Penetration Tester-Govt Clerance
Must-have:PythonAWSAzureGoogle CloudCloudMobileSecurityLead
JobOverview
Weseek a Penetration Testing with CAT1 clearance to lead VAPT for Singaporegovernment and critical infrastructure sectors. You will execute full-scopeattacks (networks, apps, cloud, OT), bypass advanced defenses, and deliveractionable remediation strategies. This role requires CREST/OSCP certification,deep exploit development skills, and experience with GovTech cybersecurityframeworks.
CoreResponsibilities
AdvancedThreat Emulation:
- CAT1-clearedengagements:
- Network:Breach segmented govt networks (e.g., air-gapped systems)
- Applications:Exploit web/mobile apps (SCADA interfaces, GovTech portals)
- Cloud:Attack AWS GovCloud/Azure Government environments
- OT:ICS/SCADA system penetration (Siemens, Rockwell)
- Developcustom malware/exploits (C++, Python) to evade EDR/XDR.
RedTeam Operations:
- Leadmulti-vector campaigns:
- Phishing(Evade Proofpoint/MS ATP)
- Physicalsecurity bypass (RFID cloning, access control spoofing)
- Wirelessattacks (802.1X, WPA3-Enterprise)
- DocumentTTPs aligned with MITRE ATT&CK for ICS/Enterprise.
GovtCompliance & Reporting:
- Aligntests with IM8, CSA Red Teaming Guidelines, and NIST SP 800-115.
- Deliverexecutive briefings to CISOs with exploit demos.
- Createremediation playbooks
Research& Development:
- Reverseengineer firmware (Binwalk, Ghidra) for 0-day discovery.
- Contributeto ASEAN CERT advisories (e.g., SingCERT).
TechnicalRequirements
Non-NegotiableCredentials
- CAT1Security Clearance
- ActiveCertifications: OSCP or CREST CRT/CCT (Inf/App)
- 2+years in pentesting
ToolProficiency
- Exploitation- Metasploit Pro, Cobalt Strike, Burp Suite Pro, PowerSploit
- Post-Exploit- BloodHound, Mimikatz, Impacket, Covenant C2
- Forensics- Volatility, Wireshark, CHIRP (ICS)
- Wireless- HackRF One, Proxmark3, Wi-Fi Pineapple
- Cloud- Pacu (AWS), MicroBurst (Azure), GCP IAM Exploit Toolkit
PreferredQualifications
- Certifications:OSCE³, CREST CCT Gold, OSCP
- GovtFramework Experience: IM8 Penetration Test Guidelines, CSA Cyber Essentials
- PublicContributions: CVEs, exploit-db submissions, conference talks (Black Hat Asia,DEFCON)