Penetration Test & Vulnerability Assessment Specialist
Mapletree Business City, Block 10, Level 9, Singapore
The Singapore Public Service
[What the role is]
GovTech is the lead agency driving Singapore’s Smart Nation initiatives and public sector digital transformation. As the Centre of Excellence for Infocomm Technology and Smart Systems (ICT & SS), GovTech develops the Singapore Government’s capabilities in Data Science & Artificial Intelligence, Application Development, Smart City Technology, Digital Infrastructure, and Cybersecurity.At GovTech, we offer you a purposeful career to make lives better where we empower our people to master their craft through robust learning and development opportunities all year round.
Play a part in Singapore’s vision to build a Smart Nation and embark on your meaningful journey to build tech for public good. Join us to advance our mission and shape your future with us today!
Learn more about GovTech at tech.gov.sg.
[What you will be working on]
Do you want to play a critical role in securing our smart nation initiatives by uncovering weaknesses in various domains of cybersecurity programs even before the real threat actors come to play? And are you up to race against the real threat actors before organisations are compromised?
We are seeking a cybersecurity specialist in penetration testing & vulnerability assessment to join our Cyber Security Group’s Red Team. You will be part of the team that helps to protect our government’s assets from cyber-attacks. In addition, you will also have the opportunities to be involved in assessing the cybersecurity aspects of new developments in our smart nation initiatives, and demonstrate ability to quickly assimilate to knowledge in new technologies. As part of this team, you will perform penetration testing and vulnerability assessment that span across infrastructure, web application, mobile application, source code security review, etc. This role will also involve you in carrying targeted Adversary Simulations.
[What you will be working on]
- Conduct Penetration Testing (PT), Vulnerability Assessment (VA) and Source code security review on IT assets
- Support in the documentation of findings, analysis, report preparation and presentation
- Develop customised tools to conduct PT and VA
- Support stakeholders such as security engineers and developers in providing guidance to remediate security risks from security testing and assessments.
- Support stakeholders such as security engineers and developers in providing guidance in design and security controls in application, infrastructure, network, etc.
- Develop Application Security related awareness programme/training/courses to uplift application security capabilities and competencies of GovTech officers
- Familiar with security principles, policies and industry best practices
[What we are looking for]
- Degree in Information Security, Computer Science/Engineering, IT, or equivalent
- Passionate in cybersecurity
- Good understanding of web application, system and infrastructure architecture
- Good communication & presentation skills
- Collaborative and team player, self-motivated, creative and versatile
Added advantage if you possess the following:
- Penetration testing-specific certifications such as GPEN, CREST, OSCP is an advantage
- At least 1-year hands-on experience performing PT/VA
- Familiar with scripting language, for example, Perl, Python, VBscript, Javascript or Powershell, Ruby
- Public disclosure of vulnerabilities or relevant awards/participations from Capture-The-Flags (CTF) competitions
- Experience using tools such as Nexpose/Nessus, BurpSuite, Metasploit, etc.
- Experience in security risk assessments on application, infrastructure, network, etc.
GovTech is an equal opportunity employer committed to fostering an inclusive workplace that values diverse voices and perspectives, as we believe that diversity is the foundation to innovation.
Our employee benefits are based on a total rewards approach, offering a holistic and market-competitive suite of perks. These include leave benefits to meet your work-life needs and employee wellness programmes.
We champion flexible work arrangements (subject to your job role) and trust that you will manage your own time to deliver your best, wherever you are, and whatever works best for you.
Learn more about life inside GovTech at go.gov.sg/GovTechCareers.
Stay connected with us on social media at go.gov.sg/ConnectWithGovTech.
[What we are looking for]
* Salary range is an estimate based on our AI, ML, Data Science Salary Index 💰
Tags: Architecture Computer Science Engineering JavaScript Perl Python Ruby Security Testing
Perks/benefits: Career development Flex hours Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.