Penetration Tester

SCIENTE

Singapore

On-site

SGD 67,000 - 134,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

SCIENTE seeks a Penetration Tester to identify and exploit vulnerabilities across networks, applications, and cloud environments using ethical hacking techniques. The role strengthens security posture by delivering actionable insights and detailed risk assessments.

The successful candidate will conduct penetration testing across web apps, APIs, and infrastructure, perform vulnerability assessments, and deliver detailed reports with remediation recommendations for stakeholders.

Qualifications

  • Must have 3+ years of hands-on penetration testing experience.
  • Strong experience in web application and API penetration testing.
  • Good understanding of network security, TCP/IP, HTTP/HTTPS, DNS and common network protocols.
  • Strong knowledge of OWASP Top 10 and common web vulnerabilities.
  • Hands-on experience with Linux and Windows environments.
  • Knowledge of Active Directory, privilege escalation and lateral movement.
  • Scripting/programming experience in Python, PowerShell or Bash.
  • Familiar with penetration-testing tools such as Burp Suite, Nmap, Metasploit and Kali Linux, Wireshark, BloodHound, Impacket and Nessus.
  • Strong analytical, problem-solving and report-writing skills.

Responsibilities

  • Conduct penetration testing across web applications, APIs, networks, infrastructure and cloud environments.
  • Perform vulnerability assessment and validate vulnerabilities through controlled exploitation.
  • Identify security weaknesses including OWASP Top 10, authentication/authorization flaws, injection vulnerabilities, misconfigurations and privilege escalation.
  • Conduct internal/external network penetration testing and assess network security controls.
  • Perform Active Directory security assessments, including privilege escalation, credential attacks and lateral movement.
  • Conduct security testing of REST APIs, mobile applications and cloud environments where applicable.
  • Develop or customise scripts, payloads and tools to support penetration-testing activities.
  • Analyse test results and determine the business impact and risk of identified vulnerabilities.
  • Prepare detailed penetration-testing reports including technical findings, evidence, risk ratings and remediation recommendations.
  • Work with security and technology teams to validate remediation and perform re-testing.
  • Keep up to date with emerging vulnerabilities, exploitation techniques, attack methodologies and security trends.

Skills

Penetration testing
Web application security
API security testing
Network security
OWASP Top 10
Scripting: Python/PowerShell/Bash
Linux/Windows
Active Directory & privilege
Report writing
Analytical problem-solving

Education

Diploma/Degree in Cybersecurity

Tools

Burp Suite
Nmap
Metasploit
Kali Linux
Wireshark
BloodHound
Impacket
Nessus

Job description

Job Summary

Seeking a Penetration Tester to identify, analyze, and exploit security vulnerabilities across networks, applications, and cloud environments using ethical hacking techniques. Aiming to strengthen organizational security posture by delivering actionable insights and detailed risk assessments.

Mandatory Skill-set
  • Diploma/Degree in Cybersecurity, Computer Science, Information Technology;
  • Must have 3+ years of hands-on penetration testing experience;
  • Strong experience in web application and API penetration testing;
  • Good understanding of network security, TCP/IP, HTTP/HTTPS, DNS and common network protocols;
  • Strong knowledge of OWASP Top 10 and common web vulnerabilities;
  • Hands-on experience with Linux and Windows environments;
  • Knowledge of Active Directory, privilege escalation and lateral movement;
  • Scripting/programming experience in Python, PowerShell or Bash;
  • Familiar with penetration-testing tools such as Burp Suite, Nmap, Metasploit and Kali Linux,Wireshark, BloodHound, Impacket and Nessus;
  • Strong analytical, problem-solving and report-writing skills.
Desired Skill-set
  • Experience with AWS, Azure or GCP penetration testing;
  • Certifications such as OSCP, OSWE, OSEP, CREST, GPEN or CEH.
Responsibilities
  • Conduct penetration testing across web applications, APIs, networks, infrastructure and cloud environments;
  • Perform vulnerability assessment and validate vulnerabilities through controlled exploitation;
  • Identify security weaknesses including OWASP Top 10, authentication/authorization flaws, injection vulnerabilities, misconfigurations and privilege escalation;
  • Conduct internal/external network penetration testing and assess network security controls;
  • Perform Active Directory security assessments, including privilege escalation, credential attacks and lateral movement;
  • Conduct security testing of REST APIs, mobile applications and cloud environments where applicable;
  • Develop or customise scripts, payloads and tools to support penetration-testing activities;
  • Analyse test results and determine the business impact and risk of identified vulnerabilities;
  • Prepare detailed penetration-testing reports including technical findings, evidence, risk ratings and remediation recommendations;
  • Work with security and technology teams to validate remediation and perform re-testing;
  • Keep up to date with emerging vulnerabilities, exploitation techniques, attack methodologies and security trends.

Confidentiality is assured, and only shortlisted candidates will be notified for interviews.

EA Licence No. 07C5639

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Engineer (Python/Penetration Testing)
Senior Cybersecurity Engineer (Python/Penetration Testing)

manpower staffing services (singapore) pte ltd • Singapore

On-site
SGD 120,000 - 180,000
Contract position
Extension potential
Singapore-based role
Penetration Tester
Penetration Tester

LANTU EMPLOYMENT AGENCY PTE. LTD. • Singapore

On-site
SGD 70,000 - 100,000
Penetration Tester
Penetration Tester

VOUCH RECRUITMENT PTE. LTD. • Singapore

On-site
SGD 60,000 - 90,000
Penetration Tester, Advanced Cybersecurity Division
Penetration Tester, Advanced Cybersecurity Division

IMDA • Singapore

On-site
SGD 110,000 - 170,000
Penetration Tester: Network, Web & Cloud Security
Penetration Tester: Network, Web & Cloud Security

LANTU EMPLOYMENT AGENCY PTE. LTD. • Singapore

On-site
SGD 70,000 - 100,000
Penetration Tester, Advanced Cybersecurity Division
Penetration Tester, Advanced Cybersecurity Division

sggovterp • Singapore

On-site
SGD 120,000 - 180,000
26989093 Information Security Technology Senior Analyst, Penetration Testing
26989093 Information Security Technology Senior Analyst, Penetration Testing

CITIBANK N.A. • Singapore

On-site
SGD 70,000 - 120,000
Penetration Testing Consultant
Penetration Testing Consultant

SWARMNETICS PTE. LTD. • Singapore

On-site
SGD 60,000 - 100,000
Security Consultant
Security Consultant

SOFTSCHECK SINGAPORE PTE. LTD. • Singapore

On-site
SGD 70,000 - 120,000
Cyber Security Penetration Tester
Cyber Security Penetration Tester

Internal Security Department • Singapore

On-site
SGD 60,000 - 100,000