Cyber Security Consultant

FIRMUS PTE. LTD.

Date: 5 days ago
City: Singapore, Singapore
Salary: SGD 4,000 - SGD 6,000 / mo
Contract type: Full time

Firmus, founded in 2008 by experienced cybersecurity professionals, is an industry leader in advanced cybersecurity services and solutions. The company is CREST accredited, Cyber Trust Mark Tier 5 and ISO/IEC 27001:2022 certified, reflecting its strong commitment to security and compliance. Firmus brings together specialists in Red Team, GRC, Operational Technology, and Cybersecurity Solutions to help organizations manage cyber risks and drive business growth. With nearly two decades of proven experience, Firmus supports clients in addressing evolving cyber threats, expanded attack surfaces, and complex security challenges. Applicants can expect to work in a technically rigorous environment focused on creating secure digital ecosystems for diverse organizations.

This is a full-time, on-site Cyber Security Consultant role based in Singapore. The consultant will perform security assessments, including red teaming exercise, vulnerability assessments and penetration testing, across applications, networks, and infrastructure. Daily responsibilities include analyzing security controls, identifying weaknesses, recommending remediation measures, and preparing clear, actionable reports for clients and internal stakeholders. The role involves collaborating with technical and business teams to design and implement security solutions, support incident response activities, and contribute to security architecture reviews. The consultant will also stay current with emerging threats, regulatory requirements, and industry best practices, and help enhance Firmus’ methodologies, tools, and service offerings.

Qualifications

  • CREST CRT & OSCP (minimum)
  • Strong foundation in Cybersecurity and Information Security, with the ability to assess risk and design appropriate controls.
  • Hands-on experience in Application Security, including secure SDLC practices, code review, and web/mobile application testing.
  • Proficiency in Network Security, including firewalls, IDS/IPS, VPNs, and network segmentation and hardening.
  • Practical experience with Vulnerability Assessment tools and methodologies, and translating findings into remediation plans.
  • Knowledge of common security frameworks and standards (e.g., ISO 27001, NIST, CIS Controls) and relevant regulatory requirements.
  • Ability to produce clear technical documentation and client-facing reports, and communicate complex issues to non-technical audiences.
  • Experience with penetration testing tools and techniques; CREST, OSCP, or similar certifications are an advantage.
  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field, or equivalent practical experience.
  • Strong analytical and problem-solving skills, with the ability to work independently and as part of a multidisciplinary team.
  • Willingness to continuously learn, adapt to new technologies, and contribute to improving internal processes and methodologies.

For employers only

Is this your company's job post? Verify ownership to manage this listing and receive applications directly.

Claim this listing

Looking to apply for this job? Use the Apply button above.