Senior Web Application Vulnerability Researcher

4 weeks ago


Singapore INNOEDGE LABS PTE. LTD. Full time
Roles & Responsibilities

At InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver cutting-edge solutions and services.


InnoEdge believes in fostering a culture where team members are encouraged to overcome challenges, explore new ideas, and work together to succeed. We value individuals who are determined to push beyond the boundaries, and have a thirst for knowledge, continuous learning, and self-improvement.


Collaboration is key to our success. We prioritise open communication, constructive feedback, and a willingness to help others. We are committed to creating a supportive work environment that encourages excellence, innovation, and continuous improvement. We're looking for individuals who share our values and are excited to join us on our cyber mission.


Responsibilities:

  • Recommend direction for research projects and conceptualize new tools/techniques that will enhance the vulnerability discovery process.
  • Mentor and guide new researchers in the area of web application vulnerability research.
  • Perform deep research into web applications with complex codebases to understand the attack surface for an attacker to abuse.
  • Ideate hypothesis as to how an attacker could possibly abuse features in the application and validate if hypothesis holds true.
  • Develop proof of concept to demonstrate the severity of the discovered vulnerability and propose mitigations.
  • Develop cutting edge tools to improve and scale up the vulnerability discovery process for web applications.
  • Keep abreast of the latest research into web security and vulnerabilities detection techniques.
  • Level up the local security community through mentorship of aspiring security researcher, publishing blog post and speaking at conferences.

Minimum Qualifications


-Demonstrated ability to

  • Perform attack surface analysis and prioritization of research on a web application.
  • Independently apply static/dynamic analysis techniques to find low lying bugs in a web application.
  • Discover and exploit vulnerability in web applications.
  • Deep understanding of web programming languages (PHP, Java, Python, .Net…), web frameworks, typical web vulnerabilities and how they are commonly exploited.
  • Track record of having found vulnerabilities in the last 4 years.

-For a more senior role, we're looking for candidates with:

  • Fluency in assembly language (x86/64)
  • Experience in debugging, reverse engineering binary and exploiting memory corruption and logic vulnerabilities.
  • Track records in these areas:
    • Consistency in discovering security-related vulnerabilities and demonstrating their impact.
    • Performing research on a complex web application by a major vendor (e.g. WordPress), applying attack surface analysis and prioritization, and performing various static and dynamic analysis techniques to find bugs in the different components.
    • Discovering and exploiting security vulnerabilities in in a complex application by a major vendor (e.g. Exchange, WordPress).

If you meet these qualifications and are passionate about cyber security, we encourage you to apply for this exciting opportunity. We offer competitive compensation, a comprehensive benefits package, and a collaborative and dynamic work environment.



Tell employers what skills you have

Reverse Engineering
validate data
Assembly Language
Vulnerability Research
Web Programming
Cyber Security
vulnerability scanners
validate test methods
Web application testing
Web Security
Detection and Monitoring Management
Web Applications
Debugging
X86

  • Singapore InnoEdge Labs Pte. Ltd. Full time

    Recommend direction for research projects and conceptualize new tools/techniques that will enhance the vulnerability discovery process. Develop proof of concept to demonstrate the severity of the discovered vulnerability and propose mitigations. Keep abreast of the latest research into web security and vulnerabilities detection techniques. Level up the local...


  • Singapore INNOEDGE LABS PTE. LTD. Full time

    Roles & ResponsibilitiesAt InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver...


  • Singapore INNOEDGE LABS PTE. LTD. Full time

    Roles & ResponsibilitiesAt InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver...


  • Singapore INNOEDGE LABS PTE. LTD. Full time

    Roles & ResponsibilitiesAt InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver...


  • Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    Roles & ResponsibilitiesDuties and Responsibilities Perform research to discover vulnerabilities in operating systems, software applications and hardware devices through code audit, black box testing and reverse engineering. Develop and enhance processes and tools for the discovery and triage of vulnerabilities. Research into new vulnerability discovery...


  • Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    Roles & ResponsibilitiesDuties and Responsibilities Perform research to discover vulnerabilities in operating systems, software applications and hardware devices through code audit, black box testing and reverse engineering. Develop and enhance processes and tools for the discovery and triage of vulnerabilities. Research into new vulnerability discovery...


  • Singapore Numen Cyber Technology Pte Full time

    As a Vulnerability Researcher, you will be working closely with Chief Security Researcher.Responsibilities:Your job responsibilities will be: Develop and enhance processes and tools for the discovery and triage of vulnerabilities. Develop exploit code for the newest vulnerabilities, such as CVE, Nday vulnerabilities, etc. Research into new vulnerability...


  • Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time

    Job Title: Software Security EngineerCompany: CyberSec SolutionsRoles & Responsibilities:Performing in-depth research to identify vulnerabilities in operating systems, software applications, and hardware devices using code audit, black box testing, and reverse engineering techniques.Developing and improving processes and tools for detecting and managing...


  • Singapore Ambition Full time

    Job details:Posted 27 July 2023SalaryNegotiableLocationSingaporeJob type PermanentDisciplineTechnologyReference267173_ This is a pure research role, with an equal focus split on analysing N-day vulnerabilities to build reliable detections/exploits, and 0-day research - looking at critical technology that we see across vast attack surfaces (whether it be...


  • Singapore InnoEdge Labs Pte. Ltd. Full time

    Recommend direction for research projects and conceptualize new tools/techniques that will enhance the vulnerability discovery process. Mentor and guide new researchers in the area of Windows vulnerability research. Modify and deploy custom fuzzers to surface vulnerabilities. Develop proof of concept to demonstrate the severity of the discovered...


  • Singapore WEB MASTER CONSULTANCY PTE LTD Full time

    Roles & ResponsibilitiesJob Description & RequirementsKnowledge of PHP/MySQL.Experience developing in PHP, which requires integration with databases such as MySQL.Experience programming in HTML, CSS, XML, JavaScript, jQuery, etc.Experience in WordPress development is a plus.Must be able to understand and use development frameworks.Must be able to follow...


  • Singapore WEB MASTER CONSULTANCY PTE LTD Full time

    Roles & ResponsibilitiesJob Description & RequirementsKnowledge of PHP/MySQL.Experience developing in PHP, which requires integration with databases such as MySQL.Experience programming in HTML, CSS, XML, JavaScript, jQuery, etc.Experience in WordPress development is a plus.Must be able to understand and use development frameworks.Must be able to follow...


  • Singapore INNOEDGE LABS PTE. LTD. Full time

    Roles & ResponsibilitiesAt InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver...


  • Singapore Inmagine Full time

    A spark of creative imagination, coupled with the magic of coding - we have many IT wizards in the house, and now we\xe2\x80\x99re looking for some extra hands to take 123RF to the next level They will be someone who live and breathe web app development, who can understand how different systems work, and stitch them together to build our ideal ecosystem. Do...


  • Singapore Inmagine Full time

    A spark of creative imagination, coupled with the magic of coding - we have many IT wizards in the house, and now we\xe2\x80\x99re looking for some extra hands to take 123RF to the next level They will be someone who live and breathe web app development, who can understand how different systems work, and stitch them together to build our ideal ecosystem. Do...


  • Singapore INNOEDGE LABS PTE. LTD. Full time

    Roles & ResponsibilitiesAt InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver...


  • Singapore NodeFlair Full time

    Job Summary:Job TypePermanentSeniorityMid JuniorYears of ExperienceAt least 2 yearsTech StacksHTTP TCP Websockets AWS Go Checkmarx CI gRPC Shell Azure Java Linux JavaScript SQL Python If you're looking for a fastpaced, missiondriven organization where opportunities to learn and excel are endless, then Binance is the place for youResponsibilities: Configure,...


  • Singapore Inmagine Group Full time

    A spark of creative imagination, coupled with the magic of coding - we have many IT wizards in the house, and now we\xe2\x80\x99re looking for some extra hands to take 123RF to the next level They will be someone who live and breathe web app development, who can understand how different systems work, and stitch them together to build our ideal ecosystem. Do...


  • Singapore Inmagine Group Full time

    A spark of creative imagination, coupled with the magic of coding - we have many IT wizards in the house, and now we\xe2\x80\x99re looking for some extra hands to take 123RF to the next level They will be someone who live and breathe web app development, who can understand how different systems work, and stitch them together to build our ideal ecosystem. Do...


  • Singapore Inmagine Full time

    A spark of creative imagination, coupled with the magic of coding - we have many IT wizards in the house, and now we\xe2\x80\x99re looking for some extra hands to take 123RF to the next level! They will be someone who live and breathe web app development, who can understand how different systems work, and stitch them together to build our ideal ecosystem....