Careers

Senior Red Team Expert – Relocation to Singapore

Planet Nine

About The Position

BNF Singapore, a subsidiary of Planet Nine, is looking for a Senior Security Threat Hunter to join our Critical Infrastructure Research team. This is a research driven role focused on proactive threat hunting, adversary behavior analysis, and developing new detection capabilities across highly sensitive and complex environments. You will work closely with research and security teams to identify emerging threats, investigate sophisticated incidents, and generate actionable insights to strengthen detection, response, and overall defensive posture.

Responsibilites

  • Research and exploit network-level vulnerabilities across critical infrastructure environments, including lateral movement techniques and internal network propagation
  • Develop advanced offensive capabilities targeting network protocols, services, and distributed systems, with emphasis on evasion and stealth techniques
  • Conduct deep protocol analysis, reverse engineering, and vulnerability discovery
  • Design and implement production-ready attack components for adversary simulation and red team activities
  • Develop scripts and tooling to support offensive research and automation (Python / low-level languages)
  • Research and implement evasion and bypass techniques against modern security controls, including EDR/NDR and network-based defenses
  • Collaborate with internal research teams to translate offensive concepts into scalable capabilities that enhance detection and defensive strategies
  • Research emerging attack techniques, vulnerabilities, and threat actor methodologies, and apply insights in practice
  • Conduct and support social engineering activities as part of broader adversary simulation scenarios

Requirements

Must Have

  • 5+ years of hands-on experience in Threat Hunting, Incident Response, Detection Engineering, Tier 3 SOC or Security Engineering  - MUST
  • Experience performing hypothesis-driven threat hunting and validating attacker behavior using multiple telemetry sources.
  • Hands-on experience with SIEM, EDR, Identity and Cloud security technologies, including implementation, investigation or detection engineering.
  • Experience conducting deep security investigations, validating attacker behavior, and identifying root cause across multiple telemetry sources
  • Experience with detection engineering (Sigma rules, correlations, etc.)
  • Deep understanding of attacker techniques, threat landscapes, and adversary behavior across endpoint, identity, network, cloud, and application environments
  • Ability to conduct investigations under limited visibility and identify alternative telemetry sources
  • Ability to write scripts for analysis or automation (Python or ect.)
  • Excellent English communication skills (written and verbal)

Nice to Have

  • Familiarity with modern attacker techniques and threat landscapes
  • Experience working with large-scale security datasets
  • Experience with Threat Intelligence platforms
  • Background in on-premise or complex enterprise environments
  • Experience improving SOC maturity (SOC-CMM or similar frameworks)
  • Experience with BAS platforms, Attack Simulation or Purple Team exercises

Apply for this position