Principal Security Researcher

2 weeks ago


Singapore watchTowr Full time

Hello, let us introduce ourselves
We are watchTowr, a VC-backed cyber-security start-up headquartered in Singapore.

Cyber security veterans and technical experts, we are obsessed with continuously finding ways to break into enterprises, while building technology for some of the world's most targeted organisations.


With experience informed by years of simulating attacks by ransomware gangs and APT groups against some of the world's largest organisations, our mission is to be every organisation's persistent adversary - with cutting-edge technology.


As a team, we're leveraging data to build the future of Attack Surface Management and Continuous Automated Red Teaming technology.

We've seen the limitations of the status-quo - consultancy.

Our mission is to enable organisations to rapidly react to new threats and ultimately answer that one elusive question - "how could my organisation be compromised today?".


We are a young, high-energy and high-performing team that is devoted to building world-class technology in pursuit of realising our mission.

We are in a high and aggressive growth phase of our journey and are excited to continue adding colleagues to join our phorce of nature.

Our vision for offensive security is continuous.

But what's the role?


We are looking for passionate offensive security experts to join us in the watchTowr Labs team, as a Principal Security Researcher - and help find innovative, unique vulnerabilities at scale across our client base.

This is a role with both remote and Singapore-based options

watchTowr Labs is our epicentre of offensive security expertise, and has been designed to operate like an APT group. This is not consultancy work, project-based work, or engagements restricted by scope/time/budget.

Enterprises rely on our technology and approach to look at their organisations holistically, and continuously, as if they were being continuously red-teamed.


If something is exposed to the Internet - whether it's SaaS, cloud, shadow IT, or the random marketing website everyone forgot about that presents a weakness to their organisation - it's our job to discover it, highlight it, and hack it.


This is the opportunity to use your expertise and creativity to continuously find ways to break into some of the world and region's largest brands, enterprises and businesses - at scale.


Sounds great - what will I do?

  • You will spend your days hacking or professionally put, "looking for innovative, highimpact vulnerabilities in numerous organisations to fuel our engine". No scope, no time restrictions, no limitations.
  • You will be focused on looking for the vulnerabilities that
    matter highimpact weaknesses that would have a material impact on our clients. We don't care about weak SSL ciphers, we care about Remote Code Execution.
  • You'll work with other offensive security experts to share ideas and brainstorm new tactics and techniques that we can use to demonstrate highimpact weaknesses in organisations.
  • You'll be performing cuttingedge offensive security research to build and test your own highimpact tactics and techniques. Our research has one goal strengthen external attack surfaces.
  • By working closely with our Red Team Engineers, your tactics and techniques will be deployed at scale to all of our clients, and implemented into our technology our message is very clear, never do anything twice, let our technology provide the harness and continuous framework you need.
  • If your dream is to speak at conferences and present your research to the world we will support you to make it happen

Sounds perfect to me, what specifics are you looking for?

Ideal Experience
Ideally, you should have 5 or more years of experience, with:

  • Involvement in red-team exercises with large enterprises.
  • You know how you'd break into enterprises without a known vulnerability or a CVE.
  • Prolific experience in the bug bounty space (or just, lived on IRC in the 2000s) unclear scopes, thinking outside of the box is your game.
  • Have basic scripting skills in GoLang and/or Python.
  • Hold industryrecognised qualifications, like CCSAS/CCT/CRT/OSCP (or just, lived on IRC in the 2000s)
  • Driven by your own passion and initiative you understand the mission, and don't need someone to guide you.

Our Experience
When you join us, you can expect (ok, we kinda expect this from you too):

  • A highly motivated, experienced, offensive cyber team that obsesses over our shared mission.
  • To be part of a team of outcomefocused problemsolvers.
  • An environment of autonomy and creativity to support you to deliver the best work of your life.
  • A culture of continuous improvement in the form of learning and growth.

What's in it for me?
-
Competitive compensation - we believe that hard work, skills and ambition should be fairly compensated.
-
Meaningful role in a company
  • You will be a key and early contributor to a fastgrowi


  • Singapore NTU (Nanyang Technology University- Main Office-HR) Full time

    The Centre for Lifelong Learning and Individualised Cognition (CLIC) invites applications for the position of Principal Research Scientist.Key Responsibilities:To support CLIC Directors Prof Zoe Kourtzi (University of Cambridge) and Prof Annabel Chen (Nanyang Technological University) in providing leadership and day-to-day management of all CLIC research...


  • Singapore PIXIEPOINT SECURITY PTE. LTD. Full time

    We are seeking talented and passionate individuals to join our Offensive Security team This position has a strong focus on developing exploits for known vulnerabilities in systems and devices.Duties and Responsibilities:Required Qualifications: Proficiency in at least one of the following languages: C, C++, Intel and ARM assembly code Knowledge and...


  • Singapore SingHealth Group Full time

    National Heart Centre of Singapore Pte LtdJunior Principal Investigator:Job Category: Research- Posting Date: 16 Jan 2024You will be part of the team to develop NHRIS research into a world-class research institution with significant international reputation for clinical services and research. In addition, you will lead, guide and supervise a team of junior...


  • Singapore NTU (Nanyang Technology University- Main Office-HR) Full time

    The Centre for Lifelong Learning and Individualised Cognition (CLIC) invites applications for the position of Principal Research Scientist.Key Responsibilities:To support CLIC Directors Prof Zoe Kourtzi (University of Cambridge) and Prof Annabel Chen (Nanyang Technological University) in providing leadership and day-to-day management of all CLIC research...


  • Singapore Palo Alto Networks, Inc. Full time

    Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we're...


  • Singapore Nanyang Technological University Full time

    Key Responsibilities: Lead a research team to manage multiple concurrent research projects in collaboration with the Director and Principal Investigators (PIs), ensuring timely completion, adherence to budget constraints, and fulfilment of quality standards. Build and maintain strong relationships with local and international key stakeholders, including...


  • Singapore NTU (Nanyang Technology University- Main Office-HR) Full time

    The Future Ready Food Safety Hub (FRESH) serves as Singapore's lead scientific platform under the Singapore Food Story R&D Programme, to bring together researchers, regulators and industry to build up Singapore's food safety science and R&D capabilities to secure Singapore's food supply and economic value proposition. FRESH will embark on R&D and talent...


  • Singapore NTU (Nanyang Technology University- Main Office-HR) Full time

    The Air Traffic Management Research Institute (ATMRI), established in 2013 through a strategic partnership between NTU and the Civil Aviation Authority of Singapore (CAAS), is a premier institution dedicated to advancing the science and technology of air traffic management. ATMRI aims to enhance the efficiency, safety, and sustainability of the worldwide air...


  • Singapore LMA, EA Licence No: 11C4684 Full time

    Principal/Senior Security DeveloperRole Responsibilities Experience in creating microservices and knowledge of associated design consideration. Knowledge of web services Preferable to have knowledge on security concepts like Authentication, Authorization, SSO, Encryption, Hashing, Signing, IAM Have an intellectual mind toward DevOps Work with teams spread...


  • Singapore LMA, EA Licence No: 11C4684 Full time

    Principal/Senior Security DeveloperRole Responsibilities Experience in creating microservices and knowledge of associated design consideration. Knowledge of web services Preferable to have knowledge on security concepts like Authentication, Authorization, SSO, Encryption, Hashing, Signing, IAM Have an intellectual mind toward DevOps Work with teams spread...


  • Singapore NTU (Nanyang Technology University- Main Office-HR) Full time

    The NTU-WeBank Joint Research Centre On FinTech invites applications for the position of Principal Research Scientist.Key Responsibilities:Lead a research team to manage multiple concurrent research projects in collaboration with the Director and Principal Investigators (PIs), ensuring timely completion, adherence to budget constraints, and fulfilment of...

  • Security Engineer

    2 weeks ago


    Singapore Security Bank & Trust Co. Full time

    Formulation and implementation of security response plan and security assurance for the whole life cycle of the system.Handle 7 × 24 hour security incident response.Vulnerability management; anti-phishing tasks.Requirements:5 years+ security experience.Experienced in intrusion detection, event tracing and log analysis. Familiar with common attack and...


  • Singapore SINGAPORE MANAGEMENT UNIVERSITY Full time

    Work Description:Collaborate with a diverse team in developing use cases and prototypes for government and industry partnersContribute to design and development of open-source softwareParticipate in software development and engage in product/project management as necessaryRead academic papers, create presentations, and write academic materials for...


  • Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    Roles & ResponsibilitiesAs a Cyber Security Researcher, you will be conducting research and development work to deliver comprehensive security assessment on cyber security technologies (e.g. network-based and host-based threat detection and protection systems).Specifically, successful applicants will:Evaluate the effectiveness of cyber security products in...


  • Singapore Affinidi Full time

    Affinidi focuses on changing data ownership for good, empowering communities with control and ownership of their data. We do that through enabling the creation, sharing and verification of Verifiable Credentials - a secure and cryptographically verifiable way of sharing sensitive data.Headquartered in Singapore, with offices in India, Germany and Ukraine,...


  • Singapore NTU (Nanyang Technology University- Main Office-HR) Full time

    The NTU-WeBank Joint Research Centre On FinTech invites applications for the position of Senior Principal Research Scientist.Key Responsibilities:Lead a research team to manage multiple concurrent research projects in collaboration with the Director and Principal Investigators (PIs), ensuring timely completion, adherence to budget constraints, and fulfilment...


  • Singapore DSTA - Defence Science & Technology Agency Full time

    Job no:Work type: PermanentLocation: DSTA SingaporeCategories:NAThe Defence Science and Technology Agency (DSTA) brings you to the forefront of cybersecurity, digital transformation and engineering. From working on software development and systems integration to unmanned technologies and artificial intelligence, you can have an impact on Singapore's...

  • Principal Engineer

    2 weeks ago


    Singapore EMA Energy Market Authority Full time

    Principal Engineer / Senior Principal EngineerAssist DD/Specialist to: Review and enforce legislation and codes of practice- evelop performance standards and technical regulatory frameworks for electricity licensees' compliance Investigate power failure, voltage dip and electrical incidents, and breaches of legislation, performance standards and codes of...

  • Principal Advisor

    2 weeks ago


    Singapore Centre for Evidence and Implementation Full time

    Are you a research and evaluation leader with experience applying evidence in intervention development and improvement, undertaking evidence synthesis, and advancing implementation science?Do you have a passion to help drive meaningful, actionable change in the social sector? Are you ready to join a diverse, global team that values its people, nurtures...

  • Principal Analyst

    2 weeks ago


    Singapore Wood Mackenzie Full time

    Company DescriptionWood Mackenzie are the global research, analytics, and consultancy business powering the natural resources industry. For 50 years, we have been providing the quality data, analytics, and insights our customers rely on to inspire their decision making.Our dedicated oil, gas & LNG, power & renewables, chemicals, metals & mining sector teams...