Penetration Tester

6 days ago


Singapore YY SMART TECH PTE. LTD. Full time

**Job Overview**

We are seeking for a Penetration Tester with CAT1 Security Clearance to lead VAPT for Singapore government and critical infrastructure sectors. You will execute full-scope attacks (networks, apps, cloud, OT), bypass advanced defenses, and deliver actionable remediation strategies.

This role requires CREST/OSCP certification, deep exploit development skills, and experience with GovTech cybersecurity frameworks.

**Core Responsibilities**

Advanced Threat Emulation:

- CAT1-cleared engagements:

- Network: Breach segmented govt networks (e.g., air-gapped systems)
- Applications: Exploit web/mobile apps (SCADA interfaces, GovTech portals)
- Cloud: Attack AWS GovCloud/Azure Government environments
- OT: ICS/SCADA system penetration (Siemens, Rockwell)
- Develop custom malware/exploits (C++, Python) to evade EDR/XDR.

Red Team Operations:

- Lead multi-vector campaigns:

- Phishing (Evade Proofpoint/MS ATP)
- Physical security bypass (RFID cloning, access control spoofing)
- Wireless attacks (802.1X, WPA3-Enterprise)
- Document TTPs aligned with MITRE ATT&CK for ICS/Enterprise.

Govt Compliance & Reporting:

- Align tests with IM8, CSA Red Teaming Guidelines, and NIST SP 800-115.
- Deliver executive briefings to CISOs with exploit demos.
- Create remediation playbooks

Research & Development:

- Reverse engineer firmware (Binwalk, Ghidra) for 0-day discovery.
- Contribute to ASEAN CERT advisories (e.g., SingCERT).

**Technical Requirements**

Non-Negotiable Credentials:

- CAT1 Security Clearance
- Active Certifications: OSCP or CREST CRT/CCT (Inf/App)
- 2+ years in pentesting

Tool Proficiency
- Exploitation - Metasploit Pro, Cobalt Strike, Burp Suite Pro, PowerSploit
- Post-Exploit - BloodHound, Mimikatz, Impacket, Covenant C2
- Forensics - Volatility, Wireshark, CHIRP (ICS)
- Wireless - HackRF One, Proxmark3, Wi-Fi Pineapple
- Cloud - Pacu (AWS), MicroBurst (Azure), GCP IAM Exploit Toolkit

Preferred Qualifications
- Certifications: OSCE³, CREST CCT Gold, OSCP
- Govt Framework Experience: IM8 Penetration Test Guidelines, CSA Cyber Essentials
- Public Contributions: CVEs, exploit-db submissions, conference talks (Black Hat Asia, DEFCON)


  • Penetration Tester

    2 weeks ago


    Singapore SearchElect Full time

    **Penetration Tester**: Are you a skilled and experienced Penetration Tester who loves to challenge yourself and think outside the box? Do you want to join a CREST accredited specialist security firm that offers a variety of exciting projects and opportunities for career growth? If so, read on! **About Our Client**: **About the Penetration Tester Role**: To...

  • Penetration Tester

    5 days ago


    Singapore SSquad Global Full time

    **We're Hiring: Penetration Tester (Immediate Joiner)** **Location**: Singapore (Work from Office, 5 Days) **Experience**: 3+ Years **Availability**: Immediate Joiners Only **Interview Mode: Virtual,** Ssquad Global is seeking a skilled and passionate **Penetration Tester** to join our cybersecurity team at our Bangalore office. If you're a security...

  • Penetration Tester

    7 days ago


    Singapore SSquad Global Full time $12,299 - $40,864 per year

    We're Hiring: Penetration Tester (Immediate Joiner)Location: Singapore (Work from Office, 5 Days)Company: Ssquad Global )Experience: 3+ YearsAvailability: Immediate Joiners OnlyInterview Mode: Virtual,Ssquad Global is seeking a skilled and passionate Penetration Tester to join our cybersecurity team at our Bangalore office. If you're a security professional...


  • Singapore FORTIEDGE PTE. LTD. Full time

    We are looking for 4 trainee for the following role. Role: Perform penetration testing & Vulnerability Assessment based on proven methodologies. Network penetration testing Perform security hardening review of infrastructure, common operating systems and servers. Perform Source Code Review. Training and Mentorship: As a Penetration Tester Trainee, you...

  • Penetration Tester

    5 days ago


    Singapore ST ENGINEERING INFO-SECURITY PTE. LTD. Full time

    We are seeking an experienced Penetration Tester to join our team. The successful candidate will have expertise in cloud / mobile security, penetration testing, and vulnerability assessment. The role involves identifying and exploiting vulnerabilities in cloud-based systems, applications, and infrastructure to help our organization strengthen its cloud...


  • Singapore beBeeCybersecurity Full time $80,000 - $120,000

    Protect Your Business with Our Cybersecurity ExpertiseAbout the Role:We are seeking a skilled penetration tester to join our team of cybersecurity professionals. As a member of our team, you will have the opportunity to work on engagement teams serving clients in providing independent assessments or implementation of cyber solutions.Your Key...

  • Penetration Tester

    4 days ago


    Singapore FORTIEDGE PTE. LTD. Full time

    Company: Fortiedge Pte. Ltd.About Us: Fortiedge is a cybersecurity firm dedicated to protecting our clients' digital assets. We are committed to innovation, excellence, and providing top-notch services. Join our team and help us safeguard the future.Job Description: We are seeking a skilled and motivated Penetration Tester to join our cybersecurity team....

  • Penetration Tester

    2 weeks ago


    Singapore Teknowiz Full time

    Overview Urgently hiring for one of our Bug4 clients in Singapore. Job Title - Consultant-Penetration Tester Location - Singapore Job Type - 4 months (Contract - Onsite)Qualifications OSCP-certified with hands-on penetration testing experience. Proficient in network, web application, and API testing. Physically available in Singapore for 3-4 months onsite...


  • Singapore FORTIEDGE PTE. LTD. Full time $70,000 - $120,000 per year

    We are looking for 4 trainee for the following role.Role:Perform penetration testing & Vulnerability Assessment based on proven methodologies.Web application penetration testingMobile application penetration testingNetwork penetration testingPerform security hardening review of infrastructure, common operating systems and servers.Perform Source Code...


  • Singapore Teknowiz Full time

    **We're Hiring: OSCP-Certified Penetration Testers - 3-4 Month Contract (Singapore)** Our client, a leading enterprise in Singapore, is engaging **certified cybersecurity experts** for an urgent project. **Role**: Penetration Tester (OSCP) **Location**: Singapore (on-site) **Duration**: 3-4 Months **Experience**: 3-4 years in offensive security, red...