Role Overview
We are seeking a motivated and skilled Security Consultant to join our cybersecurity team. The ideal candidate will have hands-on experience in vulnerability assessment and penetration testing (VAPT), and a strong foundation in offensive security practices. This role requires a proactive individual who can assess, identify, and exploit security vulnerabilities across network and web environments, and provide actionable remediation recommendations to strengthen clients’ security posture.
Key Responsibilities
Conduct network and webapplication vulnerability assessments and penetration tests (VAPT) to identifyand validate security risks.
Prepare detailed reports outlining findings, risks, and practical remediation strategies.
Work closely with clients and internal teams to deliver effective security solutions.
Stay updated with emerging security threats, exploits, and industry best practices.
Support internal research and development to enhance service offerings.
Requirements
Nationality:
Must be a Singapore Citizen.
Experience:
Minimum 2 years of relevant hands-on security testing experience.
Certifications (at least one required):
OSCP/ OSCP+ / CRT
Strong knowledge of network protocols, web application architecture, and common vulnerabilities (e.g.,OWASP Top 10).
Familiarity with industry-standard tools (e.g., Burp Suite, Metasploit, Nmap, Nessus, etc.).
Strong analytical and problem-solving skills with attention to detail.
Excellent communication and report-writing skills.
Good to Have
Additional offensive security certifications (e.g., OSWE, OSEP, CRTO, CRTL).
Exposure to source code review,cloud penetration testing and mobile application testing.
Experience working with government or regulated industry clients.
Why Join Us?
Opportunity to work on challenging, real-world security engagements.
Professional growth through advanced projects and certifications.
Collaborative and knowledge-sharing environment.
Started in 2001 as a security research Information Security Institute, softScheck has always been a research driven security testing company with one goal, which is “to promote software security from inception to completion, and in compliance with ISO27034 \& Microsoft Security Dev. Lifecycle.”
softScheck evolved into an IT security company offering its clients the highest level of product penetration testing, general applications and network penetration testing. With over a decade’s experience, our clients benefit from state of the art testing developed by renowned research experts. Our methods and technology form the cutting edge of IT security, with our staff comprising of leading researchers and academicians.
Your personal data will be processed for the purpose of managing softScheck's recruitment related activities, which includes setting up and conducting interviews and tests for applicants, evaluating, and assessing the results and as is otherwise needed in the recruitment and hiring process. Please consult our
Privacy Notice
(
https://www.softscheck.sg/privacy-policy/
), to know more about how we collect, use, and transfer the personal data of our candidates.