

Search by job, company or skills
Firmus, founded in 2008 by experienced cybersecurity professionals, is an industry leader in advanced cybersecurity services and solutions. The company is CREST accredited, Cyber Trust Mark Tier 5 and ISO/IEC 27001:2022 certified, reflecting its strong commitment to security and compliance. Firmus brings together specialists in Red Team, GRC, Operational Technology, and Cybersecurity Solutions to help organizations manage cyber risks and drive business growth. With nearly two decades of proven experience, Firmus supports clients in addressing evolving cyber threats, expanded attack surfaces, and complex security challenges. Applicants can expect to work in a technically rigorous environment focused on creating secure digital ecosystems for diverse organizations.
This is a full-time, on-site Cyber Security Consultant role based in Singapore. The consultant will perform security assessments, including red teaming exercise, vulnerability assessments and penetration testing, across applications, networks, and infrastructure. Daily responsibilities include analyzing security controls, identifying weaknesses, recommending remediation measures, and preparing clear, actionable reports for clients and internal stakeholders. The role involves collaborating with technical and business teams to design and implement security solutions, support incident response activities, and contribute to security architecture reviews. The consultant will also stay current with emerging threats, regulatory requirements, and industry best practices, and help enhance Firmus methodologies, tools, and service offerings.
Qualifications
Job ID: 151390471
Skills:
Microsoft 365, Iso 27001, Vulnerability Management, Cloud Security, Cyberark, Cloud Infrastructure Architect, Microsoft Cloud Azure, GCSOC, CA Privilege Access Management, CyberSecurity Cloud Risk and Vulnerabilities, NIST Gap Assessment
Skills:
red teaming , Penetration Testing, Metasploit, Secure Code Review, Nmap, Vulnerability Assessment, Burp, Automated Security Testing, Nessus, Sona Cube
Skills:
network security, Dns, Windows, Vpns, Authentication, PowerShell, Siem, Python, routing, Apis, Firewalls, Vulnerability Management, NDR, endpoint network security controls, Linux systems, KQL, asset discovery tools, threat intelligence platforms, Active Directory, cloud security fundamentals, EDR, SPL
Skills:
Iso 27001, Cybersecurity Risk Management, Security Awareness Programs, Vulnerability and Risk Management, Data Protection and Privacy, Third-Party Risk Management, Cybersecurity Policies and Standards, Security Governance, Incident Response and Recovery, Cloud Security Fundamentals
Skills:
Oauth, Jwt, Penetration Testing, Burp Suite, DevSecOps, Web Application Penetration Testing, Restful Apis, OpenID Connect, Objection, Infrastructure Penetration Testing, Mobile Application Security Assessments, Frida, GraphQL APIs