Senior Associate, Cyber Risk Offensive Security

1 week ago


Singapore Kroll Full time

**Senior Associate, Cyber Risk**

**Offensive Cyber Security: Proactive consulting, Red Teaming, Pen-Testing and ethical hacking.**

In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answers—in all areas of business. We value the diverse backgrounds and perspectives that enable us to think globally. As part of One team, One Kroll, you’ll contribute to a supportive and collaborative work environment that empowers you to excel.

**Job Description/ Requirements**:
Kroll’s Cyber practice works on hundreds of matters a year, including on some of the highest profile cyber matters in the world. With experts based around the globe, supported by ground-breaking technology, we can help protect our client’s data, people, operations and reputation with innovative cyber risk assessments, investigations and reporting. We help enable organization to be more cyber resilient by preparing for and detecting incidents through risk assessments, penetration testing and threat detection/intelligence services. Our clients also count on us for quick and expert support in the event of a cyber breach or attack; we help clients - of all sizes -respond to incidents and restore stability through digital forensics, breach notification, and identity monitoring and restoration services for individuals affected by a data breach.

Our professionals balance analytical skills, deep market insight and independence to deliver solid, defensible analysis and practical advice to our clients. As an organization, we think globally. We create transparency in an opaque world, and we encourage our people to do the same. That means when you take your place on our team, you’ll discover a supportive and collaborative work environment that empowers you to excel. If you’re ready to share your perspective with the world and help deliver cutting edge cyber security work, then Kroll can offer you a unique experience.

**RESPONSIBILITIES**:

- Deliver technical cyber security assessment services such as penetration testing, source code review, security architecture review, red/purple team exercises and tabletop exercises.
- Keep up to date with the latest exploitation techniques and procedures through research and access to our training platforms and intelligence sources
- Assist with writing and delivering presentations for diverse audiences, ranging from industry groups/ events to private industry clients
- Assist with DFIR investigations, as needed.

**ESSENTIAL REQUIREMENTS**:
These qualities are considered most important to performing the role:

- Demonstrated ability to conduct penetration testing, vulnerability assessments, red teaming
- Experience using open-source and commercial cyber security testing tools and frameworks
- Familiarity with CWE, CVSS, OWASP, Mitre ATT&CK frameworks and scoring systems
- Ability to work with mínimal supervision and guidance
- Ability to quickly learn new tools and techniques and adapt to new environments
- A pro-active and results driven mindset with a desire to collaborate and learn
- Good written and spoken English skills
- Ability to communicate effectively with both technical and non-technical audiences
- Good time management and organizational skills
- Comfortable working alone or in small teams on very specialized engagements

**DESIRABLE

**REQUIREMENTS**:

- Bachelor’s Degree or higher in Computer Science, Engineering or other relevant field
- Software development and scripting experience
- Hardware engineering, maker or hardware hacking experience
- Be familiar or experienced with Active Directory security
- Good knowledge of Cloud technology and security
- Prior participation in CTF or Bug Bounty programs
- Creating or contributing to open-source software projects, media or groups related to cyber security.
- Prior experience presenting at meetups or conferences, delivering training or running workshops
- Public speaking experience
- Experience with DFIR or blue team / SOC experience
- Reverse engineering experience
- Vulnerability research experience and exploit development
- Possession of relevant accreditation such as CREST, OSCP, GIAC, CRTP/CRTE, CISSP, etc.

Kroll is committed to equal opportunity and diversity, and recruits people based on merit.

efin

LI-CJ2



  • Singapore TITANFORGED SECURITY PTE. LTD. Full time

    Titanforged Security PTE LTD is seeking a skilled Offensive Security Specialist to join our team.We are a fast-growing cybersecurity consultancy firm that delivers offensive security professional services, including Vulnerability Assessment, Penetration Testing and Breach and Attack Simulation as a Service, to a wide range of client organisations.About the...

  • Offensive Security

    16 hours ago


    Singapore Hays Full time

    Senior Pentester/Penetration Tester - Provide support to the Risk/Compliance/Audit function. - Maintain Cyber Security response & reporting plan. - Perform threat and vulnerability assessment. Who you will be working for: An established firm with Global presence. What we are looking for: - Minimum 5 years of relevant experience in IT cybersecurity,...


  • Singapore VANTAGE POINT SECURITY PTE. LTD. Full time

    Roles & ResponsibilitiesRole Purpose:The Associate Security Consultant attains CREST CRT certification, learns other security assurance skills and assists in delivering penetration testing & offensive security projects to ensure a successful outcome that at least meets or exceeds the expectations of our clients.Role Outcomes:Mentored to achieved CREST CRT...


  • Singapore The Cyber Security Agency of Singapore Full time

    About CSA Established on 1 April 2015, the Cyber Security Agency of Singapore (CSA) provides dedicated and centralised oversight of Singapore's national cyber security functions. What We DoSupport execution of outreach programmes to raise cybersecurity awareness and adoption among target audiences such as students, parents, teachers and seniors.Assist in...


  • Singapore VANTAGE POINT SECURITY PTE. LTD. Full time

    Job SummaryVANTAGE POINT SECURITY PTE. LTD. is seeking a seasoned professional to lead our offensive security and penetration testing projects.About the RoleThis Senior Penetration Tester will possess extensive practical experience, hold multiple industry-recognised certifications, and demonstrate strong leadership qualities.Key Responsibilities:Manage...


  • Singapore THE RESOLUTE HUNTER PTE. LTD. Full time

    Job Title: Senior IT Risk/Cyber Security ProfessionalAbout the Role:The Resolute Hunter Pte. Ltd. is seeking an experienced Senior IT Risk/Cyber Security Professional to join their team. As a key member of the organization, you will be responsible for handling IT system risk framework and assessment, dealing with MAS vulnerability announcements, and ensuring...


  • Singapore The Cyber Security Agency of Singapore Full time

    Company OverviewCyber Security Agency of Singapore (CSA) is a government agency responsible for ensuring the safety and security of Singapore's cyberspace. Our mission is to keep our nation secure, power a digital economy, and protect our digital way of life.Job DescriptionWe are seeking a Cyber Security Regulations Specialist to join our team in the...


  • Singapore Volt Full time

    **Cyber Security Purple Team Specialist** - Looking for a Cyber Security Specialist with experience in both red and blue teaming operations. Experience in pentesting and experience towards forensic domains are essential. Looking for a minimum of 2-3 years of relevant experience._ - This is a permanent position, and the salary range is $5500-7500._ **The...


  • Singapore The Resolute Hunter Pte Ltd Full time

    Banking: IT Risk/Cyber Security (Senior Officer)The Resolute Hunter Pte Ltd SingaporePosted: 2 days ago | Type: In-Office Job | Duration: Permanent | Salary: Competitive*Seeking an IT Risk/Cyber Security talent who has a minimum of 2 years of experience handling Banking's IT Risk/cyber security.*THE COMPANYWith their reputable brand and commitment to their...


  • Singapore State Street Full time

    Who we are looking for An Information Security Officer who will be part of a team across APAC; responsible for ensuring the security of the business and functional teams in line with company security policy and risk tolerances. What you will be responsible for - Align to the mission of continuously improving the cyber risk posture regionally; and actively...


  • Central Singapore PayPal Full time

    **The Company** PayPal has been revolutionizing commerce globally for more than 25 years. Creating innovative experiences that make moving money, selling, and shopping simple, personalized, and secure, PayPal empowers consumers and businesses in approximately 200 markets to join and thrive in the global economy. We operate a global, two-sided network at...


  • Singapore Zurich Insurance Full time

    With the nature of Cybersecurity evolving so rapidly, Zurich Commercial Insurance is searching for _interested individual who wants to pursue a career as _Cyber risk to further strengthen Zurich’s capability with regards to Cyber insurance, Cyber risk advisory and Cyber services for businesses. The Management Associate role is a developmental program...

  • Appsec Analyst

    7 days ago


    Singapore Marina Bay Sands Full time

    LOVE WHAT YOU DO? THERE IS A PLACE FOR YOU HERE! Be part of our diverse and inclusive team. Job Responsibilities - Ability to review and understand source code from both business logic to ensure code is free from security defects prior to production release. Identify false positives, tracking and remediating found issues, tracking and performing the...

  • Appsec Analyst

    2 days ago


    Singapore Marina Bay Sands Full time

    **Job no**: 503271 **Work type**: Full Time **Location**: Perennial Business City **Categories**: Cyber Security **JOB SCOPE** - Ability to review and understand source code from both business logic to ensure code is free from security defects prior to production release. Identify false positives, tracking and remediating found issues, tracking and...


  • Singapore THE RESOLUTE HUNTER PTE. LTD. Full time

    Roles & Responsibilities*Seeking for an IT Risk/Cyber Security talent who has minimum 2 years of experience handling Banking's IT Risk/ cyber security*THE COMPANYWith their reputable brand and commitment to their clients, this company is increasing their operations in the region. They seek an IT Risk/Cyber Security Senior Officer to be part of their team.JOB...


  • Singapore THE RESOLUTE HUNTER PTE. LTD. Full time

    Roles & Responsibilities*Seeking for an IT Risk/Cyber Security talent who has minimum 2 years of experience handling Banking's IT Risk/ cyber security*THE COMPANYWith their reputable brand and commitment to their clients, this company is increasing their operations in the region. They seek an IT Risk/Cyber Security Senior Officer to be part of their team.JOB...


  • Singapore The Resolute Hunter Pte Ltd Full time

    M - Posted by Marie Tay- Recruiter *Seeking for an IT Risk/Cyber Security talent who has minimum 2 years of experience handling Banking’s IT Risk/ cyber security* **THE COMPANY** With their reputable brand and commitment to their clients, this company is increasing their operations in the region. They seek an IT Risk/Cyber Security Senior Officer to be...


  • Singapore Palo Alto Networks Full time

    Company Description **Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...


  • Singapore Crossell Full time

    Division: CCB-Chief Security Office Department: CCBN-Cyber Defence Operations Join a team of cybersecurity professionals and help Swiss Re to fulfil its mission in making the world more resilient. As a Senior Cybersecurity Analyst, you'll be monitoring current threats by analysing and handling major cyber incidents and implementing standards. You'll be...


  • Singapore Vantage Point Security Pte Ltd Full time

    **Penetration Testing - Associate Security Consultant** Vantage Point Security is a Crest Registered specialist in offensive security and Penetration Testing. We employ the same techniques as malicious attackers to identify and report security flaws and weaknesses in our clients business critical systems, so they no longer present a risk to the...