Web Application Vulnerability Researcher

2 weeks ago


Singapur, Singapore InnoEdge Labs Pte. Ltd. Full time

At InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver cutting-edge solutions and services.

InnoEdge believes in fostering a culture where team members are encouraged to overcome challenges, explore new ideas, and work together to succeed. We value individuals who are determined to push beyond the boundaries, and have a thirst for knowledge, continuous learning, and self-improvement.

Collaboration is key to our success. We prioritise open communication, constructive feedback, and a willingness to help others. We are committed to creating a supportive work environment that encourages excellence, innovation, and continuous improvement. We're looking for individuals who share our values and are excited to join us on our cyber mission.

Responsibilities
  • Recommend direction for research projects and conceptualize new tools/techniques that will enhance the vulnerability discovery process.
  • Mentor and guide new researchers in the area of web application vulnerability research.
  • Perform deep research into web applications with complex codebases to understand the attack surface for an attacker to abuse.
  • Ideate hypothesis as to how an attacker could possibly abuse features in the application and validate if hypothesis holds true.
  • Develop proof of concept to demonstrate the severity of the discovered vulnerability and propose mitigations.
  • Develop cutting edge tools to improve and scale up the vulnerability discovery process for web applications.
  • Keep abreast of the latest research into web security and vulnerabilities detection techniques.
  • Level up the local security community through mentorship of aspiring security researcher, publishing blog post and speaking at conferences.

Requirements

  • Demonstrated ability to
    • Perform attack surface analysis and prioritization of research on a web application.
    • Independently apply static/dynamic analysis techniques to find low lying bugs in a web application.
    • Discover and exploit vulnerability in web applications.
  • Deep understanding of web programming languages (PHP, Java, Python, .Net…), web frameworks, typical web vulnerabilities and how they are commonly exploited.
  • Track record of having found vulnerabilities in the last 4 years.


For a more senior role, we're looking for candidates with:

  • Fluency in assembly language (x86/64)
  • Experience in debugging, reverse engineering binary and exploiting memory corruption and logic vulnerabilities.
  • Track records in these areas:
    • Consistency in discovering security-related vulnerabilities and demonstrating their impact.
    • Performing research on a complex web application by a major vendor (e.g. WordPress), applying attack surface analysis and prioritization, and performing various static and dynamic analysis techniques to find bugs in the different components.
    • Discovering and exploiting security vulnerabilities in in a complex application by a major vendor (e.g. Exchange, WordPress).

Benefits

  • Training & Development
  • Performance Bonus
  • Medical Benefits
  • Hybrid Work Arrangement


If you meet these qualifications and are passionate about cyber security, we encourage you to apply for this exciting opportunity. We offer competitive compensation, a comprehensive benefits package, and a collaborative and dynamic work environment.



  • Singapur, Singapore Ensign InfoSecurity Full time

    Ensign is hiring !Responsibilities:Perform research to discover vulnerabilities in operating systems, software applications and hardware devices through code audit, black box testing and reverse engineeringDevelop and enhance processes and tools for the discovery and triage of vulnerabilitiesResearch into new vulnerability discovery techniques and...


  • Singapur, Singapore InnoEdge Labs Pte. Ltd. Full time

    At InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver cutting-edge solutions and...


  • Singapur, Singapore InnoEdge Labs Pte. Ltd. Full time

    At InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver cutting-edge solutions and...


  • Singapur, Singapore ST Engineering Full time

    Title: Vulnerability Assessment and Penetration Testing Engineer Job ID: Location: ST Engineering Jurong East Bui, SG Description: Responsibilities: Conduct vulnerability assessment and penetration test on networks, web applications, mobile applications, wireless systems, clouds, IOT Perform host configuration review of OS, applications...

  • Web Application

    2 weeks ago


    Singapur, Singapore Talenthrive Full time

    Job title : Web Application DeveloperOverview:We are looking for a highly motivated and experienced web application developer to join our amazing team. Choose us for an amazing opportunity to develop your career with us.Responsibilities:Analyze business requirements and develop custom software and scripts using .Net Framework, ASP Framework, Microsoft Visual...


  • Singapur, Singapore careers@gov Full time

    [What the role is] Singapore Land Authority is the geospatial agency in Singapore, managing and operating a web-based public map platform to provide localised and accurate map data and location-based services (LBS) to serve many government agencies, private sectors and general public. We are looking for a talented web application developer to join...


  • Singapur, Singapore Nanyang Technological University Full time

    NTU is a world-class research-intensive university located in Singapore, consistently ranked among the top universities in Asia and the world. We are home to over 33,000 students and 10,000 staff, offering a vibrant and dynamic work environment for individuals seeking to advance their careers.We are seeking an experienced and motivated Specialist, IT...


  • Singapur, Singapore InnoEdge Labs Pte. Ltd. Full time

    At InnoEdge, we work with organisations to protect them from cyber threats. We help detect new unknown cyber threats through research, fortify networks, and defend critical information infrastructures. Based in Singapore, our team consists of cybersecurity experts who use the advanced techniques and technologies to deliver cutting-edge solutions and...

  • Systems Analyst

    3 weeks ago


    Singapur, Singapore TransitLink Full time

    Responsibilities:Design, maintain and enhance existing and new software systems to support business requirementsLiaising with end-users, stakeholders to define user requirement and design specificationsExploring and enhancing application in new and emerging technologiesConducting system testing to ensure applications conform to user requirementsReviewing...

  • Software Engineer

    2 weeks ago


    Singapur, Singapore 3E Accounting Pte Ltd Full time

    Description 3E Accounting Singapore is currently looking to appoint a Software Engineer (Mobile and Web Application Development) to join their company digital R&D team in Singapore office. 3E Accounting Pte Ltd aims to be the leading corporate service provider and top accounting firm in Singapore providing One-Stop Solution services for our clients....

  • Junior Web Developer

    3 weeks ago


    Singapur, Singapore GECO Asia Full time

    As part of the Technology & Operations team, the Junior Web Developer will be working on developing cutting-edge functionality for new or existing enterprise web applications. Job Requirements and Responsibilities :Develop, automate and maintain web applications and services to support business and operational goals while adhering to performance and quality...


  • Singapur, Singapore Ensign InfoSecurity Full time

    Ensign is hiring !Duties and Responsibilities:Research and Development – Stay current with the latest cybersecurity threats, vulnerabilities, and tools. Contribute to the development and automation of security assessment processes, red team exercises, and the creation of new methodologies or tools.Vulnerability Assessment – Learn and collaborate with the...

  • Research Assistant

    2 weeks ago


    Singapur, Singapore Singapore Institute of Technology Full time

    Key Responsibilities Participate in and manage the research project with Principal Investigator (PI), Co-PI and the research team members to ensure all project deliverables are met. Undertake these responsibilities in the project: Management of Student Assistants and workplacesCoordinate with industrial partnersManage project schedule, equipment,...

  • Web Developer

    2 weeks ago


    Singapur, Singapore Helius Full time

    Job Description: - Coordinate with the web development team to maintain and improve the site in collaboration with product managers and designers. - Develop and manage well-functioning databases and applications. - Write well-designed, testable, efficient, clean code on the front-end and back-end. - Participate in the design and creation of new...

  • App Developer

    3 weeks ago


    Singapur, Singapore Marina Bay Sands Full time

    At Marina Bay Sands, the primary responsibility of the Senior Developer will be to execute all Development related activities for local MBS IT Projects whilst aligning to standards & best practices followed within the organization. JOB SCOPE Execute application development deliverables and activities Participate in various phases of the Software...


  • Singapur, Singapore IHiS Full time

    You will play important role in the design and development of secure and reliable healthcare application for the transformation of Singapore Healthcare IT landscape. You will be responsible for planning our application security roadmap, design and development of application security best practice and common libraries, and delivery of application security...

  • Software Developer

    3 weeks ago


    Singapur, Singapore Marina Bay Sands Full time

    At Marina Bay Sands, the primary responsibility of the Software Developer will be to execute all software development related activities for the local MBS system/application projects whilst aligning to standards & best practices followed within the organization. JOB SCOPE Responsible for the design, development, and testing of the software application....


  • Singapur, Singapore Grab Full time

    Life at Grab At Grab, every Grabber is guided by The Grab Way, which spells out our mission, how we believe we can achieve it, and our operating principles - the 4Hs: Heart, Hunger, Honour and Humility. These principles guide and help us make decisions as we work to create economic empowerment for the people of Southeast Asia. Get to know the Team ...

  • Web Mobile Developer

    3 weeks ago


    Singapur, Singapore Far East Organization Full time

    Responsibilities Planning and Collaboration: Participate in the discovery, conceptualization, process re-engineering, articulation, and implementation of scalable software developments; Work closely with the application development manager, project manager, solution architect, application support team and third-party technology partners to...


  • Singapur, Singapore Sea Full time

    Job Description - Collaborate with the design team, other software engineers and product managers to design, build, enhance, and test new features - Write clean and maintainable code that is properly tested and reviewed - Understand the product thoroughly. Analyse, design and develop functionalities based on product requirements.- Identify and fix...