Назад
Company hidden
обновлено 6 дней назад

Penetration Testing Analyst

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Philippines
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Penetration Testing Analyst: Performing hands-on security testing of applications, infrastructure, and systems with an accent on web, API, and mobile security. Focus on identifying vulnerabilities, producing structured risk reports, and supporting adversary simulation exercises.

Location: Taguig City, Philippines (Onsite)

Company

hirify.global is a leading international financial services organization providing insurance, wealth, and asset management solutions to individuals and corporate clients worldwide.

What you will do

  • Perform web, API, mobile, and infrastructure penetration testing across enterprise applications.
  • Identify, exploit, and validate security vulnerabilities using manual testing techniques.
  • Produce clear, structured reports detailing vulnerabilities, business impact, and remediation recommendations.
  • Research new vulnerabilities, exploits, and attack techniques to enhance testing coverage.
  • Support Red Team and adversary simulation exercises, including reconnaissance and attack surface mapping.
  • Collaborate with senior team members to understand real-world attacker behavior.

Requirements

  • Hands-on experience in web application (OWASP Top 10), API, and network infrastructure testing.
  • Strong understanding of authentication, session management, and injection vulnerabilities.
  • Proficiency with security tools such as Burp Suite, Nmap, or sqlmap.
  • Ability to perform manual testing beyond automated scanning.
  • Strong documentation and reporting skills with a focus on clear risk articulation.
  • Bachelor's degree in Computer Science, Information Security, or a related field.

Nice to have

  • Certifications such as OSCP, OSWA, CISSP, or CompTIA.
  • Foundational understanding of adversary simulation concepts and attack lifecycles.
  • Interest in developing Red Team and offensive security capabilities.

Culture & Benefits

  • Annual bonus plan based on company and individual performance.
  • 100% private health insurance for employees and 50% contribution for family members.
  • 22 days annual leave, increasing to 25 days based on service.
  • Fitness reimbursement and wellness programs.
  • Study assistance program including support for Master's degrees.
  • Defined contribution pension scheme and professional development platforms.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →