Penetration Testing Specialist

2 weeks ago


Singapore StackTech Pte. Ltd. Full time $120,000 - $240,000 per year

About the Role

As a Penetration Testing Specialist, reporting to the Internal Audit function, you will play a critical role in evaluating the organization's cybersecurity posture by simulating real-world attacks and identifying vulnerabilities across systems, applications, and networks. Your work directly supports audit objectives by validating the effectiveness of security controls, ensuring regulatory compliance, and mitigating operational risks.

Key Responsibility

  • Conduct comprehensive penetration tests on applications, databases, systems and networks to identify security vulnerabilities, and prepare a detail report on the findings.
  • Propose measures to ensure that identified vulnerabilities are addressed.
  • Work closely with IT, risk, and compliance teams to track remediation efforts and verify closure.
  • Simulate cyber attacks to evaluate defensive measures and improve security posture.

Requirements

  • Minimum 5 years of hands-on penetration testing experience for web applications, mobile applications, APIs, network, databases and load testing.
  • Experience conducting secure code review.
  • Degree in computer science/computer engineering/information security or equivalent.
  • Working knowledge of all aspects of information security is essential.
  • Familiarity with systems and operational architecture of large internet companies or online business models.
  • Good communication (spoken and written) skills, able to work independently and as a team.
  • Certifications from either GIAC/Offensive Security/CREST required.
  • Hands on experience in Kali Linux, Burp, and other advanced penetration testing, and secure code review tools.
  • Good to have: Basic Mandarin skills for simple verbal and written communication with Chinese partners.

渗透测试专家

关于职位

作为一名向内部审计部门汇报的渗透测试专家,您将在评估组织的网络安全态势方面发挥关键作用,通过模拟真实攻击并识别系统、应用程序和网络中的漏洞。您的工作将通过验证安全控制措施的有效性、确保合规性并降低运营风险,直接支持审计目标。

主要职责

  • 对应用程序、数据库、系统和网络进行全面的渗透测试,以识别安全漏洞,并撰写详细的调查报告。
  • 提出措施,确保已识别的漏洞得到解决。
  • 与IT、风险和合规团队紧密合作,跟踪修复工作并验证漏洞已关闭。
  • 模拟网络攻击,评估防御措施并提升安全态势。

职位要求

  • 至少5年Web应用程序、移动应用程序、API、网络、数据库和负载测试的渗透测试经。
  • 具备安全代码审查经验。
  • 计算机科学/计算机工程/信息安全或同等学历。
  • 具备信息安全各方面的工作知识。
  • 熟悉大型互联网公司或在线商业模式的系统和运营架构。
  • 良好的沟通能力,能够独立工作和团队合作。
  • 需持有GIAC/Offensive Security/CREST认证。
  • 具有 Kali Linux、Burp 和其他高级渗透测试及安全代码审查工具的实践经验。
  • 加分项:具备基础中文能力,能够进行简单的口头和书面沟通。


  • Singapore Centre for Strategic Infocomm Technologies (CSIT) Full time

    Cybersecurity Penetration Test Specialist Join to apply for the Cybersecurity Penetration Test Specialist role at Centre for Strategic Infocomm Technologies (CSIT) . Job Responsibilities Conduct network penetration testing across various domains such as Enterprise/SOHO networks, cloud/web services, and IoTs. Research and evaluate open-source tools; develop...


  • Singapore Centre for Strategic Infocomm Technologies (CSIT) Full time

    Senior Cybersecurity Penetration Test Specialist Join to apply for the Senior Cybersecurity Penetration Test Specialist role at Centre for Strategic Infocomm Technologies (CSIT)Senior Cybersecurity Penetration Test Specialist 2 months ago Be among the first 25 applicants Join to apply for the Senior Cybersecurity Penetration Test Specialist role at Centre...


  • Singapore Centre for Strategic Infocomm Technologies Full time

    Job Scope Conduct network penetration testing in a wide range of domains such as Enterprise/SOHO networks and systems, clouds/web services, and IoTs Research and evaluate open source tools, and develop scripts (e.g., Python, Powershell) to enable penetration testing Conduct security assessment and develop new conops to exploit the weaknesses of network...


  • Singapore SWARMNETICS PTE. LTD. Full time $100,000 - $150,000 per year

    Job Summary:We are seeking a highly skilled and experienced penetration testing Consultant. In this role, you will be responsible for executing technical security assessments.Responsibilities:Perform technical security assessment engagements for clients including penetration testing, host configuration reviews, secure code reviews, etcContribute to the...


  • Singapore TD Full time

    Information Security Specialist - Penetration Tester Join to apply for the Information Security Specialist - Penetration Tester role at TD Pay Details We’re committed to providing fair and equitable compensation to all our colleagues. As a candidate, we encourage you to have an open dialogue with a member of our HR Team and ask compensation related...


  • Singapore TD Full time

    Information Security Specialist - Penetration Tester Join to apply for the Information Security Specialist - Penetration Tester role at TD Pay Details We’re committed to providing fair and equitable compensation to all our colleagues. As a candidate, we encourage you to have an open dialogue with a member of our HR Team and ask compensation related...


  • Singapore Ministry of Defence Singapore Full time $100,000 - $120,000 per year

    Centre for Strategic Infocomm TechnologiesPermanentWhat you will be working on• Conduct network penetration testing in a wide range of domains such as Enterprise/SOHO networks and systems, clouds/web services, and IoTs• Research and evaluate open source tools, and develop scripts (e.g., Python, Powershell) to enable penetration testing• Conduct...

  • Penetration Tester

    2 weeks ago


    Singapore SearchElect Full time

    **Penetration Tester**: Are you a skilled and experienced Penetration Tester who loves to challenge yourself and think outside the box? Do you want to join a CREST accredited specialist security firm that offers a variety of exciting projects and opportunities for career growth? If so, read on! **About Our Client**: **About the Penetration Tester Role**: To...


  • Singapore WECHAT INTERNATIONAL PTE. LTD. Full time

    **Responsibilities**: - Analyze requirements and develop a test plan for conducting penetration tests. - Lead the team to achieve security penetration testing goals for various products, including: - Designing and writing test cases based on requirements and scenarios. - Conducting tests and verifying whether the system or product meets security...


  • Singapore Atomic Group Full time

    This person will: 1) Lead and deliver penetration testing security engagements 3) Involved in deep technical challenges, while at the same time being able to abstract and explain the most complex issues to a C-level executives You will need: - An OSCP/CRT Certification or equivalent Job ID #259 - ABOUT COMPANY - Atomic Group - Singapore HR &...