jobs in BGC GROUP PTE. LTD.

全职 Security Consultant (Penetration Testing) 工作, 薪水 up to SGD 6,000, BGC GROUP PTE. LTD. Islandwide (Singapore) 公司招聘中 - Ricebowl

Security Consultant (Penetration Testing)

SGD6,000 - SGD6,000 每月

Islandwide (Singapore)

分享
保存

工作地点

  • Islandwide (Singapore) Singapore

职位描述

岗位职责

Key Responsibilities

  • Perform security assessments and penetration testing across mobile, web, and backend applications to evaluate compliance with recognised security frameworks, regulatory expectations, and industry best practices.
  • Conduct mobile application security testing on both iOS and Android platforms, identifying vulnerabilities and recommending remediation.
  • Perform secure code reviews for mobile and web applications across multiple programming languages.
  • Analyse application security controls and assess the effectiveness of protections such as SSL/TLS pinning, root/jailbreak detection, anti-tampering mechanisms, and runtime protections.
  • Utilise industry-standard reverse engineering and dynamic analysis tools to support security assessments.
  • Develop or customise security testing tools and extensions to improve testing efficiency where required.
  • Conduct web application penetration testing using recognised methodologies and best practices.
  • Perform source code reviews across frontend, backend, and mobile applications to identify security weaknesses.
  • Participate in infrastructure and network security assessments where required.
  • Prepare technical reports, communicate findings clearly, and provide practical remediation recommendations to stakeholders.


Requirements

  • Degree in Computer Science, Cybersecurity, Information Security, or a related discipline.
  • At least 2 years or more of hands-on experience in penetration testing, offensive security, or application security.
  • Strong understanding of mobile application security, including iOS and Android architecture and security principles.
  • Experience reviewing code written in languages such as Swift, Kotlin, Objective-C, Java, or similar.
  • Familiarity with reverse engineering and mobile security testing tools (e.g. IDA Pro, Ghidra, Frida or equivalent).
  • Knowledge of mobile processor architectures and application internals is advantageous.
  • Experience conducting web application penetration testing and secure code reviews across multiple technology stacks.
  • Mandatory CREST CRT certification.
  • Additional certifications such as OSCP, OSWE, OSCE, OSEE, cloud security, red teaming, or AI security certifications are highly regarded.
  • Excellent communication and report-writing skills, with the ability to present technical findings to both technical and non-technical stakeholders.
  • Strong organisational skills with the ability to manage multiple assignments independently while meeting project timelines.

How to Apply

Apply via MyCareersFuture. Only shortlisted candidates will be contacted.

Data Privacy Notice

By submitting your resume or personal data, you consent to the collection, use, and disclosure of your personal data for evaluating your suitability for job opportunities and recruitment services. You acknowledge that you have read and agreed to the applicable Privacy Policy for Job Applicants.

EA License: 05C3053

重要安全守则

申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。

了解更多