Lead, security test and red teaming

5 days ago


Singapore Ensign InfoSecurity Full time

Lead Consultant, Security Testing and Red team
Requirements:
Familiar with cyber security principles, policies and industry best practices
Experienced in consulting, including internal and client facing experiences
Possess relevant cybersecurity certifications or accredited experience from CTF
Ability to travel overseas when required
Familiar with system administration on various operating systems flavours (Linux and Windows)
Familiar with programming/scripting languages such as. NET, Python, Bash and Power Shell
Understand and apply the Cyber Kill Chain
Good understanding with Active Directory and Windows environment
Preferred Qualifications/Skills:
Experienced with tools such as Bloodhound, Tiny Shell and the likes
Cyber Security Certifications (e.g. OSCP, SEC564, SEC660, CREST)
Minimum of 5 to 8 years in the role of Penetration Tester
Ability to think unconventionally, disruptively and like an adversary
The lead consultant is expected to lead multiple engagements, orchestrating and supporting his teams to deliver on agreed objectives. The lead will be expected to work in challenging environments and deliver under pressure, while maintaining good working relationships with customers. The role focuses on competence in technical delivery but requires an aptitude for consultancy and management. He/she will be required to manage and mentor the pentest team.
Duties & Responsibilities:
Plan and execute complex Penetration tests.
Lead Project Delivery in planning and arranging pentest activities, assigning personnel and managing workloads.
Deliver both technical and management engagement presentations.
Maintain a good working knowledge of threat actors and their Tactics, Techniques and Procedures (TTP’s).
Co-ordinate delivery of risk workshops, Threat Intelligence handover and project setup meetings with customers.
Create robust and coherent test plans, or provide quality assurance of any test plans.
Maintain a proficient knowledge of regulatory frameworks, laws and their legal implications, operational security and its impacts on the team.
Support the sales team in procurement of pentest services:
Responding to RFP's and other proposals.
Presales to support the effective communication of the pentest service and set appropriate expectations.
Onsite presentation of pentest service to executive level audiences.
Regular training provided to the sales team to upskill the knowledge of the pentest service and current terminology.
Reporting: Create high quality and thorough technical and management reports, which are appropriately directed to their intended audience.
Providing Quality Assurance services, confirming either the relevant technical or management quality, as well as the report being coherent and written to a high standard.
Coach and mentor pentest members, providing support to all aspects of the job, technical, procedural and social.
Maintain the pentest methodology and supporting documentation/processes.
Strong leadership, managing a team of testers, assigning workload and utilising the different skillsets to achieve objectives.
Maintain a focus on client objectives and have the ability to manage time and client expectations.
Develop brand reputation across the industry, this could be in the form of training, workshops, conference talks or blogs.
Skills/Experience Required:
5 year experience in leading and technical delivery of complex pentest engagements.
Strong technical, social and presentation skills.
Strong influence, negotiation and relationship management skills.
Good written and speaking English skills.
Analytical/problem solving skills.
Ability to lead, teach, present and inspire the wider team.
Highly proficient with multiple C2 frameworks and capable of modifying or creating tooling to overcome technical challenges.
Offensive Security OSCP, OSCE & CREST CCSAM, CCSAS or equivalent level of IT Security related certification/knowledge.
Knowledge and experience in scripting or programming languages (ex. Python, Perl, Ruby, Power Shell, C, C#, Java) in order to develop custom scripts or tools.
Knowledge of adversary tactics and threat modelling.
Understanding of global regulatory landscape for technology and cyber risk.
#J-18808-Ljbffr



  • Singapore Ensign Infosecurity Full time

    Lead Consultant, Security Testing and Red Team Requirements: Familiar with cyber security principles, policies and industry best practices Experienced in consulting, including internal and client facing experiences Possess relevant cybersecurity certifications or accredited experience from CTF Ability to travel overseas when required Familiar with system...


  • Singapore Ensign InfoSecurity (Singapore) Pte. Ltd. Full time

    Lead Consultant, Security Testing and Red team Requirements: Familiar with cyber security principles, policies and industry best practices Experienced in consulting, including internal and client facing experiences Possess relevant cybersecurity certifications or accredited experience from CTF Ability to travel overseas when required Familiar with system...


  • Singapore Ensign Infosecurity Full time

    Lead Consultant, Security Testing and Red Team Requirements: Familiar with cyber security principles, policies and industry best practices Experienced in consulting, including internal and client facing experiences Possess relevant cybersecurity certifications or accredited experience from CTF Ability to travel overseas when required Familiar with system...


  • Singapore Ensign InfoSecurity Full time

    Talent Acquisition Manager at Ensign Info Security | Join us | Make a difference | Conquer The Unknown | IHRP-CP Lead Consultant, Security Testing and Red team Requirements: Familiar with cyber security principles, policies and industry best practices Experienced in consulting, including internal and client facing experiences Possess relevant cybersecurity...


  • Singapore Ensign InfoSecurity Full time

    Talent Acquisition Manager at Ensign InfoSecurity | Join us | Make a difference | Conquer The Unknown | IHRP-CP Lead Consultant, Security Testing and Red team Requirements: Familiar with cyber security principles, policies and industry best practices Experienced in consulting, including internal and client facing experiences Possess relevant cybersecurity...

  • Security Team Lead

    2 days ago


    Singapore Ensign InfoSecurity Full time

    We're looking for an exceptional cybersecurity leader to join our team at Ensign InfoSecurity. As a Lead Consultant, Security Testing and Red team, you'll drive our security testing and red teaming initiatives forward.Your extensive experience in consulting, including internal and client-facing engagements, will enable you to excel in this role. You should...

  • VP, Red Team Engineer

    2 weeks ago


    Singapore UNITED OVERSEAS BANK LIMITED Full time

    Roles & ResponsibilitiesThis is an excellent opportunity for a Red Teamer or an experienced penetration tester looking to advance their skills, to participate in a forward looking red team at a prominent regional bank.The successful Red Team member will help to build and deliver red team operations, purple teaming exercises, pentests of the latest security...


  • Singapore Secur Solutions Group Full time

    Job Description At KPMG, your long-term future is every bit as important to us as it is to you. That's why our aim is to give you experiences that will stay with you for a lifetime. Whether it's great training and development, working across functional sectors, mobility opportunities or corporate responsibility volunteering activities - you'll...


  • Singapore Red Hat Full time

    About the PositionWe are seeking an experienced Contract Management Expert - APAC to join our team. This role involves delivering high-quality contract components to meet customer needs while ensuring alignment with Red Hat standards.The successful candidate will work closely with Deal Management team members and Sales to assess and complete deal contract...


  • Singapore Citigroup Inc. Full time

    The Role: The Vulnerability Assessments Analyst - Red Team, A VP will participate in the Adversary Emulation program by emulating cyber and criminal threat actors targeting Citi. The candidate will conduct Intelligence-led Red Team Testing and Penetration Testing targeting people, process, and technology. The candidate may also conduct regulatory driven Red...

  • Team Lead

    4 weeks ago


    Singapore ST ENGINEERING INFO-SECURITY PTE. LTD. Full time

    Roles & ResponsibilitiesWe are seeking an experienced Team Lead - Cloud Penetration Testing to join our team. The successful candidate will have expertise in cloud security, penetration testing, and vulnerability assessment. The role involves identifying and exploiting vulnerabilities in cloud-based systems, applications, and infrastructure to help our...

  • Team Lead

    4 weeks ago


    Singapore ST ENGINEERING INFO-SECURITY PTE. LTD. Full time

    Roles & ResponsibilitiesWe are seeking an experienced Team Lead - Cloud Penetration Testing to join our team. The successful candidate will have expertise in cloud security, penetration testing, and vulnerability assessment. The role involves identifying and exploiting vulnerabilities in cloud-based systems, applications, and infrastructure to help our...


  • Singapore St Engineering Info-security Pte. Ltd. Full time

    Job Title: Penetration Testing Team LeaderJob Summary:We are seeking an experienced Penetration Testing Team Leader to join our team at St Engineering Info-security Pte. Ltd.The successful candidate will have expertise in cloud security, penetration testing, and vulnerability assessment. The role involves identifying and exploiting vulnerabilities in...

  • Team Lead

    4 weeks ago


    Singapore St Engineering Info-security Pte. Ltd. Full time

    We are seeking an experienced Team Lead - CloudPenetration Testing to join our team. The successfulcandidate will have expertise in cloud security, penetrationtesting, and vulnerability assessment. The role involvesidentifying and exploiting vulnerabilities in cloud-based systems,applications, and infrastructure to help our organizationstrengthen its cloud...


  • Singapore Secur Solutions Group Full time

    At Secur Solutions Group, we empower our long-term future by providing experiences that last a lifetime. Our aim is to offer comprehensive training and development, functional sector opportunities, mobility, and corporate responsibility volunteering activities.We take pride in our culture, which values hard work, encourages innovative thinking, and embraces...


  • Singapore St Engineering Info-security Pte. Ltd. Full time

    Job Description:We are seeking an experienced Cloud Security Lead to join our team at St Engineering Info-security Pte. Ltd.The successful candidate will have expertise in cloud security, penetration testing, and vulnerability assessment. The role involves identifying and exploiting vulnerabilities in cloud-based systems, applications, and infrastructure to...


  • Singapore OCBC Bank Full time

    About the RoleWe are seeking an experienced Cyber Quality and Prevention Specialist to join our team at OCBC Bank.The successful candidate will be responsible for performing deep dives and thematic reviews on TISO functions' compliance with policies, standards, guidelines, procedures, etc., to assess the existence and effectiveness of existing controls.Key...


  • Singapore Red Chamber Entertainment Full time

    Job Description:We are looking for an experienced and talented Performing Artiste to join our team at Red Chamber Entertainment. As a key member of our production crew, you will be responsible for delivering high-quality performances that meet the expectations of our audiences.Key Responsibilities:Promotion and Marketing: Attend publicity events to promote...


  • Singapore TECHKNOWLEDGEY PTE. LTD. Full time

    Roles & ResponsibilitiesWe are partnering with a cybersecurity provider that offers comprehensive security services across government and private sectors. They are looking to expand their team and are keen to bring onboard an expereienced Penetration Tester.Responsibilities: Perform vulnerability assessments, penetration testing and red teaming on a wide...


  • Singapore TECHKNOWLEDGEY PTE. LTD. Full time

    Roles & ResponsibilitiesWe are partnering with a cybersecurity provider that offers comprehensive security services across government and private sectors. They are looking to expand their team and are keen to bring onboard an expereienced Penetration Tester.Responsibilities: Perform vulnerability assessments, penetration testing and red teaming on a wide...