Search by job, company or skills

Cyber Security Consultant

3-5 Years
Early Applicant
  • Posted 16 days ago
  • Be among the first 10 applicants

Job Description

Firmus, founded in 2008 by experienced cybersecurity professionals, is an industry leader in advanced cybersecurity services and solutions. The company is CREST accredited, Cyber Trust Mark Tier 5 and ISO/IEC 27001:2022 certified, reflecting its strong commitment to security and compliance. Firmus brings together specialists in Red Team, GRC, Operational Technology, and Cybersecurity Solutions to help organizations manage cyber risks and drive business growth. With nearly two decades of proven experience, Firmus supports clients in addressing evolving cyber threats, expanded attack surfaces, and complex security challenges. Applicants can expect to work in a technically rigorous environment focused on creating secure digital ecosystems for diverse organizations.

This is a full-time, on-site Cyber Security Consultant role based in Singapore. The consultant will perform security assessments, including red teaming exercise, vulnerability assessments and penetration testing, across applications, networks, and infrastructure. Daily responsibilities include analyzing security controls, identifying weaknesses, recommending remediation measures, and preparing clear, actionable reports for clients and internal stakeholders. The role involves collaborating with technical and business teams to design and implement security solutions, support incident response activities, and contribute to security architecture reviews. The consultant will also stay current with emerging threats, regulatory requirements, and industry best practices, and help enhance Firmus methodologies, tools, and service offerings.

Qualifications

  • CREST CRT & OSCP (minimum)
  • Strong foundation in Cybersecurity and Information Security, with the ability to assess risk and design appropriate controls.
  • Hands-on experience in Application Security, including secure SDLC practices, code review, and web/mobile application testing.
  • Proficiency in Network Security, including firewalls, IDS/IPS, VPNs, and network segmentation and hardening.
  • Practical experience with Vulnerability Assessment tools and methodologies, and translating findings into remediation plans.
  • Knowledge of common security frameworks and standards (e.g., ISO 27001, NIST, CIS Controls) and relevant regulatory requirements.
  • Ability to produce clear technical documentation and client-facing reports, and communicate complex issues to non-technical audiences.
  • Experience with penetration testing tools and techniques; CREST, OSCP, or similar certifications are an advantage.
  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related field, or equivalent practical experience.
  • Strong analytical and problem-solving skills, with the ability to work independently and as part of a multidisciplinary team.
  • Willingness to continuously learn, adapt to new technologies, and contribute to improving internal processes and methodologies.

More Info

Job Type:
Industry:
Function:
Employment Type:

About Company

Job ID: 151390471

Similar Jobs

Singapore, Robinson

Skills:

OauthJwtPenetration TestingBurp SuiteDevSecOpsWeb Application Penetration TestingRestful ApisOpenID ConnectObjectionInfrastructure Penetration TestingMobile Application Security AssessmentsFridaGraphQL APIs

Singapore

Skills:

Iso 27001Cybersecurity Risk ManagementSecurity Awareness ProgramsVulnerability and Risk ManagementData Protection and PrivacyThird-Party Risk ManagementCybersecurity Policies and StandardsSecurity GovernanceIncident Response and RecoveryCloud Security Fundamentals

Singapore

Skills:

Iso 27001Incident ResponseMicrosoft DefenderSensitivity labelsDLP policiesnistZero TrustSecurity Operations

Singapore

Skills:

Iso 27001Penetration TestingVulnerability AssessmentsRisk assessmentsIEC 62443Cyber security best practicesNIST Cybersecurity FrameworkBusiness continuityCyber security risk assessmentsCyber security strategiesDisaster RecoverySecurity Architecture

Singapore

Skills:

security tools Burp SuiteMetasploitVulnerability AssessmentsKaliNmapScripting LanguagesPenetration Testingsource code reviewsNessus

Beware of Scammers

We don’t charge money for job offers