SCIENTE

Penetration Tester

SCIENTE

Singapore · Contract

Be the first to apply

Experience
3+ yrs
Salary
Openings
1
Posted
1 day ago
Work mode
In office
Education
Diploma or Degree in Cybersecurity, Computer Science or IT
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Job Overview

We are seeking a skilled Penetration Tester to proactively identify, evaluate, and exploit security weaknesses in networks, applications, and cloud platforms by employing ethical hacking methods. The goal is to enhance the organization's security framework by delivering actionable vulnerability assessments and comprehensive risk analyses.

Qualifications

  • Diploma or degree in Cybersecurity, Computer Science, or Information Technology.
  • Minimum of three years practical experience in penetration testing.
  • Proficient in web application and API security testing.
  • Solid knowledge of network security concepts including TCP/IP, HTTP/HTTPS, DNS, and related protocols.
  • In-depth familiarity with OWASP Top 10 vulnerabilities and typical web security threats.
  • Experience in operating Linux and Windows systems.
  • Understanding of Active Directory, including privilege escalation and lateral movement techniques.
  • Ability to script or program in Python, PowerShell, or Bash.
  • Hands-on expertise with penetration testing tools such as Burp Suite, Nmap, Metasploit, Kali Linux, Wireshark, BloodHound, Impacket, and Nessus.
  • Strong analytical mindset, problem-solving abilities, and technical report compilation skills.

Preferred qualifications:

  • Experience conducting penetration tests on AWS, Azure, or Google Cloud Platform environments.
  • Professional security certifications like OSCP, OSWE, OSEP, CREST, GPEN, or CEH.

Key Responsibilities

  • Execute penetration testing on web applications, APIs, networks, infrastructures, and clouds.
  • Perform vulnerability scans and confirm vulnerabilities using controlled exploit methods.
  • Detect security gaps such as authentication failures, injection flaws, misconfigurations, and escalation risks.
  • Carry out both internal and external network security assessments.
  • Perform detailed Active Directory security audits focusing on privilege escalation and credential exploitation.
  • Test security controls for REST APIs, mobile apps, and cloud services as necessary.
  • Create and customize scripts or tools to facilitate penetration testing activities.
  • Interpret results to evaluate business impact and prioritize security risks.
  • Compile in-depth penetration testing reports documenting findings, evidences, risk levels, and remediation guidance.
  • Collaborate with IT and security teams to verify and re-test vulnerability mitigation efforts.
  • Stay informed on the latest vulnerabilities, attack methods, and cybersecurity trends.

Additional Information

Interested candidates are encouraged to submit their updated CVs promptly via email. Confidentiality is strictly maintained, and only shortlisted candidates will be contacted. This recruitment complies with EA Licence No. 07C5639. Applicants consent to their personal data being used in accordance with company privacy policies for recruitment purposes.

Minimum education

Diploma / ITI / Vocational

Tools & software

Python required

How they work

Teamwork & Collaboration Problem Solving Attention to Detail Learning Agility

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer