Senior Penetration Tester, Assessments
3 days ago
**JOB DESCRIPTION**
Join our dedicated team in a role where your expertise in risk assessments and cybersecurity exercises propels forward our mission of safeguarding our operations and enhancing resiliency. This position offers the unique opportunity to shape our security posture and contribute to our continuous improvement in an environment that values innovation and teamwork.
As an Assessments & Exercises Senior Associate within our Cybersecurity & Tech Controls team, you will help enhance the firm's cybersecurity or resiliency posture by using industry-standard assessment methodologies and techniques to proactively identify risks and vulnerabilities in people, processes, and technology. Collaborate with the team to design and execute risk-driven tests and simulations. Evaluate preventative controls, incident response processes, and detection capabilities. Your ability to make informed decisions and foster continuous improvement will allow you to contribute to the achievement of the team's operational goals and the mitigation of cyber and resiliency risks.
**Job responsibilities**
- Design and execute testing and simulations - such as penetration tests, technical controls assessments, cyber exercises, or resiliency simulations, and contribute to the development and refinement of assessment methodologies, tools, and frameworks to ensure alignment with the firm’s strategy and compliance with regulatory requirements
- Evaluate controls for effectiveness and impact on operational risk, as well as opportunities to automate control evaluation
- Collaborate closely with cross-functional teams to develop comprehensive assessment reports - including detailed findings, risk assessments, and remediation recommendations - making data-driven decisions that encourage continuous improvement
**Required qualifications, capabilities, and skills**
- Bachelor’s Degree in Computer Science or related disciplines
- Foundational knowledge of cybersecurity organization practices, operations, risk management processes, principles, architectural requirements, engineering and threats and vulnerabilities, including incident response methodologies
- Ability to identify systemic security or resiliency issues as they relate to threats, vulnerabilities, or risks, with a focus on recommendations for enhancements or remediation, and proficiency in multiple security assessment methodologies (e.g., Open Worldwide Application Security Project (OWASP) Top Ten, National Institute of Standards and Technology (NIST) Cybersecurity Framework), offensive testing tools, or resiliency testing equivalents
- Excellent communication, collaboration, and report writing skills, with the ability to influence and engage stakeholders across various functions and levels
**Preferred qualifications, capabilities, and skills**
- Proficiency in security concepts for both Windows and Unix-like Operating Systems
- Experience in source code review and/or building software with multiple programming languages (i.e. Python, Java, Rust, etc.)
- Certifications like OSWE, CREST (CRT, CCT), OSCP, OSCE, GXPN, GWAPT, GPEN, BSCP
**ABOUT US**
J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world’s most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
**ABOUT THE TEAM**
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success.
-
Penetration Tester
7 days ago
Singapore THE HACENS TALENT PTE. LTD. Full time**Job Desk**: - Identify, exploit, and document vulnerabilities in various systems. - Work with the senior penetration tester to develop and execute test plans. - Perform vulnerability assessments using automated tools and manual techniques. - Contribute to the creation of detailed reports outlining findings and providing actionable remediation...
-
Penetration Tester
5 days ago
Singapore KNIT TECHNOLOGIES PTE. LTD. Full time**Job Description - Penetration Tester**: Knit Technologies, Headquarters in Singapore, is a fast-growing IT & Cybersecurity Integrator and Managed Service Provider in Asia. At Knit Technologies, we are on a mission to bridge IT and Cybersecurity needs and to continuously deliver innovation by bringing people, process and technology together. We offer a...
-
Junior Penetration Tester
4 days ago
Singapore Telsecure Pte. Ltd. Full timeTelsecure, a provider of cybersecurity consultancy services, is seeking a talented Junior Penetration Tester to join our team. As a Junior Penetration Tester, you will play a crucial role in ensuring the security of our client's systems and networks. Our company supports flexible work arrangement and this role offer the opportunity to deliver a wide range of...
-
Senior Penetration Tester, Cyber Security
5 days ago
Singapore Hays Full timeSenior Penetration Tester - Deliver Application Security Assessment activities. - Develop and implement red teaming program. - Plan and run adversarial attack simulation exercises. - Perform threat and vulnerability assessment, and control selection. - Maintain Cyber Security response & reporting plan within areas of responsibility. - Perform research on...
-
Penetration Tester
6 days ago
Singapore LANTU EMPLOYMENT AGENCY PTE. LTD. Full timeRoles & Responsibilities Job Summary: We are seeking a highly skilled Penetration Tester to join our cybersecurity team. In this role, you will be responsible for performing advanced penetration tests on networks, web applications, and systems to identify vulnerabilities and recommend security improvements. The ideal candidate will have experience with...
-
Penetration Tester
2 days ago
Singapore LANTU EMPLOYMENT AGENCY PTE. LTD. Full timeJob Summary: We are seeking a highly skilled Penetration Tester to join our cybersecurity team. In this role, you will be responsible for performing advanced penetration tests on networks, web applications, and systems to identify vulnerabilities and recommend security improvements. The ideal candidate will have experience with various security frameworks,...
-
Penetration Testers
7 days ago
Singapore SEDHA CONSULTING PTE. LTD. Full time**Penetration Testers** **Job Scope**: - Conduct simulated cyber attacks against systems to identify vulnerabilities that could be exploited. - Engage in both automated and manual testing techniques to evaluate security defenses. - Mimic the techniques used by attackers to discover security weaknesses and the potential impacts of...
-
Penetration Tester
1 week ago
Singapore Teknowiz Full timeOverview Urgently hiring for one of our Bug4 clients in Singapore. Job Title - Consultant-Penetration Tester Location - Singapore Job Type - 4 months (Contract - Onsite)Qualifications OSCP-certified with hands-on penetration testing experience. Proficient in network, web application, and API testing. Physically available in Singapore for 3-4 months onsite...
-
Penetration Tester-oscp Certified
2 weeks ago
Singapore Teknowiz Full time**We're Hiring: OSCP-Certified Penetration Testers - 3-4 Month Contract (Singapore)** Our client, a leading enterprise in Singapore, is engaging **certified cybersecurity experts** for an urgent project. **Role**: Penetration Tester (OSCP) **Location**: Singapore (on-site) **Duration**: 3-4 Months **Experience**: 3-4 years in offensive security, red...
-
Penetration Tester
1 week ago
Singapore RAINCO PTE. LTD. Full timeAs a Penetration Tester, you will be a part of the Poloniex security team, reporting to the Security Manager, helping us secure, evolve, and grow our world-class cryptocurrency exchange, bringing the future of finance to emerging global markets. You will work with fellow Security engineers in the Singapore office and a diverse team of remote security...