Security Consultant (Offensive Security)

ITSEC SERVICES ASIA PTE. LTD.

Singapore

On-site

SGD 70,000 - 110,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

ITSEC Asia is seeking a Cybersecurity Consultant (Offensive Security) to join our growing team in Singapore. We are looking for candidates with around 3 years of hands-on penetration-testing experience, while strong junior pentesters are welcome if they demonstrate solid foundations and a passion for ethical hacking.

This role provides exposure to diverse security assessments across enterprise, cloud, OT and critical environments, with a focus on AI, automation, and emerging technologies to

Qualifications

  • Diploma or degree in cybersecurity or related field.
  • Ideally around 3 years of hands-on penetration-testing experience.
  • CREST CRT, OSCP or comparable offensive-security certificate preferred.

Responsibilities

  • Conduct penetration testing across web apps, APIs, networks, mobile apps and cloud.
  • Support security assessments involving OT, IoT and other environments.
  • Identify, validate and demonstrate vulnerabilities with testing methodologies.
  • Document findings and produce professional remediation recommendations.
  • Present technical findings to clients and explain risks clearly.
  • Explore AI-assisted testing and automation to improve workflows.

Skills

Penetration testing
Offensive security
Communication skills
Report writing
Learning mindset

Education

Diploma or degree in Cybersecurity/Information Security/CS/Engineering

Tools

CREST CRT
OSCP

Job description

ITSEC Asia is looking for a Cybersecurity Consultant (Offensive Security) to join our growing team.

We are primarily looking for candidates with around 3 years of hands‑on penetration‑testing

experience, although we also welcome applications from strong junior pentesters and early‑career

professionals who can demonstrate solid technical foundations, curiosity and a genuine passion for

ethical hacking.

This role provides exposure to a wide range of security assessments across enterprise, cloud,

government and critical environments. We are particularly interested in people who are keen to

embrace AI, automation and emerging technologies to improve the efficiency, depth and quality of

penetration testing.

About ITSEC Group

ITSEC Group is a cybersecurity organisation operating across the Asia‑Pacific region and beyond,

with offices in Singapore, Indonesia, Australia, the UAE and Mauritius.

We provide cybersecurity consulting and security services to clients across government, critical

infrastructure, financial services, telecommunications, healthcare, technology and other industries.

Joining ITSEC provides the opportunity to work across diverse technology environments, complex

security challenges and a broad range of consulting engagements, while developing both your

technical and client‑facing capabilities.

Key Responsibilities
  • Conduct penetration testing and vulnerability assessments across web applications, APIs, mobile applications, networks, cloud environments and other technology platforms.
  • Support security assessments involving IT, Operational Technology (OT), Internet of Things (IoT) and other specialised environments.
  • Identify, validate and demonstrate security vulnerabilities using appropriate testing methodologies and techniques.
  • Assess the technical and business impact of identified vulnerabilities and attack paths.
  • Document testing activities, technical evidence, proof‑of‑concept results and assessment conclusions in a clear and defensible manner.
  • Prepare professional penetration‑testing reports covering findings, risk implications, supporting evidence and practical remediation recommendations.
  • Present technical findings to clients and explain security risks and remediation approaches to both technical and non‑technical stakeholders.
  • Conduct remediation verification and retesting to confirm that identified vulnerabilities have been effectively addressed.
  • Explore and responsibly apply AI‑assisted security testing, automation, scripting and emerging technologies to improve research, reconnaissance, analysis, testing and reporting workflows.
  • Continuously develop knowledge of emerging vulnerabilities, attack techniques, security tools, technologies and industry methodologies.
  • Contribute to the development of the team's testing methodologies, knowledge base, tooling and technical capabilities.
What We Are Looking For
  • Diploma or degree in Cybersecurity, Information Security, Computer Science, Engineering or a related discipline.
  • Ideally around 3 years of relevant hands‑on penetration‑testing or offensive‑security experience.
  • Strong junior candidates with less experience are also encouraged to apply if they can demonstrate good practical offensive‑security skills and a strong willingness to learn.
  • CREST Registered Tester (CRT), Offensive Security Certified Professional (OSCP) or a comparable recognised offensive‑security certification is strongly preferred.
  • Good practical understanding of penetration‑testing methodologies, tools and techniques.
  • Hands‑on experience in areas such as web application, API, network, Active Directory, mobile or cloud penetration testing will be advantageous.
  • Experience or knowledge in OT,ICS, IoT or critical‑infrastructure security testing is highly advantageous.
  • Strong analytical, troubleshooting and problem‑solving capabilities.
  • Ability to produce clear, accurate and professional technical reports.
  • Good communication skills and the ability to explain technical security issues clearly to clients.
  • Interest in AI, automation, scripting and emerging offensive‑security technologies, together with the ability to learn and adapt quickly.
  • Willingness to take ownership, work collaboratively and continue developing professionally within a cybersecurity consulting environment.
Singapore Government / Classified Project Experience

Singapore citizens are preferred, particularly candidates who are eligible to support sensitive or

classified Singapore Government engagements.

Previous experience working on Singapore Government, highly classified, critical‑infrastructure or

other high‑security projects is highly advantageous.

Candidates who are familiar with the security expectations, professional conduct, documentation

discipline and operational constraints associated with sensitive government environments will be

especially relevant to this role.

What You Can Expect

ITSEC provides on‑the‑job training, technical mentorship and exposure to experienced cybersecurity

professionals to help consultants continue developing their capabilities.

You will have opportunities to:

  • Work on diverse and technically challenging penetration‑testing engagements.
  • Develop deeper expertise across traditional IT, cloud, OT and emerging technology environments.
  • Strengthen your consulting, client communication and professional report‑writing skills.
  • Learn from experienced offensive‑security practitioners.
  • Experiment responsibly with AI‑assisted and automated security‑testing approaches.
  • Progress technically into specialised offensive‑security domains as your experience develops.

If you enjoy understanding how systems can be broken, explaining why it matters, and helping

organisations become more secure, we would be happy to hear from you.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Consultant (Offensive Security)
Cybersecurity Consultant (Offensive Security)

PT ITSEC Asia Tbk • Singapore

On-site
SGD 90,000 - 130,000
Offensive Security Penetration Tester (Consultant)
Offensive Security Penetration Tester (Consultant)

ITSEC SERVICES ASIA PTE. LTD. • Singapore

On-site
SGD 70,000 - 110,000
Security Consultant
Security Consultant

SOFTSCHECK SINGAPORE PTE. LTD. • Singapore

On-site
SGD 70,000 - 120,000
Cybersecurity Penetration Tester (Offensive)
Cybersecurity Penetration Tester (Offensive)

PT ITSEC Asia Tbk • Singapore

On-site
SGD 90,000 - 130,000
Red Team Offsec Engineers
Red Team Offsec Engineers

Sekuro Asia - An Insight Company • Singapore

On-site
SGD 90,000 - 130,000
IT Security Consultant - #1655
IT Security Consultant - #1655

JOBSTER PRIVATE LTD. • Singapore

On-site
SGD 120,000 - 180,000
IT Security Consultant
IT Security Consultant

DADACONSULTANTS PTE. LTD. • Singapore

On-site
SGD 90,000 - 130,000
Associate Consultant, Security Testing and Red Teaming
Associate Consultant, Security Testing and Red Teaming

Ensign InfoSecurity • Singapore

On-site
SGD 60,000 - 90,000
Security Consultant at SOFTSCHECK SINGAPORE PTE. LTD.
Security Consultant at SOFTSCHECK SINGAPORE PTE. LTD.

SOFTSCHECK SINGAPORE PTE. LTD. • Singapore

On-site
SGD 70,000 - 100,000
Senior Cybersecurity Engineer (Python/Penetration Testing)
Senior Cybersecurity Engineer (Python/Penetration Testing)

manpower staffing services (singapore) pte ltd • Singapore

On-site
SGD 120,000 - 180,000
Contract position
Extension potential
Singapore-based role