Job is active

Application Security Penetration Tester

8 000 – 14 000 $

Location

KALLANG AVENUE, CT HUB

Open in maps

About this job

Role Overview

We are seeking an experienced Application Security Penetration Tester to perform security assessments across web applications, APIs, and supporting application environments. The role will focus on identifying and validating vulnerabilities through penetration testing, SAST, DAST, and vulnerability assessment activities.

The successful candidate will also work closely with development and DevOps teams to support vulnerability remediation and integrate security testing into DevSecOps and CI/CD processes.

Key Responsibilities

  • Perform penetration testing and security assessments across web applications and APIs.
  • Conduct Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Vulnerability Assessment and Penetration Testing (VAPT).
  • Identify, validate, assess, and document application security vulnerabilities.
  • Evaluate applications against OWASP Top 10 and other common application security risks.
  • Produce clear security assessment reports covering findings, severity, impact, and recommended remediation.
  • Perform remediation validation and vulnerability retesting.
  • Support Red Team and security testing activities where required.
  • Integrate automated security testing into DevSecOps and CI/CD pipelines.
  • Collaborate with development, DevOps, and security teams to resolve identified vulnerabilities.
  • Provide guidance on secure development and application security best practices.

Required Skills

  • 3–8 years of relevant experience in Application Security, Penetration Testing, VAPT, or DevSecOps Security.
  • Strong hands-on experience with SAST, DAST, and penetration testing.
  • Strong understanding of web application and API security.
  • Good knowledge of OWASP Top 10 and common application vulnerabilities.
  • Hands-on experience with security tools such as Burp Suite, OWASP ZAP, Checkmarx, Fortify, SonarQube, Nessus, or Qualys.
  • Familiarity with CI/CD and DevSecOps environments using tools such as Jenkins, GitLab, GitHub, or Azure DevOps.
  • Understanding of container security and environments such as Docker and Kubernetes.
  • Ability to analyze security findings, distinguish genuine vulnerabilities from false positives, and recommend appropriate remediation.
  • Strong analytical, troubleshooting, documentation, and communication skills.

Preferred Skills

  • Experience with Red Teaming or adversarial security testing.
  • Relevant security certifications such as OSCP, CEH, CREST, or equivalent.
  • Experience working within large enterprise or regulated environments.
  • Familiarity with secure coding practices and Software Development Life Cycle (SDLC) security.

Application Note

Interested applicants may send their CV directly to [email protected] for consideration.

Market insight

87% above median
5 887 $

Based on 1 209 offers with salary for Jobs on-site in Serangoon

Full salary breakdown

ARYAN SOLUTIONS PTE. LTD. Serangoon ·

DevSecOps Engineer

4 000 – 10 000 $
Contract1–3 yearsOn-siteSerangoon

Frequently asked questions

What salary can I expect?

The employer lists 8 000 – 14 000 $ for this role at ARYAN SOLUTIONS PTE. LTD. in Serangoon. For comparison, the local market median is about 5 887 $ based on 1 209 similar offers.

How do I apply for this job?

Open the original source page and contact the employer there. Finder never charges job seekers.

Are these jobs up to date?

Yes. Finder regularly refreshes vacancies from public sources and removes closed offers.

Where can I see employment type and work format?

Key conditions are shown above the description. You can also open related listings for ARYAN SOLUTIONS PTE. LTD. and Serangoon.