Senior Penetration Testing Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Penetration Testing Analyst (Cybersecurity): Identifying and exploiting vulnerabilities within client environments by applying information security threat intelligence with an accent on application security (web, mobile, API) and network security. Focus on conducting application security assessments using exploitation tools and delivering vulnerability information to clients in professional security assessment reports.
Location: Japan / Thailand / Philippines
Company
is a global leader and innovator of advanced security solutions for defeating cyberattacks.
What you will do
- Conduct application security assessments (web, mobile, API, etc.) using off-the-shelf or internally developed exploitation tools to execute manual testing for advanced attacks OR network penetration testing assessments (external pen test, internal pen test, etc.).
- Produce and deliver vulnerability and exploit information to clients in the form of a professional security assessment report.
- Perform proactive research to identify and understand new threats, vulnerabilities, and exploits.
- Conduct exploitation testing using off-the-shelf or self-developed exploitation tools and document findings for client remediation.
- Technically help and influence junior teammates to grow together.
- Lead our security services as a service owner.
Requirements
- Minimum of 5 years of experience with web application or penetration testing.
- Minimum of 5 years of experience with at least one of the following: Nmap, Metasploit, Kali Linux, Burp Suite.
- Native-level Japanese language skills (At minimum, business-level Japanese language skills are required)
Nice to have
- Offensive certifications such as GPEN, GWAPT, OSCP, OSEP, OSWE, OSWP etc.
- Understanding of TCP/IP networking at a technical level.
- Bachelor of Science degree in Computer Science, Computer Engineering, Electrical Engineering, or a related technical field; or equivalent professional experience.
- Experience with various application attack vectors, security test processes and strong knowledge of common vulnerabilities (i.e. OWASP Top 10).
- Business-level English language skills.
Culture & Benefits
- operates a remote-first working model, making remote work the primary option for most employees.
- Our people – we innovate and create, all of which are accompanied by a great sense of fun and team spirit.
- Employee-led diversity and inclusion networks that build community and provide education and advocacy.
- Annual charity and fundraising initiatives and volunteer days for employees to support local communities.
- Global employee sustainability initiatives to reduce our environmental footprint.
- Global wellbeing days for employees to relax and recharge.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →