Назад
Company hidden
13 часов назад

Senior Penetration Tester (Cybersecurity)

Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Singapore/China
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Penetration Tester (Cybersecurity): Prepare and execute penetration testing projects on assets, services, and applications with an accent on white-box testing methodology, source code review, and vulnerability identification across diverse technologies. Focus on developing novel attack vectors, verifying bugs from bounty programs, and collaborating with engineering teams on remediation strategies.

Singapore, Hong Kong (team across Singapore, Hong Kong, London, Germany, Bucharest). Visa: No sponsorship in EU. Hong Kong requires 2+ years experience and related degree. Singapore/UK: mid-career or above only.

Company

World’s leading provider of online privacy and security services with millions of customers and 700+ team members worldwide.

What you will do

  • Prepare and execute penetration tests on applications, infrastructure, services, and router firmware individually or in distributed teams.
  • Provide expert guidance to engineering teams on vulnerability remediation and verify fixes.
  • Triage bugs from bounty programs and scanners, develop attack vectors.
  • Manage external vendor penetration tests from scoping to remediation.
  • Review technical designs, build automation tools, and mentor team members.
  • Identify workflow inefficiencies and drive improvements.

Requirements

  • Deep expertise in manual source code review, static analysis, fuzzing (Burp Suite, AFL) up to OSCP/OSWE/OSED levels.
  • Reverse engineering binaries, libraries, extensions with debuggers.
  • Scripting in Python, Bash, Golang for PoCs; automation with GitHub Actions.
  • Strong knowledge of TCP/IP, IDS/IPS, firewalls, WAF, cryptography (PGP, SSH, PKI).
  • Experience mentoring and networking knowledge essential.
  • Track record in vulnerability research (CTFs, bug bounties, CVEs) preferred.

Culture & Benefits

  • Inverted pyramid: engineers empowered to make decisions.
  • Open feedback, trust, transparency, and respect for all.
  • Learning through experimentation with safe space for growth.
  • Managers focused on career development for talented engineers.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →