Information Security Specialist

5 days ago


Singapore TD Bank Full time

Work Location :

Singapore, Singapore

Hours:

40

Line of Business:

Technology Solutions

Pay Details:

We’re committed to providing fair and equitable compensation to all our colleagues. As a candidate, we encourage you to have an open dialogue with a member of our HR Team and ask compensation related questions, including pay details for this role.

Job Description:

Job Summary:

We are seeking a skilled and experienced Secure Code Reviewer / Penetration Tester to join our team. As a Secure Code Reviewer / Penetration Tester, you will be responsible for identifying and exploiting vulnerabilities in applications and infrastructure to help improve our cybersecurity posture. You will use a range of tools and techniques to conduct secure code reviews and penetration testing and provide actionable recommendations to enhance security controls.

Responsibilities: Secure Code Review

  • Deliver secure code review assessment on programming languages such as Java, C#, PHP, Python, Perl, C/C++ , SQL, >

  • Analyze and identify security vulnerabilities in source code using both automated and manual static analysis tools and techniques.

  • Train and assist developers in writing secure software and remediating existing vulnerabilities.

  • Develop and review custom vulnerability description, business impact and remediation content.

  • Develop, research, and recommend open-source tools assisting in secure code review.

  • Contribute to development and delivery of secure coding and remediation training.

  • Mentor and assist team members in effectively delivering assessments and enhancing skillsets.

  • Key Lead in Release Based Testing Process and Td Mitigation Proposal Review Process.

  • On Call Position – to approve change requests if needed.

Responsibilities: Pentesting

  • Conduct thorough and comprehensive penetration testing on various applications, networks, and infrastructure using both manual and automated techniques.

  • Identify vulnerabilities in a web applications, mobile applications, and manual code reviews.

  • Document and report findings and provide actionable recommendations to improve security posture.

  • Collaborate with other team members and application development teams to assess security risks and assist in remediation and mitigation strategies.

  • Research and stay up to date with the latest trends, threats, and vulnerabilities in the cybersecurity industry.

  • Communicate effectively with technical and non-technical stakeholders, as well as other team members.

Requirements:

  • Proven experience in conducting penetration testing and vulnerability assessments on various systems, networks, and applications.

  • Proven experience in Secure Code Review.

  • Expertise in using a range of penetration testing tools and techniques, including Burp Suite, Metasploit, and Nmap.

  • Solid understanding of web applications, mobile applications, and databases.

  • Experience in detecting, analysing and providing recommendation guidance on security vulnerabilities in at least two of the following languages: Java, C#, PHP, Python, Perl, C/C++ , SQL, >

  • Hands-on experience conducting security focused static analysis using commercial SAST tools such as ServiceNow, Checkmarx, Appscan Source, Veracode, Coverity, Fortify and SonarQube.

  • Strong analytical and problem-solving skills.

  • Excellent written and verbal communication skills.

  • Ability to work both independently and as part of a team.

  • Relevant industry certifications such as OSCP a plus.

Experience and Education:

  • University degree

  • Information security certification / accreditation an asset

  • Minimum 7+ years of relevant experience

  • 3+ years of experience in application security including secure code review, web application penetration testing or threat modelling.

  • 2+ years of experience in secure code review / static application security testing

  • Detailed understanding of the OWASP Top 10 and CWE Top 25 issues with focus on ability to identify and remediate vulnerability in source code.

  • Ability to explain risk and business impact of security vulnerabilities in source code to variety of audience.

Who We Are

TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.


TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you’ve got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we’re here to support you towards your goals. As an organization, we keep growing – and so will you.

Our Total Rewards Package
Our Total Rewards package reflects the investment we make in our colleagues to help them, and their families achieve their well-being goals. Total Rewards at TD includes a base salary and several other key plans such as health and well-being benefits, including medical coverage, paid time off, career development, and reward and recognition programs.

Additional Information:
We’re delighted that you’re considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we’re committed to providing the support our colleagues need to thrive both at work and at home.

Colleague Development
If you’re interested in a specific career path or are looking to build certain skills, we want to help you succeed. You’ll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD – and we’re committed to helping you identify opportunities that support your goals.

Training & Onboarding
We will provide training and onboarding sessions to ensure that you’ve got everything you need to succeed in your new role.

Interview Process
We’ll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.

Accommodation

If you require an accommodation for the recruitment / interview process (including alternate formats of materials, or accessible meeting rooms or other accommodation), please let us know and we will work with you to meet your needs.



  • Singapore HAYS SPECIALIST RECRUITMENT PTE. LTD. Full time

    Company OverviewWe are HAYS SPECIALIST RECRUITMENT PTE. LTD., a global company with a dynamic team seeking an experienced Cybersecurity Programme Manager to lead our information security efforts.


  • Singapore IHiS Full time

    Job OverviewWe are seeking a highly skilled Information Security Specialist to join our team at IHiS. As an Information Security Specialist, you will be responsible for ensuring the security and integrity of our systems and data.


  • Singapore THE EDGE PARTNERSHIP HOLDINGS PTE. LTD. Full time

    About UsThe Edge Partnership Holdings Pte. Ltd.Job Title: Information Security SpecialistA competitive salary of SGD 70,000 - SGD 90,000 per annum is offered for this position.About the JobWe are seeking an experienced Information Security Specialist to join our team. In this role, you will be responsible for developing and maintaining compliance frameworks...


  • Singapore Unison Consulting Pte Ltd Full time

    About UsUnison Consulting Pte Ltd is a leading provider of cybersecurity solutions, dedicated to helping businesses navigate the complex landscape of information security.Job SummaryWe are seeking a highly skilled Information Security Specialist to join our team. The ideal candidate will have 4+ years of experience in security testing and verification, with...


  • Singapore CGS INTERNATIONAL SECURITIES SINGAPORE PTE. LTD. Full time

    About the RoleCGS International Securities Singapore Pte. Ltd. is seeking an experienced Information Security Specialist to join our team.


  • Singapore TRINITY CONSULTING SERVICES PTE. LTD. Full time

    About Trinity Consulting Services PTE. LTD.">We are a leading consulting firm dedicated to providing top-notch services in the field of information security. Our team of experts is committed to helping clients protect their valuable assets from cyber threats.">Job Summary">We are seeking an experienced Information Security Specialist to join our team. In...


  • Singapore TRINITY CONSULTING SERVICES PTE. LTD. Full time

    Job Title: Information Security SpecialistAt TRINITY CONSULTING SERVICES PTE. LTD., we are seeking a highly skilled Information Security Specialist to join our team. The ideal candidate will have a strong background in IT network infrastructure, server platforms (Unix, Windows platform) and desktops (OS X and Windows XP and above).Key...


  • Singapore Masters Career Consultancy Pte Ltd Full time

    Masters Career Consultancy Pte Ltd is seeking an experienced Information Security Specialist to join our team.Job Overview:We are looking for a highly skilled professional to handle overall SecOps in cooperation with partner IT vendors and related internal departments as a member of the incident handling team within CSIRT.About the Role:The successful...


  • Singapore ENGGSOL PTE. LTD. Full time

    We are seeking a highly skilled Information Security Specialist to join our team at ENGGSOL PTE. LTD.The estimated salary for this position is between SGD 80,000 and SGD 120,000 per annum, depending on experience.Job DescriptionCompany OverviewAt ENGGSOL PTE. LTD., we strive to maintain the highest standards of information security. Our team works tirelessly...


  • Singapore U3 Full time

    Job Title: Senior Information Security Specialist At U3, we are seeking a highly skilled Senior Information Security Specialist to join our team. The ideal candidate will have a strong background in information security, risk management, and compliance. This role will be responsible for supporting the Director, Regional Information Security and Data...


  • Singapore PERCEPT SOLUTIONS PTE. LTD. Full time

    Percept Solutions PTE. LTD., a leading provider of innovative solutions, is seeking an experienced Information Security Specialist to join our team.About the RoleWe are looking for a skilled professional with expertise in IT risk management and information security systems to coordinate with stakeholders, address queries, and support governance activities....


  • Singapore Singapore Airlines Full time

    Job Title: Information Security SpecialistJob Summary:You will be a key member of the Group Information Security Team at Singapore Airlines, responsible for ensuring that IT solutions are developed and designed with security inbuilt.Key Responsibilities:Provide security consultancy, technical guidance, expertise, solutions, and education for the...


  • Singapore SINGAPORE AIRLINES LIMITED Full time

    Job Title: Information Security SpecialistWe are seeking an experienced Cybersecurity Threat Management Lead to join our team at Singapore Airlines Limited. As a key member of the Group Information Security Team, you will play a crucial role in initiating, implementing, and maintaining security products and solutions to support enterprise security.About the...


  • Singapore PEOPLEBANK SINGAPORE PTE. LTD. Full time

    We are seeking a seasoned Information Security Specialist to join our team at Peoplebank Singapore Pte. Ltd.As an experienced cybersecurity professional, you will be responsible for designing and implementing robust security architectures, conducting vulnerability scanning activities, and managing access management and SIEM tools.The ideal candidate will...


  • Singapore PEOPLEBANK SINGAPORE PTE. LTD. Full time

    We are seeking an experienced Information Security Specialist to join our team at PEOPLEBANK SINGAPORE PTE. LTD.About the RoleThis is a 12-month contract position based in the CBD area, offering a competitive salary of SGD $80,000 - $120,000 per annum.Job DescriptionThe ideal candidate will have a minimum of 2+ years of experience in IT security, with a...


  • Singapore RECRUIT EXPERT PTE. LTD. Full time

    At RECRUIT EXPERT PTE. LTD., we are seeking a highly skilled Senior Information Security Specialist to join our team.Job DescriptionWe are a financial institution specializing in accepting fixed and savings deposits and providing loans and credit facilities to individuals and Small and Medium Enterprises (SMEs).The successful candidate will be responsible...


  • Singapore NETPOLEON SOLUTIONS PTE LTD Full time

    We are seeking a highly skilled Information Security Specialist to join our team at NetPoleon Solutions PTE LTD.OverviewNetPoleon Solutions is a leading IT Network Security solutions provider, and we are expanding our presence in Singapore. As an Information Security Specialist, you will play a critical role in implementing and maintaining our cybersecurity...


  • Singapore CONCORDE SECURITY PTE. LTD. Full time

    Job Title: Security Operations SpecialistWe are seeking a highly skilled and experienced Security Operations Specialist to join our team at CONCORDE SECURITY PTE. LTD.Company OverviewConcorde Security Pte. Ltd. is a reputable security services provider with a strong presence in the industry. Our company values dedication, professionalism, and excellent...


  • Singapore LANTU EMPLOYMENT AGENCY PTE. LTD. Full time

    Job OverviewLantu Employment Agency PTE. LTD. is seeking an experienced Information Security Specialist to join our cybersecurity team. This role involves conducting advanced penetration tests on networks, web applications, and systems to identify vulnerabilities and recommend security improvements.Key ResponsibilitiesPerform in-depth penetration tests on...


  • Singapore CENTRICS NETWORKS PTE. LTD. Full time

    Job DescriptionCentrics Networks PTE. LTD. is seeking a highly skilled Information Security Specialist to join our team.About the RoleThis is a challenging and rewarding opportunity for an experienced IT professional to take on a key role in protecting our infrastructure and data from cyber threats.The successful candidate will have a strong background in...