Senior Penetration Tester

1 month ago


Singapur, Singapore 11112 Citibank, N.A. Singapore Full time

About the job

If you are passionate and curious about security, and want to use your offensive security skills to help keep our firm’s application and infrastructure safe, we want to speak with you.

Who You Are

You are talented in solving problems and identifying security weaknesses, and you have experience collaborating with engineers who remediate the vulnerabilities you identified. You adapt well to changes, and speak up to ask questions to clarify when things don’t look right.

As someone with an offensive security mindset, you work closely with others to listen to ideas and share suggestions to collectively devise the best approach to remediate vulnerabilities,

continuously learn and enhance skillsets, techniques and methods.

You should have a bachelor’s degree with minimally 5 years of relevant experience. Have a good understanding of industry frameworks and methodologies such as OWASP, OSSTMM, PTES, MITRE ATT&CK, threat modeling, etc. Be certified, or intend to be certified, in accredited security certifications such as OSCP, OSWE, GXPN, GCPN, CISSP, etc.

What You’ll Do

As an individual contributor on our penetration testing team, you are responsible for:

Preparing and executing penetration testing assignments on our infrastructure assets and applications

Working closely with the engineering teams to provide expert guidance and advice on remediation of identified vulnerabilities

Verifying newly discovered vulnerabilities in the environment

Reporting security vulnerabilities to businesses, clearly articulating security issues to technical and non-technical stakeholders

Mentor, guide and support other team members using your strong technical knowledge

Identify inefficiencies in the team’s workflow, suggest solutions and drive outcomes

This role focuses strongly on your ability to perform manual penetration testing on infrastructure related systems and devices. To be a good fit for this role, you should be able to identify security weaknesses and vulnerabilities in various platforms, and efficiently deliver security assessment assignments.

What You’ll Bring

Identify vulnerabilities and zero-day exploits though various means of analysis using:

Vulnerability assessment tools such as Nessus, Qualys, Kali Linux, AppScan, Burp Suite, etc.

Familiar with scripting languages such as Python

Good knowledge of:

TCP/IP, IDS/IPS, firewalls, AAA systems, SSH, PKI

OS Security - Unix, Linux, Windows,, Android/IOS

Common protocols - LDAP, SMTP, DNS, routing etc.

Web application infrastructure - application servers, web servers, databases, cloud services, containers technologies etc.

Provide mentorship and guidance to other team members and share knowledge and findings with them

How You’ll Succeed

Be consistent and conscientious in identifying security vulnerabilities and working with the respective engineering teams and stakeholders to provide sound guidance and remediations. Be a team player, and a keen learner.

#LI-Hybrid

------------------------------------------------------

Job Family Group:

Technology

------------------------------------------------------

Job Family:

Information Security

------------------------------------------------------

Time Type:

Full time

------------------------------------------------------

Citi is an equal opportunity and affirmative action employer.

Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Citigroup Inc. and its subsidiaries ("Citi”) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review .



  • Singapur, Singapore St Engineering Info-security Pte. Ltd. Full time

    We are seeking an experiencedCloud Penetration Testerto join our team. The successful candidate will have expertise in cloud security, penetration testing, and vulnerability assessment. The role involves identifying and exploiting vulnerabilities in cloud-based systems, applications, and infrastructure to help our organization strengthen its cloud security...


  • Singapur, Singapore St Engineering Info-security Pte. Ltd. Full time

    We are seeking an experiencedCloud Penetration Testerto join our team. The successful candidate will have expertise in cloud security, penetration testing, and vulnerability assessment. The role involves identifying and exploiting vulnerabilities in cloud-based systems, applications, and infrastructure to help our organization strengthen its cloud security...


  • Singapur, Singapore Wizlynx Group Full time

    Key Role As (Senior) Cyber Security Consultant & Penetration Tester, you will execute a variety of engagements, conducting advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other...


  • Singapur, Singapore TransPerfect Full time

    TransPerfect Is More Than Just a Job… Our greatest asset is our people, and nothing is more important to us than ensuring that everyone knows that. Each of our 100+ offices has its own individual identity, and each also has its own unique rewards. 1.0 OVERVIEW The position of Senior Gaming QA Tester is a key one at TransPerfect Translations....

  • Penetration Tester

    1 month ago


    Singapur, Singapore 11112 Citibank, N.A. Singapore Full time

    About the job If you are passionate and curious about security, and want to use your offensive security skills to help keep our firm’s application and infrastructure safe, we want to speak with you. Who You Are You are talented in solving problems and identifying security weaknesses, and you have experience collaborating with engineers who...


  • Singapur, Singapore 11112 Citibank, N.A. Singapore Full time

    Whether you’re an application developer looking to make the switch into the challenging, yet rewarding, world of information security, or you’re a rock star white-hat hacker, Citi is the place for you. Our team of world class, talented individuals, who are passionate about security, put their skills to the test every day on a global scale. At Citi...


  • Singapur, Singapore ST Engineering Full time

    Title: Vulnerability Assessment and Penetration Testing Engineer Job ID: Location: ST Engineering Jurong East Bui, SG Description: Responsibilities: Conduct vulnerability assessment and penetration test on networks, web applications, mobile applications, wireless systems, clouds, IOT Perform host configuration review of OS, applications...


  • Singapur, Singapore Continental Full time

    Job Description Identify and establish project specific security & privacy verification/validation measures such as weak points in Vehicle functions and new attack vectors. Collect information about SUT (System Under Test) on High Performance Computer, Body Control Module, Gateway, Telematics, Smart Mobile Access. Execute the testing activities in...


  • Singapur, Singapore Wizlynx Group Full time

    Key Role As (Senior) Cyber Security Consultant & Penetration Tester, you will execute a variety of engagements, conducting advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other...


  • Singapur, Singapore NTU (Nanyang Technology University- Main Office-HR) Full time

    The Manager will work closely with theLKCMedicine IT to support the running of the various cybersecurity programmes and raising the cyber resilience ofLKCMedicine IT infrastructure.Responsibilities:Ensuring cybersecurity policies, standards and procedures are practicedLiaise with auditors and ensuring compliance with regulations and relevant policies and...


  • Singapur, Singapore Helius Full time

    As a Senior Software Tester, you will be part of an international team that work with clients from one of the renowned Financial Services in Switzerland. You will have full oversight of the software engineering process, from creating the test concept until the internal and external hand-over of the application. Your daily tasks will include but not limited...


  • Singapur, Singapore Helius Full time

    As a Senior Software Tester, you will be part of an international team that work with clients from one of the renowned Financial Services in Switzerland. You will have full oversight of the software engineering process, from creating the test concept until the internal and external hand-over of the application. Your daily tasks will include but not...

  • Security Consultant

    1 month ago


    Singapur, Singapore LRQA Full time

    We are looking for the right people to join us as we embrace the challenges thrown up by the advancements within the IT industry and within the threats faced. Nettitude will be at the forefront of this arena and we want to seek the right people to join the team and make it happen. You can find out more about us at . Role There is a new,...


  • Singapur, Singapore RECRUIT EXPRESS PTE LTD Full time

    Roles & ResponsibilitiesMain responsibilitiesAs a Functional Tester: Handle the core banking system’s and payment system’s various test phases : regression tests, integration tests, functional tests, test automation Good Knowledge and working experience of Software Development Life Cycle (SDLC), Software Testing Life Cycle (STLC) and Defect Life Cycle....


  • Singapur, Singapore Horangi Cyber Security Full time

    The Cybersecurity Consultant will work in Horangi’s Cyber Operations (Offensive) team, and works directly with Horangi’s customers to perform offensive security assessments. Members of the Cyber Operations (Offensive) team are generally familiar with most aspects of cyber security but specialize in penetration testing of web and mobile applications and...

  • Junior QA Tester

    2 weeks ago


    Singapur, Singapore Refract Technologies Full time

    About Us  Refract Technologies is a family of 60+ members and growing. We are engineers, game producers, artists and entrepreneurs, all with deep passion and experience in the gaming and technology industries. We’re here as veterans from the likes of Electronic Arts, Ubisoft, Unity, IGG, Gumi, XII Braves, Creative Technologies & more.  Our vision is to...

  • Senior Technician

    1 month ago


    Singapur, Singapore ST Engineering Full time

    Title: Senior Technician (Inspector) Job ID: Location: Aero - Airport Rd, SG Description: Responsibilities: Inspect, test, measure, prepare inspection report and costing. Able to use measuring instruments such as gauge blocks, height gauges, dial indicators and calipers to examine components. Perform various jobs such as polishing, sheet...


  • Singapur, Singapore Careers@Gov Full time

    [What the role is] EXECUTIVE/CYBERSECURITY ENGINEER, CYBER ARCHITECTURE & DEVELOPMENT [What you will be working on] You will join our dynamic team and will be responsible for conducting Vulnerability Assessment and Penetration Testing (VAPT) for internal systems and providing consultancy on cybersecurity projects. The candidate should possess strong...


  • Singapur, Singapore NTT SINGAPORE PTE. LTD. Full time

    Roles & Responsibilities Designing and developing robust, scalable, and secure software solutions using Java and related technologies. Architecting and implementing microservices-based applications using Spring Boot and Spring Cloud. Integrating with various databases including MariaDB, Oracle, MySQL, and IBM DB2 using Hibernate and JPA. Building and...

  • Cyber OT

    3 weeks ago


    Singapur, Singapore Kpmg Services Pte. Ltd. Full time

    KPMG has established a strong cybersecurity consulting practice servicing clients from a wide array of sectors including energy, water, oil & gas, maritime, aviation, healthcare, transportation or telecommunications. Many of our clients own or operate critical infrastructure in Singapore and across the Asia Pacific region, providing essential resources and...