Senior Manager, Patch

4 days ago


Kuala Lumpur, Kuala Lumpur, Malaysia Prudential Hong Kong Limited Full time

Senior Manager, Patch & Vulnerability Management

Senior Manager, Patch & Vulnerability Management

Apply locations Kuala Lumpur (Group Head Office) time type Full time posted on Posted 30+ Days Ago job requisition id 23070010

Prudential's purpose is to help people get the most out of life. We will deliver our purpose by creating a culture in which diversity is celebrated and inclusion assured, for our colleagues, customers, and partners. We provide a platform for our people to do their best work and make an impact to the business, and in exchange, we support our people's career ambitions. We pledge to make Prudential a place where you can Connect, Grow and Succeed.

The patch and vulnerability management are an ongoing, regular operations process of identifying, assessing, managing, remediating operating systems cyber vulnerabilities. The Patch & Vulnerability Management SME provides technical leadership in overseeing and managing the patch management process within Prudential group to protect Mission Critical Systems and Services to avoid unforeseen disruptions. This role will be primarily responsible for ensuring that all software and systems are up to date with the latest patches and hotfixes, minimizing security vulnerabilities, and maintaining optimal system performance. He/she will lead and manage a team of outsourced engineers to manage the end-to-end patch management activities. The role also requires close collaboration with various teams to develop and implement effective patch management strategies and ensures compliance with industry standards and best practices. The ideal candidate is expected to provide complex patch management program leadership within the enterprise and continuously promotes strong partnerships between Group Technology Operations (GTO) team and LBUs. This position is responsible for overseeing the effective IT operations following company risk management frameworks, and ensure alignment with the organisation's rapid growth and increasing regulatory requirements.

Roles and Responsibilities:

  • Provide domain and subject matter expertise in vulnerability and patch management.
  • Design, develop, review, and maintain a comprehensive patch management strategy and practice for the overall IT operations environment, considering security, operational, and business requirements.
  • Conduct regular patch management and vulnerability assessments to identify potential security risks and prioritize patching based on criticality, urgency, and impact. Such assessment should cover all layers of enterprise infrastructure, endpoints, server hardware, operating systems, and applications.
  • Collaborate with the security team to evaluate the risk associated with unpatched vulnerabilities and recommend appropriate mitigation strategies.
  • Closely collaborate with colleagues in Group Information Security & Privacy (GISP) team to review guidelines, policies, and procedures for patch management activities and ensure adherence across the organisation.
  • Review and coordinate the deployment of patches, updates, and security fixes across all systems, applications, and infrastructure.
  • Establish and/or enhance a standardised thorough testing process to verify the compatibility and stability of patches before deployment to production environments.
  • Work closely with infrastructure, application, security, and BU IT teams to schedule and implement patching activities with minimal impact on business operations.
  • Prepare detailed reports, metrics, and insights on patch compliance, analyse vulnerability remediation progress, and system performance to management and stakeholders. Regularly communicate the progress of patch management initiatives to senior leadership.
  • Analyse threats, vulnerability feeds, patch management gaps and propose continuous improvement / remediation plans.
  • Demonstrating system health and patching / vulnerability remediation compliance status based on predefined standards and routine maintenance of patch management.
  • Provide support during incident response efforts related to vulnerabilities or issues arising from patching activities.
  • Investigate and troubleshoot patch-related problems, collaborating with relevant teams to identify root causes and implement corrective actions.
  • Work within the change management and service management processes within Group Technology teams for all patch management coordination and execution.
  • Support the production of change risk assessments planned by Group Technology teams performing patch management and be able to present the changes to Change Advisory Boards, both internal and external.
  • Support technical evaluation and evidence for security assessments and audits.
  • Staying updated on new developments, emerging threats and vulnerabilities in cybersecurity standards, best practices and technologies related to patch management.

Desirable Qualifications, Skills and Experience:

  • Bachelor's degree and/or advanced diploma in IT related or relevant field.
  • At least 10 years of experience in Information Technology Operations, Engineering and/or IT Security function.
  • 8 or more years of proven experience in IT patch management, vulnerability remediation, patch deployment experience, or a similar role.
  • Proven track record in developing and implementing a vulnerability and patch management program utilising a Vulnerability and Patch Management Framework such as NIST Cybersecurity Framework.
  • Demonstrated knowledge in systems vulnerability management and system hardening to mitigate Common Vulnerability and Exposures (CVE).
  • Strong knowledge of software patching methodologies and deployment tools such as SCCM, Red Hat Satellite and Jamf is preferred.
  • Solid experience in managing patch management for enterprise-wide Operating Systems such as Microsoft, Linux, AIX, AS400, Endpoint Protection software & tools.
  • Familiarity with vulnerability assessment tools (Qualys, Nessus, etc.) and techniques is a plus.
  • Experience with patch management automation systems and deployment methodologies.
  • Solid understanding of legacy and modern IT Infrastructure architectures & related technologies, network/web related protocols, security principles, and common security vulnerabilities.
  • Excellent communication and collaboration skills to work effectively with cross-functional teams, and manage stakeholder engagement.
  • Must understand cloud computing and IAAS services from patch management aspect.
  • Solid experience in project management and execution in IT Infrastructure / Operations.
  • Sound knowledge in ITIL, IT operations, project methodology and tools.
  • Self-driven & motivated, tenacious problem solver will own issues until full resolution.
  • Ability to carry out tasks to a high standard with a strong eye for attention to detail and thorough approach to their work.
  • Demonstrate strong analytical and problem-solving skills, excellent judgement, and possess a passion for continuous learning.
  • Background in regulated global companies a plus (financial institutions, pharmaceutical, healthcare, or similar).
  • Experience managing and working with MSP, minimum of 3 years of experience managing diverse technical teams.

Prudential is an equal opportunity employer. We provide equality of opportunity of benefits for all who apply and who perform work for our organisation irrespective of sex, race, age, ethnic origin, educational, social and cultural background, marital status, pregnancy and maternity, religion or belief, disability or part-time / fixed-term work, or any other status protected by applicable law. We encourage the same standards from our recruitment and third-party suppliers taking into account the context of grade, job and location. We also allow for reasonable adjustments to support people with individual physical or mental health requirements.

#J-18808-Ljbffr

  • Kuala Lumpur, Kuala Lumpur, Malaysia Prudential Hong Kong Limited Full time

    About the RoleThis is an exciting opportunity to work with a leading financial services company in Hong Kong. As a Patch Management Specialist, you will be responsible for managing the end-to-end patch management activities, working closely with various teams to develop and implement effective patch management strategies and ensuring compliance with industry...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Prudential Hong Kong Limited Full time

    About the TeamOur team is responsible for providing technical leadership in overseeing and managing the patch management process within Prudential group to protect Mission Critical Systems and Services to avoid unforeseen disruptions. We are looking for a Senior IT Operations Manager who can provide complex patch management program leadership within the...

  • IT Security Manager

    4 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Prudential Hong Kong Limited Full time

    Job DescriptionWe are seeking an experienced IT Security Manager to join our team at Prudential Hong Kong Limited. The successful candidate will be responsible for overseeing the patch management process within our organisation, ensuring that all software and systems are up to date with the latest patches and hotfixes, minimising security vulnerabilities,...


  • Kuala Lumpur, Kuala Lumpur, Malaysia AIA Hong Kong and Macau Full time

    Senior Manager, End User ExperienceAIA Digital+ is a technology innovation hub dedicated to powering AIA's digital transformation. As a Senior Manager, End User Experience, you will play a key role in shaping the future of end-user technology at AIA.Our team is responsible for defining and implementing global build standards for Windows, iOS, and Android...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Syarikat Takaful Malaysia Full time

    Job SummaryThe Senior Executive will be responsible for overseeing and managing virtualization platforms, Linux and Windows servers, backup solutions, and SAN storage systems to ensure the stability and reliability of critical insurance applications. The incumbent will conduct regular system health checks, troubleshoot and resolve incidents, and optimize...

  • senior executive

    2 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Syarikat Takaful Malaysia Full time

    The incumbent will be responsible for overseeing and managing virtualization platforms, Linux and Windows servers, backup solutions, and SAN storage systems to ensure the stability and reliability of critical insurance applications.Key Responsibilities:Conduct regular system health checks, troubleshoot and resolve incidents, and optimize system...


  • Kuala Lumpur, Kuala Lumpur, Malaysia AIA Hong Kong and Macau Full time

    Senior Manager, End User ExperienceApply locations Kuala Lumpur, AIA Digital+ Malaysia time type Full time posted on Posted Yesterday job requisition id JR-53475Are you ready to shape a better tomorrow?AIA Digital+ is a Technology, Digital and Analytics innovation hub dedicated to powering AIA to be more efficient, connected and innovative as it fulfills its...


  • Kuala Lumpur, Kuala Lumpur, Malaysia CLSA Global Markets Pte Ltd Full time

    At CLSA Global Markets Pte Ltd, we are seeking a highly skilled Senior IT Executive to oversee and manage our information technology operations.Job DescriptionThe primary responsibility of this role is to ensure the effective implementation and optimization of IT systems and services to support the organization's goals and objectives. This includes...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Wiki Labs Sdn Bhd Full time

    The Technical Account Manager (TAM) – Red Hat acts as a trusted advisor to enterprise clients, ensuring the successful adoption, deployment, and lifecycle management of Red Hat solutions. The TAM provides proactive technical guidance, incident management support, and best practice recommendations to enhance system performance and operational...


  • Kuala Lumpur, Kuala Lumpur, Malaysia AIA Hong Kong and Macau Full time

    Job DescriptionThe Senior Manager, End User Experience, will lead the end-user technology function globally within AIA's 18 local business units. This role requires a strong technical background in end-user technologies, including Microsoft SCCM, Intune, GPO, workstation OS build, Windows patching, etc.Defining the target state for end-user technology used...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Alliance Bank Malaysia Berhad Full time

    About the RoleWe are looking for an experienced IS Security Governance Specialist to join our team at Alliance Bank Malaysia Berhad. The successful candidate will be responsible for leading the development and implementation of IS security governance policies and procedures, overseeing the management of IS security tools, and ensuring compliance with...


  • Kuala Lumpur, Kuala Lumpur, Malaysia AIA Hong Kong and Macau Full time

    Key ResponsibilitiesThe Senior Manager, End User Experience, will be responsible for the following key areas:Managing end-user related technologies supporting 18 local business units.Responsible for modern device management Intune solution for 45K+ devices across AIA to simplify and centralize the device management.Leading the process to select...


  • Kuala Lumpur, Kuala Lumpur, Malaysia OSK Group Full time

    OSK Group Federal Territory of Kuala Lumpur, MalaysiaSenior Executive, HRMS & Data AnalystOSK Group Federal Territory of Kuala Lumpur, MalaysiaPeople Experience | Talent Acquisition | Employer Branding | Campus Engagement | MentoringYour responsibilities will be:Ensure the timely implementation of database changes to ensure accurate payrolls.Ensure the...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Ant International Full time

    Senior Site Reliability Engineer (DevOps)Ant International powers the future of global commerce with digital innovation for everyone and every business to thrive. In close collaboration with partners, we support merchants of all sizes worldwide to realize their growth aspirations through a comprehensive range of tech-driven digital payment and financial...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Cyber Olympus Full time

    Cyber Olympus WP. Kuala Lumpur, Federal Territory of Kuala Lumpur, MalaysiaDirector at Cyber Olympus Software HouseMandatory SkillsetAIX, Solaris, Red Hat Linux, CentOS, Ubuntu (Fresh installation, patching, system hardening).Unix Scripts, Perl and Python scripting.Middleware such as Weblogic, WebSphere, Openshift, JBOSS, Ansible, opensource (kibana, spark...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Mühlbauer GmbH & Co. KG Full time

    We are seeking a highly skilled and experienced Senior Database Administrator to join our team at Mühlbauer GmbH & Co. KG.The ideal candidate has a strong background in database migration and conversion, performance tuning, automation, and troubleshooting across on-premise and cloud environments.Key Responsibilities:Administer and optimize database systems...


  • Kuala Lumpur, Kuala Lumpur, Malaysia CLSA Global Markets Pte Ltd Full time

    Senior IT Manager, Information TechnologySenior IT Manager, Information TechnologyApply locations Kuala Lumpur time type Full time posted on Posted 4 Days Ago job requisition id JR001419Position DescriptionThe primary responsibility is to oversee and manage the information technology operations within CLSA Malaysia Office. This role involves infrastructure...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Chr. Hansen Holding AS Full time

    Senior IT Infrastructure Specialist Job DescriptionCompany Overview:Chr. Hansen A/S is a world-leading BioSolutions partner for better business, healthier lives, and a healthier planet. Our company brings together expertise that spans more than 30 different industries.Job Summary:We are seeking a Senior IT Infrastructure Specialist to join our team. The...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Alliance Bank Malaysia Berhad Full time

    Job SummaryWe are seeking an experienced cybersecurity professional to join our team as a Senior Cybersecurity Manager. The successful candidate will lead the development and implementation of IS security strategies, oversee the management of IS security tools, and ensure compliance with regulatory standards.This is a mid-senior level position that requires...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Cultivar Staffing & Search Full time

    About the Job:Cultivar Staffing & Search is looking for a Senior System Administrator to support a rapidly expanding Digital Marketing and IT consultancy company based in Kuala Lumpur.This is an excellent opportunity to work with a dynamic team and contribute to the growth and success of our company.The successful candidate will have a strong background in...