Senior Executive, Offensive Engineering

4 days ago


Singapore Secur Solutions Group Full time

The Offensive Engineering Analyst will be responsible to conduct vulnerability assessment/penetration tests of Income internal/external web, mobile and web service applications and execute simulated security testing against corporate web applications, networks, and infrastructure. This role will come under the IT Risk and Security department, reporting to the Senior Manager of Cyber Assurance.
Key Responsibilities
Coordinate with external vendors to conduct application security/penetration tests of Income internal/external web, mobile and web service applications, leveraging both manual techniques as well as automated tools in order to uncover and report security vulnerabilities that exist and liaising with systems & applications owners on follow up actions.
Perform vulnerability scanning/discovery, tracking of remediation SLA and vulnerability fix verification in support of the remediation
Plan and scope the internal Red Teaming program to conduct red teaming exercises and execute adversarial simulations mimicking real-world threat actors (APTs, insider threats, etc.) against Income environment using tools and manual techniques.
Conduct compliance audit on Income Systems and Devices hardening standards.
Perform risk assessment and recommend mitigations on vulnerability findings when remediation is not possible.
Administer security tools and service providers.
Support the running of bug bounty and vulnerability disclosure programs.
Conduct meetings to communicate the findings and implications to stakeholders and track remediation status and outcomes.
Undertake other projects and tasks that may be assigned by management.
Qualifications
Bachelor's Degree with more than 5 years of experience in technology, information or cyber risk management, information security or enterprise architecture.
Minimum of three years years of experience in offensive security (Red Teaming, Penetration Testing, or related fields).
Minimum of two years direct information security experience in penetration testing, vulnerability assessment, threat hunting, red teaming or similar roles.
Strong background in application development, web application technologies and architectures, application security testing or vulnerability assessment.
Familiar with penetration testing steps, methods, procedures, and excellent in using penetration testing tools.
Familiar with attack techniques and methods, common security vulnerabilities and threats of network and application systems, and competent in identifying and evaluating these vulnerabilities and threats with existing tools.
Equipped with programming skills in Java, .NET or Python.
Relevant industry certifications such as CEH, OSCP, OSCE, GPEN, GWAPT, CREST CRT certifications is preferred.
Competencies
Hands-on experience on vulnerability assessment tools (Preferably Tenable and others such as Qualys, Rapid7).
Working knowledge on industry standard scoring models such as CVSS.
Working knowledge on SAST, DAST, IAST, SCA and DevSecOps.
Familiarity with penetration testing techniques (eg web application proxies, packet capture analysis software, browser extensions, penetration testing Linux distributions, static source code analyzers, SoapUI, etc).
Good understanding of adversary tactics, techniques, and procedures (TTPs), such as those outlined by MITRE ATT&CK.
Good understanding of offensive security tools (e.g., Cobalt Strike, Metasploit, Burp Suite, BloodHound, Mimikatz).
Good written skills and able to effectively communicate security and risk-related concepts to technical and non-technical audiences.
Work well under pressure and demonstrate the ability to meet tight deadlines.
Able to work independently and in a team-oriented, collaborative environment.
#J-18808-Ljbffr



  • Singapore Secur Solutions Group Full time

    The Offensive Engineering Analyst will be responsible to conduct vulnerability assessment/penetration tests of Income internal/external web, mobile and web service applications and execute simulated security testing against corporate web applications, networks, and infrastructure. This role will come under the IT Risk and Security department, reporting to...


  • Singapore INCOME INSURANCE LIMITED Full time

    Roles & ResponsibilitiesThe Offensive Engineering Analyst will be responsible to conduct vulnerability assessment/penetration tests of Income internal/external web, mobile and web service applications and execute simulated security testing against corporate web applications, networks, and infrastructure. This role will come under the IT Risk and Security...


  • Singapore PAYPAL PTE. LTD. Full time

    Roles & ResponsibilitiesJob Description Summary:This offensive security engineer will lead and execute security engagements that combine both red team and purple team methodologies. Your role will involve designing and executing sophisticated cyberattacks, simulating advanced persistent threats and collaborating closely with the defense (blue) teams to...


  • Singapore PERCEPT SOLUTIONS PTE. LTD. Full time

    About the RoleWe are seeking a highly skilled Offensive Cyber Security Specialist to join our team at Percept Solutions PTE. LTD.The ideal candidate will have a minimum of 5+ years of experience in a technical offensive cyber security role, preferably in a corporate, military, or law enforcement setting.ResponsibilitiesAnalyze and process security threats to...


  • Singapore SHOPEE SINGAPORE PRIVATE LIMITED Full time

    Roles & ResponsibilitiesJob Description Design and perform APT adversary emulation to determine if infrastructure components, systems and applications meet confidentiality, integrity, authentication, availability, authorisation, and non-repudiation standards Translate requirements into test plan, write and execute test scripts or codes in line with...


  • Singapore Artemis Executive Solutions Full time

    Job Title:Senior Construction EngineerWe are seeking an experienced Senior Construction Engineer to join our team at Artemis Executive Solutions. This role will be responsible for overseeing the planning and execution of site construction works, ensuring timely completion and adherence to quality standards.Key Responsibilities:Project Planning: Work closely...


  • Singapore Artemis Executive Solutions Full time

    Job TitleSenior Planning Engineer - Civil InfrastructureAbout the RoleWe are seeking a highly motivated and experienced Senior Planning Engineer to join our team at Artemis Executive Solutions. As a Senior Planning Engineer, you will play a key role in the planning and scheduling of large-scale civil infrastructure projects.Key ResponsibilitiesDevelop and...


  • Singapore Artemis Executive Solutions Full time

    Job Title: Senior Civil Engineering Project Manager We are seeking a highly skilled Senior Civil Engineering Project Manager to join our team at Artemis Executive Solutions. The ideal candidate will have a strong background in civil engineering and project management, with experience in managing large-scale construction projects. About the Role:Salary: SGD...


  • Singapore PRIVASEC PTE. LTD. Full time

    Roles & Responsibilities*This role requires a security clearance. Eligible individuals will be prioritised.Our Red Team Offensive Security Consultants work with organisations and technical teams to perform a variety of assessments and provide practical advice to keep them secure. Red team members are generally familiar with and apply themselves to most...

  • Senior M&E Engineer

    3 weeks ago


    Singapore Artemis Executive Solutions Full time

    Artemis Executive Solutions is seeking an experienced Senior M&E Engineer to join our team in Singapore.As a Senior M&E Engineer, you will be responsible for overseeing the installation, inspection, and supervision of site M&E works. Your expertise in handling complex infrastructure projects will ensure seamless execution and high-quality results.The ideal...


  • Singapore Artemis Executive Solutions Full time

    Job Title: Senior Planning EngineerWe are seeking a highly skilled Senior Planning Engineer to join our team at Artemis Executive Solutions. As a key member of our project management team, you will be responsible for coordinating and managing the planning and scheduling aspects of large-scale infrastructure projects.With a strong background in civil...


  • Singapore SENIOR SPIRIT OF ROSELLE PARK Full time

    Responsibilities:Prepares key project documentation in executing the complete instrumentation engineering scope of work as per the project requirements in meeting customer’s expectationsPrepares instrumentation system concepts, schedule of deliverables and plan activities in line with overall project schedule, delegate the tasks to instrumentation team...


  • Singapore SENIOR SPIRIT OF ROSELLE PARK Full time

    Responsibilities: Prepares key project documentation in executing the complete instrumentation engineering scope of work as per the project requirements in meeting customer’s expectations Prepares instrumentation system concepts, schedule of deliverables and plan activities in line with overall project schedule, delegate the tasks to instrumentation team...


  • Singapore TELESOURCE EXECUTIVE SEARCH PTE. LTD. Full time

    Job OverviewWe are seeking a highly skilled Senior Middleware Systems Engineer to join our team at Telesource Executive Search PTE. LTD.About the RoleThis is an exciting opportunity for a seasoned professional to work on a wide range of projects, leveraging their expertise in middleware technologies such as Apache Tomcat, JBoss, and WebSphere Application...

  • Senior M&E Engineer

    3 weeks ago


    Singapore Artemis Executive Solutions Full time

    About the RoleWe are seeking an experienced Senior M&E Engineer to lead our site operations in Singapore.Job SummaryThis is a senior-level position responsible for overseeing the execution of M&E works on-site, ensuring timely completion and quality delivery. The successful candidate will have extensive experience in the M&E sector, specifically in handling...


  • Singapore Artemis Executive Solutions Full time

    About the RoleWe are seeking a highly motivated and organized Senior Civil Engineering Project Coordinator to join our team at Artemis Executive Solutions. As a key member of our construction management team, you will play a crucial role in ensuring the smooth execution of projects from planning to completion.Job DescriptionThe ideal candidate will have a...


  • Singapore Artemis Executive Solutions Full time

    Job DescriptionWe are seeking a Senior Civil Engineering Project Lead to join our team at Artemis Executive Solutions.About the RoleThis is an excellent opportunity for an experienced civil engineer to take on a leadership role and oversee the delivery of complex construction projects. The successful candidate will have a strong background in civil...


  • Singapore Artemis Executive Solutions Full time

    Tunnel Engineering Manager Job DescriptionWe are seeking a highly skilled Senior Tunnel Engineering Manager to join our team at Artemis Executive Solutions. In this role, you will oversee the construction activities and progress of the LTA MRT project.Job Responsibilities:Project Management: Oversee construction activities, progress, planning,...

  • Senior Tender Manager

    3 weeks ago


    Singapore Artemis Executive Solutions Full time

    Job OverviewWe are seeking a highly skilled and experienced Senior Tender Engineer to join our team at Artemis Executive Solutions.


  • Singapore Artemis Executive Solutions Full time

    About the RoleWe are seeking a highly skilled Senior Project Coordinator to join our team at Artemis Executive Solutions. This is an exciting opportunity to work on high-profile construction projects and contribute to their successful delivery.Job DescriptionThe Senior Project Coordinator will be responsible for supporting the Construction Manager in...