Verified current Job

Digital Business Analyst - Crowdsourced Vulnerability Discovery Programme (CVDP)

Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade. ATS offers a comprehensive suite of products and services ranging from infrast...

Job Full source details
Assurity Trusted Solutions Singapore Source published Aug 28, 2026 Verified 47 minutes ago
✓ 92% verification score · Source: Assurity Trusted Solutions Careers · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
EmploymentContract
CountrySingapore
DepartmentManaged Services
IndustryInformation Technology and Services

Overview

Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade. ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, governance and assurance services as well as managed processes. In a dynamic digital & cyber landscape where trust & collaboration is key, ATS continues to drive mutually beneficial business outcomes through collaboration with GovTech, government agencies and commercial partners to mitigate cyber risks and bolster security postures. The Crowdsourced Vulnerability Discovery Programmes (CVDP) comprises three programmes: the Government Bug Bounty Programme (GBBP), the Vulnerability Rewards Programme (VRP), and the Vulnerability Disclosure Programme (VDP). The Programme Manager will lead the planning, execution, and monitoring of th

Full job description

Full Job Description

Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade. ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, governance and assurance services as well as managed processes. In a dynamic digital & cyber landscape where trust & collaboration is key, ATS continues to drive mutually beneficial business outcomes through collaboration with GovTech, government agencies and commercial partners to mitigate cyber risks and bolster security postures.

The Crowdsourced Vulnerability Discovery Programmes (CVDP) comprises three programmes: the Government Bug Bounty Programme (GBBP), the Vulnerability Rewards Programme (VRP), and the Vulnerability Disclosure Programme (VDP). The Programme Manager will lead the planning, execution, and monitoring of these programmes, working closely with government agencies, security researchers, and the appointed bug bounty vendor to ensure the programmes run successfully.

Responsibilities:

  • Plan, schedule, and oversee GBBP, VRP, and VDP runs
  • Coordinate with government agencies on programme participation and scoping timelines, including following up to ensure required data and documentation are submitted on time
  • Manage the CVDP vendor relationship, including contract administration, performance monitoring, and issue escalation, covering end-to-end preparation of each GBBP run and onboarding of researchers (recruitment, vetting, test account provisioning)
  • Support the triage team in preparing reports, and coordinate with agencies on programme matters if disputes arise
  • Support procurement and tender exercises, including drafting requirement specifications and evaluating vendor proposals
  • Prepare programme reporting, dashboards, and management updates for management and stakeholders
  • Drive stakeholder communications and programme outreach such as Agencies’ briefings to raise awareness and grow agency participation rates
  • Proactively identify and propose process improvement opportunities across CVDP operations, and lead their implementation — including leveraging vibe coding techniques and GovTech platforms (e.g. Ownself Gather, Opus) to automate workflows, improve reporting, and enhance programme efficiency

Requirements

  • At least five (5) years of experience managing IT or technology programmes/projects; experience managing a bug bounty, vulnerability disclosure, or related cybersecurity programme is a strong plus
  • Strong project management skills to plan, execute, and monitor programme operations
  • Good verbal and written communication skills in English, with the ability to explain technical findings to non-technical stakeholders
  • Experience managing vendors or contracts, including tracking deliverables and service levels
  • Comfortable working with data to track programme metrics and produce reports for management
  • Demonstrated ability to propose and implement process improvements, including using AI-assisted development (vibe coding) or GovTech-approved platforms to streamline operations

Preferred

  • Project Management Professional (PMP), Certified IT Project Manager (CITPM), or equivalent certification
  • Familiarity with vulnerability management, penetration testing, or bug bounty concepts
  • Experience working with or within the public sector

Join us and discover a meaningful and exciting career with Assurity Trusted Solutions!

The remuneration package will commensurate with your qualifications and experience. Interested applicants, please click "Apply Now".

We thank you for your interest and please note that only shortlisted candidates will be notified.

By submitting your application, you agree that your personal data may be collected, used and disclosed by Assurity Trusted Solutions Pte. Ltd. (ATS), GovTech and their service providers and agents in accordance with ATS’s privacy statement which can be found at: https://www.assurity.sg/ or such other successor site.

Benefits

  • A wholly-owned subsidiary of GovTech.
  • We promote a learning culture and encourage you to grow and learn.
  • Contract Staff enjoys the same benefits as Permanent Employees.

Tips for this job

Practical Job and Scholarship guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

Discovered directly from the employer’s public Workable account endpoint with details=true where supported. Public description, responsibilities, requirements and benefits were normalized into complete candidate-facing sections.

Original authoritative source

Job and Scholarship is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

Assurity Trusted Solutions Careers ↗

Browse current Job and Scholarship listings from Assurity Trusted Solutions Careers →

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books