ABOUT THE COMPANY
Bare Cove Technology (BCT) is an award-winning IT and cybersecurity solutions provider. Our team is made up of proven leaders in the fields of cybersecurity, software development, cloud technologies, and IT infrastructure and design. We support the top asset managers in the Asia Pacific region, helping our clients meet the evolving expectations of institutional investors and global regulators.
Bare Cove Technology is in a rapid-growth phase and onboarding new clients across Singapore, Hong Kong, Australia, and the UK. To support our continued growth, Bare Cove is looking to hire several new members to the team.
ABOUT THE ROLE
Bare Cove Technology is looking for a Cyber Security Analyst to join our growing team. The candidate will be focused on providing high-quality cybersecurity services, including penetration testing, vulnerability scanning, managing phishing campaigns, and conducting security training. This role presents an exciting opportunity for candidates who possess technical experience and expertise in cybersecurity and are looking for a unique opportunity to leverage their technical expertise to enhance our clients&apos security posture.
This role can be based in either of BCTs Hong Kong or Singapore offices. Singapore candidates must be Singapore citizens or Permanent Residents.
Job Duties:
- Conduct penetration testing to identify and demonstrate the ability to exploit vulnerabilities in clients&apos systems and networks.
- Perform vulnerability scanning to detect and assess security weaknesses.
- Manage phishing campaigns, including the creation, execution, and analysis of phishing simulations.
- Develop and deliver security awareness training to educate clients and internal staff on cybersecurity best practices.
- Provide detailed reports on findings from penetration tests and vulnerability scans, including recommendations for remediation.
- Coordinate with internal and client teams on the remediation of findings.
- Analyse real phishing alerts, antivirus alerts, zero-day vulnerability alerts, and provide comprehensive updates to the respective stakeholders.
- Collaborate with clients to understand their security needs and provide tailored cybersecurity solutions.
- Stay up-to-date with the latest cybersecurity trends, threats, and technologies.
SKILLS AND QUALIFICATIONS
Required Skills and Qualifications:
- Prior experience in conducting penetration testing and vulnerability scanning.
- Strong understanding of cybersecurity principles and best practices.
- Experience with phishing campaign management and security awareness training.
- Proven ability to function in a self-directed environment, with high levels of attention to detail.
- Must excel in a fast-paced, agile environment where critical thinking and strong problem-solving skills are required for success.
- Innovative thinker who is positive, proactive and readily embraces change.
- Ability to handle clients professionally at all times.
- Willing to work outside standard business hours when necessary.
- Strong written and verbal English communication skills are required; Cantonese and Mandarin are a plus.
Preferred Skills and Qualifications:
- Relevant certifications such as CEH, OSCP, CISSP, CREST or similar are preferred.
- Experience with cloud security (M365, AWS, Azure, etc.).
- Knowledge of scripting languages such as Python or PowerShell.
- Familiarity with regulatory requirements and compliance standards (e.g., GDPR, ISO 27001).