Skill diminta
Attention to DetailCommunicationMentoringPresentationTroubleshooting
Deskripsi
Perform penetration testing and security assessments on various technology platforms, including Web Applications, Mobile Applications (Android/iOS), APIs, Desktop Applications, Networks, Infrastructure, and Cloud Environments.
Conduct vulnerability assessments, manual security testing, and exploitation activities to identify and validate security vulnerabilities.
Develop, maintain, and continuously improve penetration testing methodologies, standards, frameworks, procedures, and testing guidelines to ensure consistent and effective security assessment practices.
- Present and communicate penetration testing findings and recommendations to technical teams, management, and other relevant stakeholders.
- Maintain proper documentation, testing evidence, and records of penetration testing activities.
- Keep up to date with emerging cybersecurity threats, vulnerabilities, attack techniques, security research, and penetration testing tools.
- Provide technical guidance, knowledge sharing, and mentoring to junior penetration testers when required.
- Bachelor’s Degree in Computer Science, Cybersecurity, Information Technology, or a related field.
- Minimum 3–5 years of professional experience in Penetration Testing, Vulnerability Assessment, or Security Operations Center.
- Strong knowledge of cybersecurity concepts, security vulnerabilities, and common attack techniques.
- Hands-on experience performing penetration testing on multiple technology platforms.
Experience performing penetration testing within Financial Services, Capital Market, Banking, or other highly regulated industries is an advantage.
- Ability to independently manage penetration testing activities from planning and preparation through testing, reporting, and retesting.
- Strong analytical, problem-solving, and troubleshooting skills with attention to detail.
- Good communication, documentation, and presentation skills, both written and verbal.
- Ability to work independently as well as collaboratively within a Cybersecurity team.
- Relevant cybersecurity certifications such as CEH, CPENT, OSCP, CREST, or equivalent certifications are an advantage.