

Senior Penetration Tester
YONDU INC.
- Taguig, Philippines7th Floor, Fort Bonifacio, Taguig, Metro Manila, PhilippinesTaguigMetro ManilaPhilippinesPhilippines
- Penuh waktuFULL_TIME
Lowongan dipasang 19 days ago dan batas waktu lamaran adalah 13 Nov
Rekruter terakhir aktif 2 days ago
2025-09-16T02:30:49.026281+00:002025-11-13T16:00:00+00:00Deskripsi Pekerjaan
General Responsibilities:
The Senior Penetration Tester is responsible for conducting thorough security assessments, managing IT infrastructure for ongoing vulnerability scans, and leading large-scale projects. The role involves identifying and addressing critical flaws in systems and applications, presenting comprehensive reports, and assisting clients in achieving their security goals.
Duties and Responsibilities:
- Serve as a penetration tester and security analyst for clients and the company.
- Analyze vulnerabilities of the target systems and provide guidance.
- Performs continuous scanning for company's systems, infrastructure, and network to identify vulnerabilities.
- Manages and schedules all company's IT systems and infrastructure for Vulnerability Scanning
- Acts as a subject matter expert in vulnerability management and penetration testing (VAPT)
- Leads large-scale information security projects, including the implementation and delivery of new infrastructure security scanning capabilities
- Partners with teams to align technology implementation processes and reduce vulnerabilities
- Supports the continuous improvement of the vulnerability management program initiatives, process, and technology integration
- Prepares and presents daily, weekly, monthly, quarterly, and annual reports, as required by the Immediate Superior
- Conducts comprehensive penetration testing activities to identify potential vulnerabilities and exploit them within ethical boundaries
- Analyzes and reports findings from penetration testing assessments, including recommended remediation actions
- Collaborates with IT teams to implement necessary security measures and safeguards based on identified vulnerabilities
- Stays up to date with emerging threats and techniques related to penetration testing.
- Help clients achieve their information security goals by providing recommendations, assistance, and participation in (but not limited to) vulnerability assessments, penetration tests, security improvement initiatives, security management programs/processes, policies, technical implementations, compliance with standards or specific frameworks, research, technology reviews, etc.
- Handle Vulnerability Assessment and Penetration Testing (VAPT) Projects as Senior Engineer. Conducted vulnerability analysis and penetration testing, presented risk ranking and mitigation recommendations, crafted executive reports, and presented results to stakeholders.
- Internal security analysis tasks and knowledge transfers: on-demand with team and other departments. Perform formal penetration tests on web-based applications, networks, and computer systems.
- Conduct physical security assessments of servers, systems, and network devices.
- Work on improvements for security services, including continuously enhancing existing methodology material and supporting assets.
- Research, document, and discuss security findings with management and IT teams.
- Employ social engineering to uncover security holes (e.g., poor user security practices or password policies).
- Probe for vulnerabilities in web applications, fat/thin client applications, and standard applications.
- Pinpoint methods that attackers could use to exploit weaknesses and logic flaws.
- Write and present a comprehensive Vulnerability Assessment.
- Manually validate report findings to reduce false positives.
- Identify critical flaws in applications and systems that cyber attackers could exploit.
Kualifikasi Minimum
- Education – Bachelor’s degree/Diploma in Computer Science, Cybersecurity, Information Technology, or any related field.
- 4-5 years of experience in VAPT
- Relevant cybersecurity certifications, such as Certified Ethical Hacker (CEH), Certified Threat Intelligence Analyst (CTIA), Computer Hacking Forensics Investigator (CHFI), (CISSP), Certified Information Security Manager (CISM), or Certified Information Systems Manager (CISA) and other technical relevant red/blue certifications.
- Related Work Experience - Proven hands-on experience in penetration testing, vulnerability assessment, and information security.
- Experience in managing and leading teams, preferably in the context of VAPT projects.
Fasilitas dan Tunjangan
Paid Bereavement/Family Leave
Medical / Health Insurance
Life Insurance
Lisensi dan Sertifikat
- Certified Ethical Hacker
Jurusan yang Diminati
- Information Technology
- Computer Engineering
- Computer Technology
Ringkasan Perkerjaan
- Tingkat Posisi
- Mid-Senior Level Manager
- Spesialisasi
- IT and Software
- Persyaratan tingkat pendidikan
- Lulus program Sarjana (S1)
- Alamat Kantor
- Panorama Tower 34th Street, Taguig, 1634 Metro Manila
Agar merasa aman saat melamar: carilah ikon verifikasi dan selalu lakukan riset terhadap Perusahaan yang Anda lamar. Hindari dan laporkan situasi dimana Perusahaan membutuhkan bayaran dalam proses rekrutmen mereka.