Person

Jubilian Ho Hong Yi

Penetration tester, Ensign InfoSecurity (Singapore)

Rising Star · 2026

The work the panel recognised

The Rising Star category honours people early in a career who already make defenders elsewhere better. Ho fits that brief. As a penetration tester at Ensign InfoSecurity, he spends his time finding the flaws that matter before an attacker does, across vulnerability assessment, source code review and exploit development. The OSCP behind his name is an examined, hands-on certification, so it stands for demonstrated practice rather than a title.

His Black Hat Europe 2023 Arsenal session on malicious NFTs turned that practice outward. He walked an international audience through how the Web3 stack gets abused, then translated the findings into plain guidance: check that a site is legitimate before connecting a wallet, treat free or promotional NFTs with suspicion, keep data hygiene tight in blockchain development. Sharing a method openly, so others can defend against it, is exactly the habit the category is meant to surface.

Bringing others in

Ho also mentors people trying to break into security, the part of the work that does not show up on a CV. A field that needs more defenders is built one conversation at a time, and the people who give that time quietly are the ones a Rising Star award exists to find. The panel judged the cyber security record against the published criteria, and that is what this page records.

FAQ

Jubilian Ho Hong Yi, in brief

What did Jubilian Ho Hong Yi win at the Cyber Security Awards?

Jubilian Ho Hong Yi was named Rising Star in Cyber Security at the 2026 Cyber Security Awards, the individual category that honours people early in a career who already raise the standard for defenders around them.

What does Jubilian Ho Hong Yi do?

He is a penetration tester at Ensign InfoSecurity in Singapore, holding the OSCP certification. His work spans vulnerability assessment, source code review and exploit development, finding flaws before attackers can use them.

What did he present at Black Hat Europe?

At Black Hat Europe 2023 Arsenal he presented on malicious NFTs, showing how attackers abuse the Web3 stack and giving practical guidance on verifying sites, treating free NFTs with caution, and keeping data hygiene tight in blockchain development.

Can a place at the Cyber Security Awards be bought?

No. The Cyber Security Awards are judged on merit. Recognition cannot be purchased, sponsored into existence, or traded for. Every winner earns the citation on the strength of their work.