VAPT Engineer

PCSS

Singapore

On-site

SGD 60,000 - 90,000

Full time

47 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

PCSS is seeking a security tester in Singapore to perform application and infrastructure penetration tests for customers, including web, mobile, and web services. The role involves both manual testing and automated tooling, with reporting in standard formats and client-facing discussions.

You will conduct security assessments, write formal reports, retest vulnerabilities, and participate in scoping calls to estimate project timelines.

Qualifications

  • Perform application and infrastructure penetration tests for customers.
  • Conduct security assessments and penetration tests (web, mobile, web service, etc.). Assessments involve manual testing and analysis as well as the use of automated vulnerability scanning/testing and/or code review tools (Burp Suite, Fortify, Checkmarx).
  • Write a formal security assessment report using the company’s standard reporting format.
  • Participate in conference calls or on client sites to scope projects and estimate time requirements.
  • Retest vulnerabilities and update reports with retesting results.
  • Perform security reviews of application designs, source code and deployments for web apps, mobile apps, thick clients, and SaaS.
  • Contribute to improvements of provided security services and methodologies.
  • Report and present findings to clients.

Responsibilities

  • Perform application and infrastructure penetration tests for customers.
  • Write formal security assessment reports.
  • Present findings to clients and team.
  • Assist in scoping calls and project estimation.
  • Retest and update vulnerability reports.
  • Review security of designs, code and deployments.

Skills

Penetration testing
Vulnerability assessment
Report writing
Client communication
Security tooling
Team player

Education

Degree in Computer Engineering, Computer Science, Information Systems, Digital Forensics or equivalent qualifications

Tools

Burp Suite
HP Fortify
Checkmarx
Nessus

Job description

  • Degree in Computer Engineering, Computer Science, Information Systems, Digital Forensics or equivalent qualifications
  • Minimum 2 years’ of relevant work experience in IT security implementation and operations
  • Good interpersonal skills and a team player

Job Description:

  • Perform application and infrastructure penetration tests for customers
  • Conducting application security assessments and penetration tests (web, mobile, web service, etc.). Assessments involve manual testing and analysis as well as the use of automated application vulnerability scanning/testing and/or code review tools i.e. Burp Suite Professional, HP Fortify or Checkmarx
  • Writing a formal security assessment report for each application, using our company’s standard reporting format
  • Participating in conference calls or on client’s site with potential client to scope out newly requested security projects and estimate the amount of time required to complete the project and current clients to review assessment results and consult with the clients on remediation options
  • Retesting security vulnerabilities and republishing reports to indicate the retesting results
  • Perform security reviews of application designs, source code and deployments as required, covering all types of applications (web application, web services, mobile applications, thick client applications, SaaS)
  • Work on improvements for provided security services, including the continuous enhancement of existing methodology material and supporting assets
  • Report and present on findings

Technical Skills:-

  • Experience with various security tools and products (Fortify, AppScan, Nessus etc)
  • Familiar with developing web and/or mobile applications, preferably involving complex financial, e-commerce, or enterprise business solutions
  • Knowledge of the HTTP protocol and understand how it works
  • Experience performing application security testing using manual techniques plus runtime vulnerability testing tools and/or code review tools
  • Experience with network/infrastructure-level penetration testing (preferred)
  • Understanding of cryptography principles
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

VAPT Team Lead (DSC/JH)
VAPT Team Lead (DSC/JH)

ST Engineering • Singapore

On-site
SGD 120,000 - 180,000
VAPT Offensive Security Engineer — Penetration Testing Expert
VAPT Offensive Security Engineer — Penetration Testing Expert

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 90,000 - 120,000
Affiliation with GovTech
Learning culture
Penetration testing specialist
Penetration testing specialist

Consulguru Pte. Ltd. • Singapore

On-site
SGD 60,000 - 120,000
VAPT Team Lead
VAPT Team Lead

ST Engineering • Singapore

On-site
SGD 90,000 - 140,000
VAPT Team Lead (DSC/JH)
VAPT Team Lead (DSC/JH)

ST ENGINEERING INFO-SECURITY PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Penetration Tester
Penetration Tester

SCIENTE • Singapore

On-site
SGD 90,000 - 140,000
VAPT Team Lead & Security Testing Expert
VAPT Team Lead & Security Testing Expert

ST ENGINEERING INFO-SECURITY PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Penetration Tester
Penetration Tester

LANTU EMPLOYMENT AGENCY PTE. LTD. • Singapore

On-site
SGD 70,000 - 100,000
Lead VAPT Engineer & Security Assessment SME
Lead VAPT Engineer & Security Assessment SME

ST Engineering • Singapore

On-site
SGD 120,000 - 180,000
Offensive Cybersecurity Engineer (VAPT)
Offensive Cybersecurity Engineer (VAPT)

Assurity Trusted Solutions Pte Ltd • Singapore

On-site
SGD 90,000 - 120,000
Affiliation with GovTech
Learning culture