Senior Pentester

Ensign InfoSecurity Lihat semua pekerjaan

  • Selangor
  • Tetap
  • Sepenuh masa
  • 24 hari lepas
Ensign is hiring !Key Responsibilities1. Penetration Testing & Security AssessmentsConduct penetration testing on:Web applications (OWASP Top 10)Mobile applications (iOS / Android)Internal and external networksAPIs and web servicesCloud environments (AWS, Azure, GCP)Perform vulnerability assessments using automated and manual techniques.Simulate real-world attack scenarios including privilege escalation and lateral movement.2. Exploitation & ValidationIdentify and exploit security weaknesses in systems and applications.Develop proof-of-concept (PoC) exploits to validate findings.Assess impact and risk severity of vulnerabilities discovered.3. Reporting & DocumentationPrepare detailed penetration testing reports including:Executive summaryTechnical findingsRisk ratingsRemediation recommendationsPresent findings to technical teams and management.Provide remediation validation (retest) services.4. Tools & TechniquesUtilize industry tools such as:Burp SuiteMetasploitNmapNessus / OpenVASWiresharkSQLmapKali Linux toolsetsDevelop custom scripts (Python, Bash, PowerShell) where necessary.Stay updated on latest attack techniques, CVEs, and threat trends.5. Compliance & StandardsConduct testing aligned with:OWASP Testing GuidePTES (Penetration Testing Execution Standard)NIST frameworksISO 27001 controlsSupport compliance-driven assessments (e.g., PCI-DSS).RequirementsBachelor’s Degree in Cybersecurity, Computer Science, IT, or related field.Experience2–5 years of experience in penetration testing or offensive security.Hands-on experience conducting web and network penetration tests.Experience preparing formal penetration testing reports.(Senior level: 5+ years with leadership or project ownership experience.)

Ensign InfoSecurity