Stellenangebot
Exposure Manager
Als Exposure Manager bei Julius Baer in Singapur koordinieren Sie Penetrationstests und arbeiten mit internen sowie externen Stakeholdern zusammen, um Cyber-Bedrohungen zu mindern. Die Rolle erfordert 3–5 Jahre Erfahrung in IT-Sicherheit oder Compliance sowie starke organisatorische und kommunikative Fähigkeiten.
GENERAL DESCRIPTION
- As an Exposure Manager within our Security Compliance/Compliance Centre, you will play a vital role in supporting our proactive security testing program and exposure risk mitigation activities.
- You will coordinate the work with various internal and external stakeholders to help defend our organization against emerging cyber threats.
YOUR CHALLENGE
KEY TASKS ROLES AND ACCOUNTABILITIES
Program Management
- Manage multiple penetration testing engagements from initiation through reporting and remediation, liaising with multiple stakeholders and balancing priorities across multiple workstreams
- Drive program improvements, streamline, and revolutionize in collaboration with technical experts and technical experts
Stakeholder Engagement
- Act as the central point of contact for exposure management activities, liaising with internal teams (Application Security, Vulnerability Management, Product Owners) and external vendors
Requirements Gathering
- Organise and lead scoping sessions to align business need, technical constraints, and security test priorities.
Vendor Coordination
- Oversee external penetration testing partners, review statements of work, track deliverables, and ensure adherence to timelines
Logistics & Preparation
- Coordinate pre-engagement activities such as access provisioning, environment setup, and documentation collection
Expert Liaison
- Collaborate with senior security specialists in violence scopes, clarify findings, and coordinate complex technical scopes
Education & Coordination
- Act as the central point for questions and escalations relating to PTI program. Communicate effectively across teams and escalate when necessary
- within agreed SLA (e.g., acknowledgment within 1 business day, deep dives within 2 business days)
Exposure Management
- Support the response process for infrastructure vulnerabilities and configuration deviations linked to Sensitivity Vulnerability Response (SVR) finding risks and asset-compound resolution
Regulatory Responsibilities & CSR-Risk Management
- Documentation of assessment scope and methodology including but not limited to standards on honesty and integrity, tax due diligence, fair dealing (business customs) fee, management of conflict of interest, compliance and corporate development, adequate risk management, and more as defined by applicable laws and regulations
YOUR PROFILE
SKILLS REQUIREMENTS
Personal and Social
- Strong organizational and time management skills, ability to manage multiple projects simultaneously
- Excellent communication and stakeholder management skills, with a proactive and solution-oriented mindset
- Professional proficiency in English
Professional and Technical
- Bachelor’s degree in computer science, information security, or equivalent practical experience
- 3-5 years of experience in IT security governance, compliance, or vulnerability management, or technical project management
- Experience using SIEM tools or similar ITSM/ALM platforms
Regulatory
- Fundamental understanding of security configuration standards (e.g., DNISIG Top 10, CIS benchmarks) and vulnerability management principles
Jobdetails