Talent.com
This job offer is not available in your country.
Vulnerability & Security Posture Management Engineer

Vulnerability & Security Posture Management Engineer

BATKuala Lumpur, Kuala Lumpur, Malaysia
20 hours ago
Job description

Vulnerability & Security Posture Management Engineer

BAT Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia

BAT Digital Business Solution has an exciting opportunity for a Vulnerability & Security Posture Management Engineer in Subang Jaya.

Key Responsibilities

  • Security Posture Management : Develop and implement continuous monitoring and enforcement of security configurations and policies across various platforms, leveraging tools like Microsoft E5 capabilities (Defender External Attack Surface Management, Defender for Identity, Defender for Endpoint, Defender for Office 365, Defender for Cloud Apps).
  • Drive the reduction of configuration drift and ensure compliance with BAT security and technical standards, and external regulations.
  • Vulnerability Management : Lead the execution and optimization of vulnerability scanning using Qualys and other tools.
  • Analyze, prioritize, and report on vulnerabilities based on risk, exploitability, and business impact.
  • Proactively monitor threat intelligence feeds and advisories (e.g., CVE, CISA, NCSC, vendor bulletins) to stay current on emerging vulnerabilities and exploits.
  • Collaborate with IT and BAT partners to ensure timely and effective remediation efforts are implemented and tracked.
  • Attack Surface Management : Continuously discover and inventory all internal and external assets, including cloud resources, to maintain a comprehensive view of the attack surface.
  • Monitor for changes in the attack surface and proactively assess new exposures.
  • Reporting & Strategy : Generate clear, actionable reports and dashboards for technical teams and leadership detailing vulnerability status, trends, and risk reduction over time; contribute to the strategic planning and selection of security tools and technologies.
  • Other responsibilities as required to support security posture and risk reduction initiatives.

What are we looking for?

  • Minimum 3+ years of experience in information security, with hands-on focus on vulnerability management, threat analysis, or security posture management.
  • Deep hands-on experience with commercial and open-source security tools, including Qualys (or similar platforms like Tenable / Rapid7) and Microsoft E5 Security Stack (Defender for Endpoint, Defender for Identity, Defender for Cloud Apps) and Microsoft Exposure Management; cloud experience (Azure, AWS).
  • Understanding of threat intelligence sources (CVE, CISA, vendor advisories) and how to apply them to remediation efforts.
  • Strong ability to translate raw technical data into business-relevant risk and remediation priorities.
  • Excellent communication, collaboration, and project management skills to drive cross-functional security initiatives.
  • What we offer

  • Market-leading annual performance bonus (subject to eligibility).
  • Range of benefits varies by country, including diverse health plans, work-life balance initiatives, transportation support, and a flexible holiday plan with additional incentives.
  • Opportunities for internal advancement and career progression within BAT.
  • Access to online learning platforms and personalized growth programs to nurture leadership skills.
  • Commitment to continuous improvement within a transformative environment.
  • Why join BAT?

    BAT is recognized as a Global Top Employer and values collaboration, inclusion, and partnership. We welcome applicants from diverse backgrounds and support reasonable accommodations in the recruitment process where needed.

    #J-18808-Ljbffr

    Create a job alert for this search

    Security Engineer • Kuala Lumpur, Kuala Lumpur, Malaysia

    Related jobs
    • Promoted
    • New!
    Security Engineer

    Security Engineer

    OneConnect Financial TechnologyKuala Lumpur, Kuala Lumpur, Malaysia
    Design, implement, and maintain secure AWS network architectures (VPC, subnets, Transit Gateway, routing, NACLs, Security Groups). Define traffic flows for north-south and east-west traffic to enfor...Show moreLast updated: 20 hours ago
    • Promoted
    Senior Engineer, Product Security Engineering

    Senior Engineer, Product Security Engineering

    Dell TechnologiesCyberjaya, Selangor, Malaysia
    Senior Engineer, Product Security Engineering.Join Dell Technologies as a Senior Engineer, Product Security Engineering.The Dell Security & Resiliency organization manages security risk across all ...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    Security Engineer Full Time

    Security Engineer Full Time

    Career HorizonsKuala Lumpur, Kuala Lumpur, Malaysia
    We collaborate with leading financial institutions and industry partners to provide innovative and accessible financial solutions. Grown into a trusted financial services provider, offering a wide r...Show moreLast updated: 20 hours ago
    • Promoted
    • New!
    Security Engineer

    Security Engineer

    Acceron Digital Services Sdn BhdSelangorMalaysia, Selangor, Malaysia
    Administer and maintain system security stack (firewalls, IDS / IPS, SIEM / SOAR) while also performing continuous monitoring and log analysis. Administer and manage firewalls, IDS / IPS, endpoint protect...Show moreLast updated: 20 hours ago
    • Promoted
    • New!
    Security Engineer

    Security Engineer

    Doherty IT SolutionsKuala Lumpur, Kuala Lumpur, Malaysia
    We are actively seeking a Security Engineer to become an essential member of our security operations team, based in Kuala Lumpur, Malaysia. This role is crucial in managing security escalations and ...Show moreLast updated: 20 hours ago
    • Promoted
    • New!
    Cloud Security Engineer

    Cloud Security Engineer

    BTI Executive SearchKuala Lumpur, Kuala Lumpur, Malaysia
    Security Architecture & Implementation : .Design and implement secure, scalable, and resilient cloud infrastructure architectures across AWS / GCP / Azure. Identity & Access Management (IAM) : .Enforce the ...Show moreLast updated: 20 hours ago
    • Promoted
    Network, Endpoint & Cloud Security Engineer

    Network, Endpoint & Cloud Security Engineer

    Planex TechnologyKuala Lumpur, Kuala Lumpur, Malaysia
    Network, Endpoint & Cloud Security Engineer.We are seeking for an experienced Network & Endpoint Security Engineer to join our company. An enthusiastic and experienced IT security expert / engineer to...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Network Security Engineer

    Network Security Engineer

    SwisslogPetaling Jaya, Selangor, Malaysia
    Swisslog is shaping the future of intralogistics.As part of the KUKA Group, we are at the forefront of technology that is changing the world. Serving some of the biggest and most exciting brands acr...Show moreLast updated: 20 hours ago
    • Promoted
    Web3 Senior Security Engineer

    Web3 Senior Security Engineer

    Hyphen ConnectSepang, Selangor, Malaysia
    We are working with a decentralised exchange which looks to innovate on providing the best of CEXs and DEXs, focusing on building a safe, simple and scalable platform for trading.They differentiate...Show moreLast updated: 4 days ago
    • Promoted
    Security Engineer

    Security Engineer

    Refine GroupKuala Lumpur, Kuala Lumpur, Malaysia
    Doherty Associates (DA) has delivered IT solutions for over 30 years to some of the world’s most prestigious and demanding clients. We focus on the professional and financial services sectors, inclu...Show moreLast updated: 3 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    NexRoar Services Sdn BhdKuala Lumpur, Kuala Lumpur, Malaysia
    NexRoar Services is a Malaysia-based software development company with a global presence in India, the UK, and the USA.We specialize in building a leading human network for the digital age, aiming ...Show moreLast updated: 8 days ago
    • Promoted
    Security Engineer, Vulnerability Management

    Security Engineer, Vulnerability Management

    GrabPetaling Jaya, Selangor, Malaysia
    Security Engineer, Vulnerability Management.Grab is Southeast Asia's leading superapp.From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-...Show moreLast updated: 30+ days ago
    • Promoted
    AppSec Vulnerability Triage Analyst – VOC

    AppSec Vulnerability Triage Analyst – VOC

    RAPSYS TECHNOLOGIES PTE LTDKuala Lumpur, Kuala Lumpur, Malaysia
    Role : AppSec Vulnerability Triage Analyst – VOC.Location : Kuala Lumpur, Malaysia.Work Mode : Flexible office & remote.Analyze vulnerability reports and coordinate remediation efforts.Conduct thoroug...Show moreLast updated: 3 days ago
    • Promoted
    Ubuntu Security Engineer

    Ubuntu Security Engineer

    CanonicalSepang, Selangor, Malaysia
    Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Join or sign in to find your next job.Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Be among the first 25 a...Show moreLast updated: 6 days ago
    • Promoted
    Delivery Cyber Security Engineer

    Delivery Cyber Security Engineer

    Noventiq MalaysiaKuala Lumpur, Kuala Lumpur, Malaysia
    Delivery Cyber Security Engineer.We are seeking a Cloud Security Engineer to join the Delivery team in Kuala Lumpur, Malaysia. Noventiq Holdings PLC) is a premier global provider of digital transfor...Show moreLast updated: 30+ days ago
    • Promoted
    Vulnerability & Security Posture Management Engineer

    Vulnerability & Security Posture Management Engineer

    The British American Tobacco GroupSelangorMalaysia, Selangor, Malaysia
    BAT is evolving at pace into a global multi-category business.Our purpose is to create A Better Tomorrow™ by Building a Smokeless World. To achieve our ambition, we are looking for colleagues who ar...Show moreLast updated: 3 days ago
    • Promoted
    Cloud Security Engineer

    Cloud Security Engineer

    Accenture Southeast AsiaKuala Lumpur, Kuala Lumpur, Malaysia
    Design, implement, and manage security solutions for cloud environments (e.Develop and enforce cloud security policies, standards, and best practices. Monitor and respond to security incidents and v...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Security Engineer

    Senior Security Engineer

    CarsomeSelangorMalaysia, Selangor, Malaysia
    The Senior Security Engineer II is a hands-on technical expert responsible for the implementation, automation, and maintenance of CARSOME’s security infrastructure. This role plays a key function in...Show moreLast updated: 20 hours ago