Job offer
Exposure Manager
As an Exposure Manager at Julius Baer in Singapore, you will coordinate penetration tests and collaborate with internal and external stakeholders to mitigate cyber threats. The role requires 3–5 years of experience in IT security or compliance, as well as strong organizational and communication skills.
GENERAL DESCRIPTION
- As an Exposure Manager within our Security Compliance/Compliance Center, you will play a vital role in supporting our proactive security testing program and exposure risk mitigation activities.
- You will coordinate efforts with various internal and external stakeholders to help protect our organization against emerging cyber threats.
YOUR CHALLENGE
KEY TASKS, ROLES, AND RESPONSIBILITIES
Program Management
- Manage multiple penetration testing engagements from initiation through reporting and remediation, liaising with multiple stakeholders and balancing priorities across multiple work streams
- Drive program improvements, streamline processes, and revolutionize operations in collaboration with technical experts
Stakeholder Engagement
- Serve as the central point of contact for exposure management activities, coordinating with internal teams (Application Security, Vulnerability Management, Product Owners) and external vendors
Requirements Gathering
- Organize and lead scoping sessions to align business needs, technical constraints, and security testing priorities.
Vendor Coordination
- Oversee external penetration testing partners, review statements of work, track deliverables, and ensure compliance with timelines
Logistics & Preparation
- Coordinate pre-engagement activities such as access provisioning, environment setup, and documentation collection
Expert Liaison
- Collaborate with senior security specialists on security-related issues, clarify findings, and coordinate complex technical matters
Education & Coordination
- Serve as the central point of contact for questions and escalations related to the PTI program. Communicate effectively across teams and escalate issues when necessary.
- within the agreed SLA (e.g., acknowledgment within 1 business day, in-depth analysis within 2 business days)
Exposure Management
- Support the response process for infrastructure vulnerabilities and configuration deviations related to Sensitivity Vulnerability Response (SVR) findings, risk assessment, and asset-specific resolution
Regulatory Responsibilities & CSR Risk Management
- Documentation of the scope and methodology of the assessment, including, but not limited to, standards regarding honesty and integrity, tax due diligence, fair dealing (business practices), fees, management of conflicts of interest, compliance and corporate development, adequate risk management, and other matters as defined by applicable laws and regulations
YOUR PROFILE
SKILLS REQUIREMENTS
Personal and Social
- Strong organizational and time management skills, and the ability to manage multiple projects simultaneously
- Excellent communication and stakeholder management skills, with a proactive and solution-oriented mindset
- Professional proficiency in English
Professional and Technical
- Bachelor's degree in computer science, information security, or equivalent practical experience
- 3–5 years of experience in IT security governance, compliance, or vulnerability management, or technical project management
- Experience using SIEM tools or similar ITSM/ALM platforms
Regulatory
- A fundamental understanding of security configuration standards (e.g., DNISIG Top 10, CIS benchmarks) and vulnerability management principles
Job details