- Location
- Singapore
- Type
- Full-time
- Seniority
- Lead
- Closing date
- Today
- Source
- CareersPage
Description
Overview
The Triage Team Lead will oversee day-to-day triage operations, lead a team of triage specialists, and ensure vulnerability reports are assessed accurately, consistently, and within required timelines. The role combines team leadership, hands-on vulnerability triage, process improvement, automation, and stakeholder engagement.
Key Responsibilities
- Lead a lean team of triage specialists, ensuring the quality, consistency, efficiency, and timely processing of vulnerability reports.
- Manage team performance, workload, resource planning, and operational priorities.
- Perform hands-on vulnerability triage and validation when required, particularly during peak periods, complex cases, or escalations.
- Serve as the escalation point for complex vulnerability validation, categorisation, and severity-rating decisions.
- Mentor and train triage specialists on vulnerability analysis, assessment methodologies, documentation, and reporting standards.
- Own and continuously improve triage SOPs, workflows, processes, and supporting tools.
- Manage the integration and maintenance of key platforms used to support vulnerability triage activities.
- Develop scripts and automation using tools such as Python and workflow automation platforms to streamline triage, reporting, and system integrations.
- Liaise with government agencies, system owners, security researchers, and other stakeholders to facilitate effective vulnerability management and resolution.
- Support the Programme Team in coordinating internal and external stakeholders across CVDP activities.
- Analyse vulnerability trends and notable findings, and prepare reports, presentations, and insights for management and stakeholders.
- Undertake additional responsibilities as required to support programme objectives.
Requirements
- Degree in Cybersecurity, Computer Science, Information Technology, or a related technical discipline.
- OSCP certification.
- Good understanding of web application vulnerabilities, including the OWASP Top 10.
- Experience or strong knowledge in vulnerability validation, severity rating, vulnerability categorisation, root cause analysis, and remediation recommendations.
- Familiarity with security testing and vulnerability validation tools such as Burp Suite and Kali Linux.
- Strong analytical, investigative, and problem-solving skills.
- Good command of written and spoken English, with the ability to communicate technical findings clearly.
- Experience mentoring, coaching, or guiding junior team members.
- Strong communication and stakeholder management skills.
- Collaborative leadership style with a commitment to developing and supporting team members.
- Bug bounty, vulnerability disclosure, penetration testing, or government/regulated-environment experience is preferred.
- Ability to plan leave around scheduled GBBP and Pre-GBBP cycles to support programme operational requirements.
Why Join Us
Lead a specialised cybersecurity team supporting a high-impact government vulnerability discovery programme. This role offers direct exposure to complex vulnerability assessments, security researchers, and Whole-of-Government systems, with opportunities to develop deeper expertise in vulnerability management and cybersecurity leadership.
Skills
PythonLinuxCybersecurityPenetration Testing