[LTA-ITCD] SNR/EXEC CYBERSECURITY ENGINEER, CYBER ARCHITECTURE & DEVT

Public Service Division

Singapore

On-site

SGD 110,000 - 170,000

Full time

9 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Public Service Division in Singapore seeks a Senior/Executive Cybersecurity Engineer in Cyber Architecture & Development to lead end-to-end VAPT across applications, infrastructure, networks and cloud, build an in-house AAS capability, and advise project teams on secure architecture and implementation.

The role combines hands-on offensive security, capability development, and stakeholder engagement, with opportunities to explore AI-assisted testing, track emerging threats, translate findings

Qualifications

  • Knowledge in Cybersecurity, Computer Science, Information Technology, or related discipline.
  • OSCP, CREST or equivalent hands-on offensive security credential is preferred.
  • CISSP/CISM/CRISC/CISA certifications are advantageous.
  • At least 2 years in VAPT, offensive security, cybersecurity engineering, or security consultancy.
  • Hands-on capability with VAPT methodologies and security assessment tools.
  • Experience with adversary emulation or attack frameworks is advantageous.
  • Familiarity with AI/ML concepts and responsible AI use is advantageous.
  • Strong understanding of cloud configuration, network security, encryption, and authentication protocols.
  • Strong analytical and problem-solving skills and ability to explain risks.

Responsibilities

  • Lead end-to-end VAPT across applications, infrastructure, networks, and cloud environments and help owners remediate.
  • Design and execute safe Adversarial Attack Simulation exercises emulating threat actors.
  • Explore AI-enabled approaches for VAPT with governance and oversight.
  • Advise projects on risk assessments and secure architecture throughout the lifecycle.
  • Collaborate with architects, developers, and security teams to embed secure-by-design practices.
  • Track vulnerabilities and attacker techniques, translating into dashboards and remediation priorities.
  • Analyse trends in VAPT/AAS results to identify root causes and improve standards and playbooks.
  • Communicate complex findings to technical and non-technical stakeholders with actionable recommendations.

Skills

VAPT
Adversary emulation
Red team
Purple team
MITRE ATT&CK
AI in security
Cloud security
Security automation
Cryptography
Network security

Tools

MITRE ATT&CK
Security testing tools

Job description

[What the role is]

SENIOR / EXECUTIVE CYBERSECURITY ENGINEER, CYBER ARCHITECTURE & DEVELOPMENT

[What you will be working on]

Join a forward-looking cybersecurity team where your technical expertise will directly strengthen the resilience of critical digital systems. You will work on high-impact Vulnerability Assessment and Penetration Testing (VAPT), build our in-house Adversarial Attack Simulation (AAS) capability, and advise project teams on secure architecture and implementation. You will also have the opportunity to explore and shape the responsible use of Artificial Intelligence (AI) in VAPT, helping us improve testing depth, speed, consistency, and insight. This role offers a distinctive blend of hands-on offensive security, capability development, innovation, and stakeholder engagement, with opportunities to influence how cybersecurity assurance evolves across the organisation. Key responsibilities include:

  • Lead and deliver end-to-end VAPT across applications, infrastructure, networks, and cloud environments by identifying exploitable weaknesses, validating business impact, and helping system owners remediate effectively.
  • Design and execute safe, controlled Adversarial Attack Simulation exercises that emulate realistic threat actors and attack paths, revealing blind spots across preventive, detective, response, and recovery controls.
  • Explore, prototype, and evaluate AI-enabled approaches for VAPT, including test planning, attack-path analysis, vulnerability triage, evidence correlation, report generation, and remediation guidance, with appropriate governance and human oversight.
  • Serve as a trusted cybersecurity advisor to digital projects by conducting risk assessments, reviewing security architecture, and recommending practical, risk-informed security solutions.
  • Partner with architects, developers, project teams, system owners, vendors, and security operations teams to embed secure-by-design practices throughout the system lifecycle.
  • Track emerging vulnerabilities, attacker techniques, AI-enabled threats, and security technologies, translating developments into stronger testing methods, playbooks, and defensive improvements.
  • Analyse and trend cybersecurity findings across VAPT, AAS, and other assurance activities to identify recurring weaknesses, systemic root causes, risk concentrations, and emerging patterns, translating these insights into dashboards, targeted remediation priorities, and improvements to security standards, testing playbooks, and preventive controls.
  • Communicate complex technical findings clearly to both technical and non-technical stakeholders, turning assessment results into prioritised and actionable recommendations.

What you can look forward to: meaningful work that protects critical services; exposure to diverse technology environments; opportunities to build new VAPT, AAS, and AI-assisted testing capabilities; and a collaborative setting that supports experimentation, professional development, and knowledge sharing.

[What we are looking for]

We are looking for a driven, hands-on cybersecurity professional who combines strong technical foundations with sound judgement, collaboration, and a drive to keep learning.

  • Knowledge in Cybersecurity, Computer Science, Information Technology, or a related discipline, or equivalent relevant experience.
  • OSCP, a relevant CREST certification, or an equivalent hands-on offensive security credential is preferred.
  • CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CRISC (Certified in Risk and Information Systems Control), and CISA (Certified Information Systems Auditor) certifications are advantageous.
  • At least 2 years of relevant experience in VAPT, offensive security, cybersecurity engineering, or security consultancy; candidates with strong practical capability gained through labs, competitions, research, or substantial independent projects may also be considered.
  • Demonstrated hands-on capability with VAPT methodologies, manual testing techniques, and commonly used security assessment tools.
  • Experience with adversary emulation, red teaming, purple teaming, attack frameworks such as MITRE ATT&CK, or the validation of security monitoring and incident response capabilities is advantageous.
  • Familiarity with AI and machine learning concepts, large language models, AI-assisted security testing tools, scripting, or security automation, together with an understanding of responsible AI use and associated risks, is advantageous.
  • Strong understanding of cloud configuration, network security, encryption, and authentication protocols.
  • Strong analytical and problem-solving skills, with the ability to work independently, collaborate across teams, manage priorities, and explain technical risks clearly in writing and conversation.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

[LTA-ITCD] SNR/EXEC CYBERSECURITY ENGINEER, CYBER ARCHITECTURE & DEVT
[LTA-ITCD] SNR/EXEC CYBERSECURITY ENGINEER, CYBER ARCHITECTURE & DEVT

Land Transport Authority (LTA) • Singapore

On-site
SGD 120,000 - 180,000
[LTA-ITCD] SNR/EXEC CYBERSECURITY ENGINEER, CYBER ARCHITECTURE & DEVT
[LTA-ITCD] SNR/EXEC CYBERSECURITY ENGINEER, CYBER ARCHITECTURE & DEVT

Land Transport Authority (LTA) Singapore • Singapore

On-site
SGD 110,000 - 170,000
[LTA-ITCD] SNR/EXEC CYBERSECURITY ENGINEER, CYBER ARCHITECTURE & DEVT
[LTA-ITCD] SNR/EXEC CYBERSECURITY ENGINEER, CYBER ARCHITECTURE & DEVT

Land Transport Authority • Singapore

On-site
SGD 120,000 - 180,000
IT Security Officer (Cybersecurity Engineer) - #1598
IT Security Officer (Cybersecurity Engineer) - #1598

JOBSTER PRIVATE LTD. • Singapore

On-site
SGD 90,000 - 120,000
Risk Services - Cybersecurity Testing Assistant Associate - 2026 Intake
Risk Services - Cybersecurity Testing Assistant Associate - 2026 Intake

PwC Singapore • Singapore

On-site
SGD 30,000 - 50,000
Senior Manager, Cybersecurity Assessment
Senior Manager, Cybersecurity Assessment

Eames Consulting • Singapore

On-site
SGD 120,000 - 180,000
Risk Services - Cybersecurity Testing Assistant Associate - 2026 Intake
Risk Services - Cybersecurity Testing Assistant Associate - 2026 Intake

PwC • Singapore

On-site
SGD 17,000 - 23,000
Cybersecurity Engineer
Cybersecurity Engineer

Data Connect Technologies Pte Ltd • Singapore

On-site
SGD 90,000 - 130,000
IT Security Officer
IT Security Officer

Sedha Consulting • Singapore

On-site
SGD 60,000 - 90,000
Risk Services, Cybersecurity Senior Associate / Assistant Manager - Offensive Security (Security Testing Delivery)
Risk Services, Cybersecurity Senior Associate / Assistant Manager - Offensive Security (Security Testing Delivery)

PRICEWATERHOUSECOOPERS RISK SERVICES PTE. LTD. • Singapore

On-site
SGD 180,000 - 260,000