Offensive Security Engineer - Penetration Testing

MENRVA PTE. LTD.Singaporemycareersfuturepublished 09/23/2026
Must-have:CloudSecurityLeadJunior

Offensive Security Consultant (Red Team) Our client is expanding their Offensive Security practice and seeking Red Team and Penetration Testing professionals who enjoy hands‑on technical work, client interaction, and solving complex cybersecurity challenges. This role suits consultants who want to grow their technical depth while contributing to high‑impact security engagements across diverse environments. Role Overview As an Offensive Security Consultant, you will work with organisations to identify security risks, perform penetration testing, and provide practical remediation guidance. You will lead or support engagements, collaborate with technical teams, and help develop offensive capabilities within the practice. Key Responsibilities Lead or manage security engagements as an Engagement Manager or Engagement Lead.

Conduct penetration testing across applications, networks, cloud, and modern enterprise environments.

Perform manual web application testing, API testing, and source code reviews.

Assess hardening controls across cloud, endpoint, IoT, and other systems.

Provide clear, actionable remediation guidance to clients.

Mentor junior consultants and support capability development.

Coordinate with clients and subject matter experts to deliver high‑quality outcomes.

Contribute to secure architecture design, including cloud‑native environments.

What You Bring Candidates should have experience in several of the following areas: Strong understanding of penetration testing methodologies, exploitation techniques, and vulnerability remediation aswell

Ability to identify issues in web applications, APIs, and source code.

Familiarity with threats across cloud platforms, endpoints, IoT, and enterprise environments.

Ability to adapt quickly to new technologies and evolving attack techniques.

Strong communication skills and confidence in client‑facing situations.

Experience & Certifications 2–3 years of consulting experience in cybersecurity or offensive security.

Required: OSCP or CREST CRT.

Experience presenting to stakeholders or executives is an advantage.

Strong spoken English for client engagements.

Adam Davies Partner Technology 'recruitment & search'  Menrva Group Registered Agent R1326604 Company EA License 19S9808 Company Registration 201900823K MENRVA PTE. LTD.

Contact person

Listed by the employer in the job posting — for questions and your application.

  • Adam DaviesPartner