953,927open jobs
57,674companies
156,942added this week
Browse all
Salary
$61k – $80k per year (gross)
Location
In office (Singapore)
Seniority
Middle · 3+ years exp
Employment
Full-Time

First seen by Alion on Sep 28, 2026.

Overview
Company
Impact
Profile match
PT ITSEC Asia Tbk is leading cybersecurity company in Indonesia & APAC region, listed on the Indonesian Stock Exchange as CYBR, with over 350 employees across five countries.

ITSEC Asia is looking for a Cybersecurity Consultant (Offensive Security) to join our growing team.

We are primarily looking for candidates with around 3 years of hands-on penetration-testing

experience, although we also welcome applications from strong junior pentesters and early-career

professionals who can demonstrate solid technical foundations, curiosity and a genuine passion for

ethical hacking.

This role provides exposure to a wide range of security assessments across enterprise, cloud,

government and critical environments. We are particularly interested in people who are keen to

embrace AI, automation and emerging technologies to improve the efficiency, depth and quality of

penetration testing.

About ITSEC Group

ITSEC Group is a cybersecurity organisation operating across the Asia-Pacific region and beyond,

with offices in Singapore, Indonesia, Australia, the UAE and Mauritius.

We provide cybersecurity consulting and security services to clients across government, critical

infrastructure, financial services, telecommunications, healthcare, technology and other industries.

Joining ITSEC provides the opportunity to work across diverse technology environments, complex

security challenges and a broad range of consulting engagements, while developing both your

technical and client-facing capabilities.

Key Responsibilities

• Conduct penetration testing and vulnerability assessments across web applications, APIs, mobile

applications, networks, cloud environments and other technology platforms.

• Support security assessments involving IT, Operational Technology (OT), Internet of Things (IoT)

and other specialised environments.

• Identify, validate and demonstrate security vulnerabilities using appropriate testing methodologies

and techniques.

• Assess the technical and business impact of identified vulnerabilities and attack paths.

• Document testing activities, technical evidence, proof-of-concept results and assessment

conclusions in a clear and defensible manner.

• Prepare professional penetration-testing reports covering findings, risk implications, supporting

evidence and practical remediation recommendations.

• Present technical findings to clients and explain security risks and remediation approaches to both

technical and non-technical stakeholders.

• Conduct remediation verification and retesting to confirm that identified vulnerabilities have been

effectively addressed.

• Explore and responsibly apply AI-assisted security testing, automation, scripting and emerging

technologies to improve research, reconnaissance, analysis, testing and reporting workflows.

• Continuously develop knowledge of emerging vulnerabilities, attack techniques, security tools,

technologies and industry methodologies.

• Contribute to the development of the team's testing methodologies, knowledge base, tooling and

technical capabilities.

What We Are Looking For

• Diploma or degree in Cybersecurity, Information Security, Computer Science, Engineering or a

related discipline.

• Ideally around 3 years of relevant hands-on penetration-testing or offensive-security experience.

• Strong junior candidates with less experience are also encouraged to apply if they can demonstrate

good practical offensive-security skills and a strong willingness to learn.

• CREST Registered Tester (CRT), Offensive Security Certified Professional (OSCP) or a comparable

recognised offensive-security certification is strongly preferred.

• Good practical understanding of penetration-testing methodologies, tools and techniques.

• Hands-on experience in areas such as web application, API, network, Active Directory, mobile or

cloud penetration testing will be advantageous.

• Experience or knowledge in OT, ICS, IoT or critical-infrastructure security testing is highly

advantageous.

• Strong analytical, troubleshooting and problem-solving capabilities.

• Ability to produce clear, accurate and professional technical reports.

• Good communication skills and the ability to explain technical security issues clearly to clients.

• Interest in AI, automation, scripting and emerging offensive-security technologies, together with the

ability to learn and adapt quickly.

• Willingness to take ownership, work collaboratively and continue developing professionally within a

cybersecurity consulting environment.

Singapore Government / Classified Project Experience

Singapore citizens are preferred, particularly candidates who are eligible to support sensitive or

classified Singapore Government engagements.

Previous experience working on Singapore Government, highly classified, critical-infrastructure or

other high-security projects is highly advantageous.

Candidates who are familiar with the security expectations, professional conduct, documentation

discipline and operational constraints associated with sensitive government environments will be

especially relevant to this role.

What You Can Expect

ITSEC provides on-the-job training, technical mentorship and exposure to experienced cybersecurity

professionals to help consultants continue developing their capabilities.

You will have opportunities to:

• Work on diverse and technically challenging penetration-testing engagements.

• Develop deeper expertise across traditional IT, cloud, OT and emerging technology environments.

• Strengthen your consulting, client communication and professional report-writing skills.

• Learn from experienced offensive-security practitioners.

• Experiment responsibly with AI-assisted and automated security-testing approaches.

• Progress technically into specialised offensive-security domains as your experience develops.

If you enjoy understanding how systems can be broken, explaining why it matters, and helping

organisations become more secure, we would be happy to hear from you.

Skills

Methodology, Risk Assessment, Cyber Security, Web Application Security Assessment, Validate Test Methods, IT Security Assessments, Penetration Testing, Operating Systems, Cybersecurity, Consulting, Security Consulting, Systems Design, Vulnerability Assessment, Network Security, Security Analysis, It Systems

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
953,927 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Singapore
$170k – $250k per year • In office • TS/SCI • Full-Time • 8+ years exp • Bachelor's Degree • Washington
Cybersecurity
Nessus
Zero Trust
Least Privilege
SIEM
Apply
≈ $18k – $47k per year (Estimated) • In office • Full-Time • Bengaluru
Python
C++
Cybersecurity
PKI
Management
Agile
Scrum
Apply
≈ $66k – $149k per year (Estimated) • In office • Contractor • 5+ years exp • Paris
Python
Bash
YARA
Databases
PostgreSQL
MariaDB
ElasticSearch
Apache Kafka
DevOps
Rest API
Splunk
Kibana
Logstash
Prometheus
Windows Server
Docker
Kubernetes
Grafana
Windows
DNS
Cybersecurity
Wireshark
Crowdstrike
Tcpdump
Zscaler
Zeek
YARA
Elastic SIEM
SentinelOne
Microsoft Defender
MISP
VirusTotal
IBM QRadar
SIEM
Apply
≈ $66k – $137k per year (Estimated) • Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Pittsburgh
Python
PowerShell
AI/ML
Anomaly Detection
Machine Learning
DevOps
Splunk
Windows
DNS
Cybersecurity
Volatility
Autopsy
The Sleuth Kit
Velociraptor
MITRE ATT&CK
FTK
EnCase
X-Ways Forensics
Active Directory
SIEM
Apply
$143k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • New York
DevOps
Azure
Windows Server
AWS
IAM
Linux
TCP/IP
DNS
Cybersecurity
Active Directory
SIEM
Apply
≈ $69k – $133k per year (Estimated) • In office • 8+ years exp • Bachelor's Degree • Naples
Cybersecurity
CAPA
Active Directory
Apply
≈ $17k – $35k per year (Estimated) • In office • 6+ years exp • Bachelor's Degree • Bengaluru
SQL
Databases
MS SQL
DevOps
GCP
Azure
AWS
Cybersecurity
ISO 27001
Active Directory
Analytics
Tableau
Power BI
ETL/ELT
SSIS
Management
Power Automate
Power Apps
Apply
$70k – $76k per year • In office • TS/SCI • 7+ years exp • High School Diploma • Alexandria
DevOps
AWS
Windows
Cybersecurity
Active Directory
Management
Outlook
Microsoft Teams
Service Desk
Apply
$68k – $79k per year • In office • 8+ years exp • Dublin
DevOps
Azure
AWS
SLI/SLO/SLA
Cybersecurity
Okta
GDPR
Active Directory
Management
Jira
ServiceNow
ITIL
Apply
$66k – $106k per year • In office • Secret • 2+ years exp • High School Diploma • Kansas City
SQL
DevOps
Red Hat
VMWare
Azure
Windows Server
AWS
Incident Management
Linux
Cybersecurity
Active Directory
Management
ITIL
ITSM
Service Desk
Apply
$42k – $61k per year (gross) • In office • Contractor • 3+ years exp • Singapore
DevOps
Splunk
VMWare
Incident Management
Cybersecurity
CyberArk
Carbon Black
SIEM
Apply
$38k – $66k per year (gross) • In office • Full-Time • 3+ years exp • Singapore
Apply
System Administrator 19 days ago
≈ $54k – $139k per year (Estimated) • In office • Full-Time • 7+ years exp • Jakarta
Python
PowerShell
Bash
DevOps
Puppet
Ansible
Loki
Prometheus
Windows Server
Docker
Kubernetes
Grafana
SaltStack
Configuration Management
Proxmox VE
Incident Management
Windows
Apply
≈ $78k – $147k per year (Estimated) • In office • Full-Time • 3+ years exp • Jakarta
Java
Java
Spring Boot
Databases
PostgreSQL
Redis
TimescaleDB
RabbitMQ
OpenSearch
DevOps
GCP
GitLab CI
CI/CD
Kubernetes
Apache APISIX
Google GKE
Cybersecurity
Keycloak
Apply
Cloud Engineer 27 days ago
$66k – $86k per year (gross) • In office • Contractor • 3+ years exp • Singapore
DevOps
Rest API
Ansible
VMWare
Apply
≈ $71k – $128k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Singapore
Python
JavaScript
Java
Node JS
Groovy
Java
Apache Tomcat
DevOps
Splunk
Terraform
GitHub Actions
Kibana
Prometheus
GitLab CI
CI/CD
Windows Server
Jenkins
Git
Nginx
Apache HTTP Server
Grafana
SLI/SLO/SLA
IAM
Linux
Windows
Cybersecurity
PCI DSS
GDPR
LDAP
Management
Jira
Apply
≈ $61k – $169k per year (Estimated) • In office • Internship • Bachelor's Degree • Singapore
Python
SQL
PowerShell
YARA
DevOps
Splunk
Linux
Windows
TCP/IP
DNS
Cybersecurity
YARA
MITRE ATT&CK
SIEM
Apply
≈ $20k – $38k per year (Estimated) • In office • Internship • Singapore
Apply
≈ $20k – $47k per year (Estimated) • In office • Full-Time • Singapore
Apply
≈ $36k – $79k per year (Estimated) • In office • Full-Time • Singapore
DevOps
Windows
Cybersecurity
FortiGate
Analytics
Power BI
Management
Power Automate
Power Apps
Apply
See all jobs
This is one of many
953,927 more open roles from verified company boards, updated every day.