M

Application Penetration Senior/Analyst

icon briefcase Job Type : Full Time

Number of Applicants

 : 

000+

Click to reveal the number of candidates who applied for this job.
icon loader
icon loader

Let AI Supercharge Your Job Hunt!

JobCopilot scans 500,000+ company career sites daily to find jobs for you

Never miss an opportunity Save hours by auto-filling applications forms Land more interviews with tailored applications
happy man
thunder iconActivate JobCopilot

Job Description - Application Penetration Senior/Analyst

  • Conduct comprehensive application security testing including SAST, DAST, IAST, and API security testing.
  • Perform in-depth manual penetration testing to uncover complex vulnerabilities such as business logic flaws, privilege escalation paths, and chained attack scenarios.
  • Identify, validate, and responsibly exploit vulnerabilities aligned to industry frameworks such as OWASP Top 10, SANS CWE Top 25, and NIST standards.
  • Analyze and triage findings from automated security tools, distinguishing false positives and prioritizing critical risks.
  • Collaborate with developers to provide remediation guidance and promote secure coding best practices.
  • Support threat modeling and risk assessments during SDLC phases.
  • Produce clear, actionable vulnerability assessment reports with risk ratings, proof-of-concept evidence, and remediation recommendations.
  • Track remediation progress and partner with engineering teams to perform root cause analysis.
  • Maintain up-to-date documentation of testing methodologies, frameworks, and standards.

Qualification:

  • Minimum of 3 years of experience in cyber security.
  • Strong understanding of web application architecture, authentication and authorization mechanisms, session management, and data flows.
  • Hands-on experience with leading security tools such as:
    • Burp Suite
    • OWASP ZAP
    • Postman
    • Nessus
    • Checkmarx
    • Veracode
    • Fortify
    • SonarQube
  • Experience with scripting or automation (Python, Bash, PowerShell, JavaScript).
  • Familiarity with cloud security, particularly in Microsoft Azure environments.
  • Strong understanding of secure coding standards and common vulnerability patterns.
  • Industry certifications such as OSCP, OSWE, GPEN, GWAPT, CEH, or CSSLP.
  • Knowledge of container security (Docker, Kubernetes) and microservices architecture.
  • Experience integrating security testing within CI/CD pipelines.

Morgan McKinley Pte Ltd

Lim Sook Fern

EA Licence No: 11C5502 | EAP Registration No: R1106192

Original job Application Penetration Senior/Analyst posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs.
Share Job
Share Job

Auto-Apply to Application Penetration Analyst Jobs with your AI JobCopilot

thunder icon Auto-Apply with AI

Similar Application Penetration Analyst Jobs in Singapore

GrabJobs is the no1 job portal in Singapore, connecting you to thousands of jobs fast! Find the best jobs in Singapore, apply in 1 click and get a job today!

Mobile Apps

Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.