jobs in DACTA SG PTE. LTD.

全职 Junior Consultant (GRC - Penetration Tester) ) 工作, 薪水 up to SGD 5,500, DACTA SG PTE. LTD. Central Region (Singapore) 公司招聘中 - Ricebowl

Junior Consultant (GRC - Penetration Tester) )

DACTA SG PTE. LTD.

River Valley, Central Region (Singapore)

分享
保存

工作地点

  • River Valley Central Region (Singapore) Singapore

职位描述

岗位职责

Key Responsibilities:
Looking for candidates with GRC skills and a junior-level penetration testing background.

Conduct end-to-end Vulnerability Assessment and Penetration Testing (VAPT) across mobile apps (iOS/Android), cloud environments (AWS/Azure/GCP), networks, and applications for SME to enterprise clients.

Support Governance, Risk, and Compliance (GRC) activities, including assisting with risk assessments, policy reviews, and compliance documentation.

Perform mobile security testing including static/dynamic analysis (MobSF, Frida), reverse engineering, and assessment of anti-tampering controls.

Conduct host configuration reviews against CIS Benchmarks/NIST standards, identifying misconfigurations (weak permissions, default creds) and providing hardening recommendations.

Perform thorough source code reviews (SAST/manual analysis) for vulnerabilities (SQLi, XSS, logic flaws) in Java/Python/.NET/Node.js applications.

Provide expert risk prioritization (CVSS, exploitability) and remediation guidance tailored to client environments and business impact.

Deliver detailed technical reports with proof-of-concepts (PoCs), executive summaries, and actionable mitigation steps.

Conduct risk assessment on digital solutions and third parties. Identify potential risks and provide options to protect the OT critical infrastructure, ICT Infrastructure, application systems and cloud environment.

Conduct compliance checks on internal controls to ensure compliance with established policies and applicable regulations.

Assist in developing policies, standards and guidelines to safeguard digital assets in adherence to business needs, industrial best practices and regulatory requirements.

Manage security projects and solution implementation activities that address cybersecurity risks.

Plan, design and conduct cyber security incident response workshops and exercises (table-top exercises, simulation, and drills)

Be aware of latest industry standards, regulatory requirements and the potential impacts to cybersecurity policies, standards and procedures.

Participate in client briefings to explain findings, address concerns, and align security improvements with business goals

DACTA was established with the aim of simplifying the perception of complexity surrounding digital security challenges and solutions. Drawing on over two decades of cybersecurity expertise, DACTA's founders and senior team of cybersecurity specialists recognized the need for a fresh, innovative, and transformative approach in how security vendors implement digital security for their clients. Their vision was to create a simpler and more effective methodology. Although we acknowledge that cybersecurity is by no means an easy task, we firmly believe that the burden of implementing and managing digital security should not fall on our clients. Small and medium-sized enterprises (SMEs) already have numerous responsibilities to handle on a daily basis: developing their products, delivering services, satisfying customers, and growing their businesses. We are committed to ensuring that digital security does not hinder these activities. It is our sole responsibility, operating round the clock, 365 days a year, to address this concern. We understand that our clients should not be burdened with solving and managing digital security; it is our duty to take care of it. At DACTA, our primary mission is to provide our clients with peace of mind. To accomplish this, our team of cybersecurity professionals and experts tirelessly work towards developing, tailoring, and managing digital services and cybersecurity solutions.

重要安全守则

申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。

了解更多