An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Ensign InfoSecurity is seeking an Associate Consultant to perform penetration testing across web, network, cloud, mobile, and OT environments under senior guidance.
You will identify vulnerabilities, document findings with evidence, and contribute to high-quality technical reports and executive summaries. Growth into red-teaming and advanced offensive security is encouraged.
Conduct penetration testing engagements under the guidance of senior consultants, including:
Execute assigned testing activities responsibly and professionally, following defined scopes, rules of engagement, and methodologies.
Identify, validate, and exploit security vulnerabilities using industry-standard tools and manual techniques.
Document findings clearly and accurately, including technical details, evidence, and remediation recommendations.
Assist in preparing high-quality technical reports and contribute to executive-level summaries.
Participate in engagement activities such as kick-off calls, scoping discussions, and post-engagement briefings where appropriate.
Collaborate with team members during testing, including peer reviews and technical walkthroughs.
Maintain detailed testing notes, logs, and artifacts to support quality assurance and reporting.
Continuously develop technical skills across penetration testing, exploitation techniques, and security fundamentals.
Stay current with emerging vulnerabilities, attack techniques, and offensive security tooling.
Over time, support or participate in broader offensive security activities, such as:
Offensive Security Certified Professional (OSCP) certification is required.
Strong understanding of penetration testing methodologies and ethical hacking principles.
Solid foundations in:
Exposure to scripting or programming (e.g. Python, Bash, PowerShell).
Familiarity with common vulnerability classes (e.g. OWASP Top 10, misconfigurations, credential abuse).
Basic understanding of Active Directory security concepts.
Exposure to cloud platforms or containerised environments will be useful.
Hands‑on experience using common penetration testing tools (e.g. Burp Suite, Nmap, Metasploit, BloodHound).
Ability to write clear, structured, and technically accurate documentation and reports.
Strong desire to grow into advanced offensive security and red teaming roles.
Strong analytical mindset and problem-solving skills.
Professional conduct, integrity, and respect for confidentiality.
Ensign InfoSecurity is the largest pure-play cybersecurity service provider in Asia.
The company is headquartered in Singapore.
We specialise in the provision of these services; cybersecurity advisory and assurance, implementation and management of advanced cybersecurity controls, cybersecurity monitoring, threat hunting, and incident response.
Underpinning these competencies is in‑house research and development in cybersecurity.
We are a technology company with warmth and soul.
We are ambitious, propelled by our vision to be the cyber defender of choice, and fueled by the dedication and camaraderie of individuals who are eager to make a difference, and leave their footprints in the industry.
If you are a self‑motivated curious go‑getter, we want You!
Join Us!