Ensign InfoSecurity Logo

Ensign InfoSecurity

Manager, Cyber Adversarial Emulation

Posted 10 Days Ago
Be an Early Applicant
Kallang
Senior level
Kallang
Senior level
Lead and manage penetration testing teams, execute tests, develop strategies, support sales with technical expertise, and foster client relationships while maintaining compliance with regulatory standards.
The summary above was generated by AI

Ensign is hiring !

Manager, Security Testing and Red team

 

Requirements:

• Familiar with cyber security principles, policies and industry best practices
• Experienced in consulting, including internal and client facing experiences
• Possess relevant cybersecurity certifications or accredited experience from CTF
• Ability to travel overseas when required
• Familiar with system administration on various operating systems flavours (Linux and Windows)
• Familiar with programming/scripting languages such as .NET, Python, Bash and PowerShell
• Understand and apply the Cyber Kill Chain
• Good understanding with Active Directory and Windows environment

Preferred Qualifications/Skills

• Experienced with tools such as Bloodhound, TinyShell and the likes
• Cyber Security Certifications (e.g. OSCP, SEC564, SEC660, CREST)
• Minimum of 5 to 8 years in the role of Penetration Tester
• Ability to think unconventionally, disruptively and like an adversary

He/She is expected to lead multiple engagements, orchestrating and supporting his teams to deliver on agreed objectives. The lead will be expected to work in challenging environments and deliver under pressure, while maintaining good working relationships with customers. The role focuses on competence in technical delivery but requires an aptitude for consultancy and management. He/she will be required to manage and mentor the pentest team.

Duties & Responsibilities:

• Plan and execute complex Penetration tests.
• Lead Project Delivery in planning and arranging pentest activities, assigning personnel and managing workloads.
• Deliver both technical and management engagement presentations.
• Maintain a good working knowledge of threat actors and their Tactics, Techniques and Procedures (TTP’s).
• Co-ordinated delivery of risk workshops, Threat Intelligence handover and project setup meetings with customers.
• Create robust and coherent test plans, or provide quality assurance of any test plans.
• Maintain a proficient knowledge of regulatory frameworks, laws and there legal implications, operational security and its impacts on the team.
• Support the sales team in procurement of pentest services:
• Responding to RFP's and other proposals.
• Presales to support the effective communication of the pentest service and set appropriate expectations.
• Onsite presentation of pentest service to executive level audiences.
• Regular training provided to the sales team to upskill the knowledge of the pentest service and current terminology.
• Reporting: Create high quality and thorough technical and management reports, which are appropriately directed to their intended audience.
• Providing Quality Assurance services, confirming either the relevant technical or management quality, as well as the report being coherent and written to a high standard.
• Coach and mentor pentest members, providing support to all aspects of the job, technical, procedural and social.
• Maintain the pentest methodology and supporting documentation/processes.
• Strong leadership, managing a team of testers, assigning workload and utilising the different skillsets to achieve objectives.
• Maintain a focus on client objectives and have the ability to manage time and client expectations.
• Develop brand reputation across the industry, this could be in the form of training, workshops, conference talks or blogs.

Skills/Experience Required

• 5 year experience in leading and technical delivery of complex pentest engagements.
• Strong technical, social and presentation skills.
• Strong influence, negotiation and relationship management skills.
• Good written and speaking English skills.
• Analytical/problem solving skills.
• Ability to lead, teach, present and inspire the wider team.
• Highly proficient with multiple C2 frameworks and capable of modifying or creating tooling to overcome technical challenges.
• Offensive Security OSCP, OSCE & CREST CCSAM, CCSAS or equivalent level of IT Security related certification/knowledge.
• Knowledge and experience in scripting or programming languages (ex. Python, Perl, Ruby, PowerShell, C, C#, Java) in order to develop custom scripts or tools.
• Knowledge of adversary tactics and threat modelling.
• Understanding of global regulatory landscape for technology and cyber risk.

 

 

Top Skills

.Net
Bash
Bloodhound
C
C#
Java
Powershell
Python
Tinyshell

Ensign InfoSecurity Singapore Office

30A Kallang Place, #08-01, Singapore, Singapore , Singapore, 339213

Similar Jobs

Yesterday
Remote
Hybrid
Singapore, SGP
Mid level
Mid level
Cloud • Information Technology • Security • Software • Cybersecurity
As a Security Researcher & Analyst, you will analyze security vulnerabilities, conduct penetration testing, communicate findings, and develop security tools using various programming languages.
Top Skills: AIGoGrafanaJavaScriptLinux/UnixMachine LearningPythonRustSQL
Mid level
Financial Services
The role involves managing technology-related aspects of Governance, Risk, and Compliance, assessing risks, implementing controls, and ensuring regulatory compliance.
Top Skills: Computer ScienceCybersecurityData Science
Junior
Fintech • Mobile • Payments • Software • Financial Services
The Service Management Technician supports users with access management issues, resolves IT access tickets in Jira, manages service automation projects, and maintains documentation. This role emphasizes strong communication and customer service skills, problem-solving and technical project management experience.
Top Skills: Atlassian ProductsJIRA

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account