We are looking for Helpdesk Support Specialist to join Singapore government agency!
Attractive salary package and benefits (up to 24 days leaves + medical insurance)
Exciting opportunity to involve in running a Government Vulnerability Disclosure program
Fun and dynamic team, friendly working environment
Responsibilities:
Operations Management: Oversee the day-to-day operations of the CVDP, including receiving, assessing, and responding to vulnerability reports from external parties.
Triage and Prioritization: Evaluate incoming vulnerability reports, prioritize them based on severity and potential impact, and coordinate with relevant teams for resolution.
Tracking Remediation for Agencies: Handle enquiries and disputes from agencies, escalate deviations to the manager for independent assessment, send reminders for outstanding issues, receive vulnerability response forms from agencies, and update the status in JIRA. Chase agencies to send over source codes for further assessment if the vulnerability is due to insecure coding.
Coordinate Retesting: Coordinate retesting with researchers or triagers from bug bounty platforms to conduct initial retests and perform retests independently.
Documentation: Maintain detailed records of reported vulnerabilities, assessments, and remediation actions taken to address them.
Trend Identification: Identify trends in the vulnerabilities reports received and suggest the amendment to the rules of engagement / programme policy appropriately.
Reporting and Statistics: Upload statistics monthly to the Digital Governance platform system.
Supporting Weekend Duties: Being available to provide support for critical vulnerability reports or incidents during weekends, ensuring that emergency response, escalation procedures, documentation, and collaboration with relevant teams are effectively managed even outside regular working hours.
Support Integration and administration of JIRA with external systems
Requirements:
Singaporean only
Min 1 year of experience in penetration testing or cyber security field
Possess OSCP certification will be an added advantage
Entry level with strong interest in cyber security are welcome to apply (training will be provided)