Consultant, Security Testing and Red Teaming

re-zoo-me

Singapore

Hybrid

SGD 90,000 - 130,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

re-zoo-me is seeking a Consultant, Security Testing and Red Teaming to lead hands-on penetration testing across web apps, networks, Active Directory and cloud environments. You will work with autonomy on scoped engagements, applying sound technical judgement and delivering defensible findings and reports.

While penetration testing is the primary focus, you will have opportunities to expand into adversary simulation, red teaming, tooling development and security research as you grow within the

Qualifications

  • OSCP is required and other advanced certifications are preferred.
  • 3–5 years of hands-on penetration testing experience.
  • Strong understanding of testing methodologies and rules of engagement.
  • Experience with cloud security testing (AWS/Azure/GCP) and AD.
  • Proficiency with scripting to support testing and automation.

Responsibilities

  • Deliver end-to-end penetration testing engagements with minimal supervision.
  • Perform web, network, AD, cloud, mobile, IoT, and OT testing.
  • Identify attack paths, validate findings and assess business impact.
  • Document evidence, logs and deliver high-quality reports.
  • Engage with clients during kickoff and results discussions; support debriefs.
  • Contribute to testing playbooks and internal knowledge sharing.

Skills

Penetration testing
Scripting
Cloud security testing

Education

OSCP
OSWE
OSEP
OSED

Tools

Burp Suite
Nmap
Metasploit
BloodHound

Job description

Consultant, Security Testing and Red Teaming
Description

The Consultant, Security Testing and Red Teaming is a core delivery role within the offensive security practice, responsible for independently executing penetration testing engagements and contributing to advanced offensive security activities.

This role has a strong emphasis on hands‑on penetration testing across web applications, infrastructure, Active Directory, and cloud environments. Consultants are expected to operate with a high degree of autonomy on scoped engagements, apply sound technical judgement, and produce high-quality, defensible findings and reports for clients.

While penetration testing is the primary focus, Consultants are also expected to demonstrate the curiosity and technical breadth to grow into broader offensive security disciplines over time, including adversary simulation, red teaming, tooling development, and security research.

Roles and Responsibilities
  • Deliver end-to-end penetration testing engagements with minimal supervision, including:
  • Web application penetration testing
  • Internal and external network penetration testing
  • Active Directory security assessments
  • Cloud and hybrid environment testing
  • Mobile application penetration testing
  • IOT penetration testing
  • OT penetration testing
  • Perform manual vulnerability discovery, validation, and exploitation beyond automated scanning.
  • Identify attack paths, chain vulnerabilities, and assess real-world business impact.
  • Exercise sound judgement in exploitation depth, data handling, and risk management during testing.
  • Maintain clear, detailed testing notes, evidence, and attack logs to support reporting and quality review.
  • Produce high-quality technical findings with accurate severity assessment and actionable remediation guidance.
  • Develop structured penetration testing reports, and support client walkthroughs and debriefs.
  • Engage professionally with clients during kick‑off sessions, testing clarification, and results discussions.
  • Participate in peer reviews of testing approaches and reports to uphold delivery quality standards.
  • Continuously develop technical depth across offensive security techniques, platforms, and tooling.
  • Contribute to security testing playbooks, internal knowledge sharing and peer learning.
  • Where appropriate, contribute to broader offensive security initiatives, such as:
  • Adversary simulation and red teaming exercises
  • Custom tooling, scripting, or automation
  • Internal research, labs, or capability development
Requirements
  • Offensive Security Certified Professional (OSCP) is required.
  • To hold at least one advanced or specialist certifications such as OSWE, OSEP, OSED
  • Approximately 3 to 5 years of hands‑on penetration testing experience in consulting, internal security, or equivalent practical environments.
  • Strong understanding of penetration testing methodologies, rules of engagement, and ethical hacking principles.
  • Solid technical foundations in:
  • TCP/IP networking and common protocols
  • Windows and Linux operating systems
  • Web application architecture and common vulnerability classes
  • Demonstrated experience testing:
  • Web applications, including authentication, authorization, and business logic flaws
  • Network and infrastructure environments
  • Active Directory domains
  • Mobile applications
  • Proficiency with common penetration testing tools (e.g. Burp Suite, Nmap, Metasploit, BloodHound).
  • Experience with scripting or programming (e.g. Python, PowerShell, Bash) to support testing and automation.
  • Exposure to cloud security testing (AWS, Azure, GCP) and modern identity platforms.
  • Experience with post-exploitation, lateral movement, and attack path analysis.
  • Demonstrated interest in expanding beyond traditional penetration testing into broader offensive security and red teaming.
  • Ability to clearly communicate technical findings in written reports and verbal discussions.
  • Strong professionalism, integrity, and attention to detail.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Offensive Security Engineer - Penetration Testing
Offensive Security Engineer - Penetration Testing

MENRVA PTE. LTD. • Singapore

On-site
SGD 80,000 - 120,000
Offensive Security Consultant - Penetration Testing
Offensive Security Consultant - Penetration Testing

Menrva Group • Singapore

On-site
SGD 80,000 - 120,000
Senior Security Consultant - OSCP
Senior Security Consultant - OSCP

TECHKNOWLEDGEY PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Consultant, Security Testing and Red Teaming
Consultant, Security Testing and Red Teaming

Ensign InfoSecurity • Singapore

On-site
SGD 100,000 - 160,000
Penetration Testers/ Red Teamers
Penetration Testers/ Red Teamers

KERRY CONSULTING PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Consultant, Advanced Adversarial Simulation
Consultant, Advanced Adversarial Simulation

Ensign InfoSecurity • Singapore

On-site
SGD 100,000 - 160,000
Penetration Testing Consultant
Penetration Testing Consultant

SWARMNETICS PTE. LTD. • Singapore

On-site
SGD 60,000 - 100,000
Senior Penetration Testing Engineer
Senior Penetration Testing Engineer

dtcpay • Singapore

On-site
SGD 120,000 - 180,000
Offensive Security Consultant / Red Team Specialist
Offensive Security Consultant / Red Team Specialist

MENRVA PTE. LTD. • Singapore

On-site
SGD 110,000 - 170,000
Application Security Penetration Tester
Application Security Penetration Tester

Aryan-Solutions-Pte.-Ltd. • Singapore

On-site
SGD 60,000 - 100,000