Apac Offensive Security Expert
5 hours ago
In Asia Pacific, BNP Paribas is one of the best-positioned international financial institutions with an uninterrupted presence since 1860. Currently with over 18,000 employees* and a presence in 13 markets, BNP Paribas provides corporates, institutional and private investors with product and service solutions tailored to their specific needs. It offers a wide range of financial services covering corporate & institutional banking, wealth management, asset management, insurance, as well as retail banking and consumer financing through strategic partnerships.
Worldwide, BNP Paribas has a presence in 68 markets with more than 193,000 employees. It has key positions in its three main activities: Domestic Markets and International Financial Services (whose retail-banking networks and financial services are covered by Retail Banking & Services) and Corporate & Institutional Banking, which serves two client franchises: corporate clients and institutional investors. Asia Pacific is a key strategic region for BNP Paribas and it continues to develop its franchise in the region.
- excluding partnerships
BNP Paribas offers you an exciting career in an international business environment that is fast-paced, diverse and focuses on creating high-value relationships with our clients. We offer competitive salary and benefits, as well as a working environment where you’re valued as part of the team.
**Position Purpose**:
BNP Paribas has a presence in 74 countries with over 190,000 employees. It ranks highly in its two core activities: Retail Banking and Services as well as Corporate & Institutional Banking.
In Asia Pacific, the BNP Paribas Group is a leading employer with more than 15,000 employees* and a presence in 14 markets. Being one of the largest international banking networks, we strive to employ talented and innovative people who are aligned to our vision and culture.
The Offensive Security expert provides technical expertise on offensive security matters for all APAC locations
- excluding partnerships
**Responsibilities**
**Direct Responsibilities**
1: Design & animate simulated attacks as validated by the bank’s management,
2: Enrich and refresh the toolsets for the offensive security team,
3: Challenge the status of cyber readiness, by designing and engaging simulated attacks against the bank, and evaluate the effectiveness of the defense from Technology, People and Process perspective,
4: Keep abreast of latest cyber threat intelligence and attack techniques, study/learn and potentially replicate similar techniques on the bank to verify the bank’s protection,
5: Organize Purple team exercises to enhance the bank’s cyber security from both Offensive Security and Cyber Defense perspective,
6: Manage other offensive security topics such as penetration test and DDoS as directed by the CISO,
7: Propose feasible remediation actions and track the completion,
8. Exert a critical and risk-minded approach in assessing and proposing scenario of attack/exploit, realistic with market threat landscape.
**Contributing Responsibilities**
1: Contribute to the learning of cyber security community in APAC CIB by presenting latest studies, organizing learning sessions and security events,
2: Contribute to Cyber Security Programme,
3: Assist regional and local CISO in the regulatory response and review with regards to cyber-attacks,
4: Contribute to establishment of Cyber Range and ongoing usage of it for offensive security ,
5: Contribute to the Cyber Crisis Committee and crisis management as needed.
**Technical & Behavioral Competencies**:
- Hands-on common script/shell TTPs,
- Have a strong technical background in IT security,
- Excellent working knowledge of technology infrastructure, e.g., Windows/Linux operating system, networking protocols, Database Management, Middleware,
- In-depth security knowledge in the following areas: authentication, encryption algorithms, PKI, privilege management, data leakage prevention,
- Familiarity with the common toolset of vulnerability management, penetration testing and red team exercise, e.g., Nmap, Nessus, Kali Linux, Metasploit, Burp, SET,
- Proven capability to learn fast and the ability to keep up with technology trends,
- Flexibility and sensitivity of working in a heavily regulated industry,
- Strong team player and always conduct oneself in a respectful manner,
- Client focused and commercial thinking,
- Excellent interpersonal and communication skills,
- Excellent stakeholder management skills in a matrix environment.
**Specific Qualifications (if required)**:
- OSCP/OSEP
- CREST certificate will be a plus
-
Head of Offensive Security
6 days ago
Central Singapore Emprego SG Full time**Location** Singapore, Central Singapore **Job Type** Full Time **Salary** $16,000 - $25,000 Per Month **Date Posted** 6 hours ago Additional Details **Job ID** 9900 **Job Views** 25 Roles & Responsibilities Background: To keep up with the fast pace of the software development release cycle, the Application Security and DevSecOps team is...
-
Assistant Manager
2 weeks ago
Singapore TechBridge Market Full timeIf you are passionate about playing a key role in the success of a German Multinational Automotive Corporation, we want to hear from you! Our client is a well-established brand in the Automotive industry and they are looking for a passionate and driven **Assistant Manager - Offensive Cyber Security Specialist **to join their team. This is an exciting...
-
Offensive Security Engineer
2 weeks ago
Singapore Traveloka Full timeOverview It\'s fun to work in a company where people truly BELIEVE in what they\'re doing!Securing an organization and its information systems requires a holistic approach that includes continuous security verification, extending beyond standard testing and assessment methods. By assuming the role of a threat actor, the Offensive Security Team delivers...
-
Offensive Security Engineer
1 week ago
Singapore - Local Office Traveloka Full time $120,000 - $180,000 per yearIt's fun to work in a company where people truly BELIEVE in what they're doing Job DescriptionSecuring an organization and its information systems requires a holistic approach that includes continuous security verification, extending beyond standard testing and assessment methods. By assuming the role of a threat actor, the Offensive Security Team...
-
Head of Offensive Security
2 days ago
Singapore SEKURO OPERATIONS PTE. LTD. Full time $120,000 - $200,000 per yearHead of OffsecSekuro is a trusted provider of information security consulting services. We are currently recruiting a smart, experienced and motivated security professional to join manage our Technical Assurance OFFSEC team and engagements in Asia. The role involves working with mid-market to enterprise level clients. The successful candidate will have a lot...
-
Singapore JPMorganChase Full timeLead Cybersecurity Architect, Offensive/Defensive Security Join to apply for the Lead Cybersecurity Architect, Offensive/Defensive Security role at JPMorganChase Lead Cybersecurity Architect, Offensive/Defensive Security 1 day ago Be among the first 25 applicants Join to apply for the Lead Cybersecurity Architect, Offensive/Defensive Security role at...
-
Associate, Cyber Risk, Offensive Security
5 hours ago
Singapore Kroll Full time**Associate, Cyber Risk - Singapore** **Offensive Cyber Security: Proactive consulting, Red Teaming, Pen-Testing and ethical hacking.** In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our...
-
Binary Security Expert
2 weeks ago
Singapore Shopee Full timeDepartmentEngineering and Technology- LevelExperienced (Individual Contributor)- LocationSingaporeThe Engineering and Technology team is at the core of the Shopee platform development. The team is made up of a group of passionate engineers from all over the world, striving to build the best systems with the most suitable technologies. Our engineers do not...
-
Account Executive Apac
4 days ago
Singapore Aikido Security Full timeWe’re taking on the crusty global cyber market, the "no-BS" security platform for devs. In the past, only large enterprises needed to worry about security. Today,cybersecurity has become the top concern of 75% of all CEOs, from startups to enterprises. This means more work for developers, who need to become security experts and ensure their platforms are...
-
Cyber Security Researcher
2 days ago
Singapore WatchTowr Full time**Hello, let us introduce ourselves!** We are watchTowr, an early-stage VC-backed cyber security startup headquartered in Singapore. We’ve recently raised US$2,250,000 in seed funding and we’re now looking to scale up rapidly in line with our traction. Cyber security veterans and technical experts, we are obsessed with building exciting technology for...