical findings) using Tableau, Power BI, or Excel macros.
. Present status and trend analysis to senior leadership and crossfunctional committees (e.g., Security Steering, Streeco, IT Governance).
. Develop Ansible playbooks (Linux & Windows) and scripts (PowerShell, Python, Bash) to automate patch deployment, configuration hardening, and reporting.
. Enhancement of the current processes for remediation for all APAC assets where the remediation owner is Digital Platform (including assets provided to and supported for CIB, WM, Cardif entities), on the vulnerability management and compliance management remits.
. Continuous improvement of the security watch process for the products under APAC Digital Platform management, to proactively plan for patching.
. Experience in creating and producing Weekly/Monthly reports and Dashboard KPI.
. Obtain skill for reporting: Tableau / Power query / Excel Micro programing / Power BI / SQL query / Python / API.
. Optional skill set: Prometheus / Grafana / Kibana / ELK
. Obtain skill for automation: Ansible scripting + Ansible tower
. Middleware Skill: IBM MQ, IBM WAS, Apache, Tomcat, Jboss EAP/EWS
. To apply security vulnerability fixes on timely manner as per business needs.
. To apply security hardening policies for middleware products on timely manner as per business needs.
. Must have excellent written and verbal communication skills.
Job ID: 129377689