Search by job, company or skills

Information Security

4-8 Years
Early Applicant
Quick Apply
  • Posted 20 days ago
  • Be among the first 30 applicants

Job Description

We are hiring an Information Security Engineer with experience in Vulnerability Management and Penetration Testing. The ideal candidate should have hands-on experience in identifying, assessing, prioritizing, and tracking security vulnerabilities, along with coordinating or performing penetration testing across enterprise environments.

Key Responsibilities

  • Manage the end-to-end vulnerability management lifecycle, including identification, assessment, prioritization, remediation tracking, and validation.
  • Coordinate and support penetration testing activities across web applications, APIs, networks, cloud, and infrastructure.
  • Review vulnerability and penetration testing findings and work with technical teams to drive remediation.
  • Perform risk-based analysis to prioritize vulnerabilities based on business impact.
  • Monitor remediation progress and ensure timely closure of security findings.
  • Prepare security reports, dashboards, and metrics for stakeholders.
  • Collaborate with infrastructure, cloud, application, and security teams to improve the organization's security posture.
  • Support security governance, compliance, and continuous process improvements.

Required Skills

  • 5–8 years of experience in Information Security, Vulnerability Management, or Penetration Testing.
  • Hands-on experience with vulnerability management tools such as Qualys, Tenable, Rapid7, or similar.
  • Good understanding of penetration testing methodologies and security frameworks such as OWASP, MITRE ATT&CK, PTES, or NIST.
  • Exposure to penetration testing tools such as Burp Suite, Nmap, Metasploit, or Kali Linux.
  • Understanding of SIEM/log management platforms is an advantage.
  • Knowledge of cloud security and security best practices is preferred.
  • Experience with scripting languages such as Python or PowerShell is an advantage.
  • Strong analytical, communication, and stakeholder management skills.

Preferred

  • Bachelor's degree in Computer Science, Information Technology, or related field.
  • Security certifications such as CEH, CISSP, CISM, OSCP, GPEN, or equivalent are preferred.

More Info

Job Type:
Function:

About Company

Helius Technologies is a global consulting and IT services company headquartered in Singapore. Our focus is on delivering consulting and staffing solutions spanning augmentation to managed services.

Established in 2006, Helius has partnered and supported leading companies across diverse industries including Banking and Financial Services, Manufacturing, Logistics and Healthcare.

Our objective is to be a solutions partner for our customers by focusing on their needs, leveraging our strong resource team, being flexible in our approach, and using proven processes. Over the years we have established our clientele and a significant pool of resources and facilities. We continue to grow rapidly as a company with strong management, technical and financial resources and unwavering commitment to serve our clients.

Job ID: 151890153

User Avatar
0 Active Jobs

Similar Jobs

Singapore

Skills:

security automation ContainersApisGitAI-assisted development toolsLLM and AI Agent conceptsAI-assisted code reviewdependency managementVulnerability analysisSecure SDLC tools

Singapore

Skills:

CybersecuritySiemEmail protectionEDRXDRVulnerability scanInformation System security analysisCISSP certificationISC2 CC or other recognized cybersecurity certification

Singapore

Skills:

Email SecurityVulnerability ManagementIso 27001CismVulnerability ScannersTrendMicroPDPANIST CSFphishing awarenessCyber Trust MarkGCTIEDRCisspExternal AuditsCRISC

Singapore

Skills:

threat management Email SecurityVulnerability ManagementCybersecurityInformation SecurityIncident ResponseIamSiemRisk ManagementSecurity PoliciesCloud Security SolutionsEDRGovernance FrameworksSecurity Operations

Singapore

Skills:

Vulnerability ManagementEncryptionInfrastructure SecurityOwaspAuthenticationCryptographySystem SecuritySecurity Risk Assessmentskey managementAccess ControlsInformation Security PoliciesSANSAuthorizationOperational KPIBusiness Impact AssessmentsApplication Development LifecycleEntitlement

Beware of Scammers

We don’t charge money for job offers