Application Penetration Tester 3

3 weeks ago


Taguig, National Capital Region, Philippines Asurion Full time

The Application Penetration Tester will assist Asurion in developing truly secure products by providing best-in-class application security penetration testing and security assessment services to the product development organization, while passionately pursuing personal and organizational excellence in the field of application/product security.

Responsibilities:

  1. Perform in-depth and full-spectrum application and system penetration tests of internally developed products and enterprise systems.
  2. Identify security risks within applications, network infrastructure and security controls.
  3. Review product and open-source code for the purpose of assessing security and determining weaknesses / vulnerabilities.
  4. In conjunction with application security engineers and product development staff, assist in building threat models of internally developed products and systems for the purposes of efficiency in penetration testing and red-team efforts.
  5. Build and maintain positive and productive working relationships with product development teams and individuals.
  6. Develop security assessment scripts and frameworks and assist in efforts to automate security testing and assessment activities.
  7. Mentor security champions with respect to penetration testing techniques, vulnerability research, and red-team tactics.
  8. Provide assistance in response to product security incidents where application / product security expertise is required.
  9. Participate in blameless postmortems and retrospectives in effort to improve security of products / systems.
  10. Continuously learn and keep abreast of the latest technical developments in the security space.
  11. Perform research into and present relevant security technology, practices, and threats.
  12. Work closely with a small team of application security and penetration testing staff, in conjunction with product development, to ensure company products and services withstand all foreseen and reasonable attacks.

Requirements:

  1. BS or MS in Computer Science or Engineering.
  2. Scripting and programming experience (Python, Java, .Net).
  3. Experience with security testing tools, such as Metasploit, Burp Suite, Fiddler, Wireshark, etc.
  4. Hands-on, in-depth experience in application penetration testing and/or red-team activities in support of product development and enterprise goals.
  5. Penetration testing experience on mobile platforms (Android, iOS).
  6. Experience in software engineering / development.
  7. Knowledge of open security standards such as OWASP ASVS, NIST.
  8. In-depth knowledge of application security vulnerabilities and best practices.
  9. In-depth knowledge of network security, public cloud security (particularly AWS), PKI, and cryptography.
  10. Strong analytical and problem-solving skills.
  11. Ability to describe vulnerability findings to non-technical professionals.
  12. Excellent communication (oral, written, presentation) skills.
  13. GWAPT, CPT, OSCP, CEH, GMOB, GPEN certifications preferred.
  14. Experience in reverse engineering and tools (IDA Pro, Immunity, Windbg, gdb) desirable.
  15. Track record in vulnerability research and CVE assignments highly desirable.
  16. Experience presenting at major security conferences is a plus.
  17. This position may require some weekend and evening assignments as well as availability during off-hours for participation in scheduled and unscheduled activities.
#J-18808-Ljbffr
  • Penetration Tester

    2 weeks ago


    Taguig, National Capital Region, Philippines Nityo Infotech Full time

    The RequirementsMinimum Criteria:Education: A bachelor's degree in a related field such as computer science, information security, or cybersecurity is commonly preferred, but not always mandatory. Relevant industry experience can compensate for formal education requirements.Technical Knowledge: A strong understanding of web technologies, programming...

  • Penetration Tester

    1 day ago


    Taguig, National Capital Region, Philippines Nityo Infotech Full time

    The RequirementsMinimum Criteria:Education: A bachelor's degree in a related field such as computer science, information security, or cybersecurity is commonly preferred, but not always mandatory. Relevant industry experience can compensate for formal education requirements.Technical Knowledge: A strong understanding of web technologies, programming...


  • Taguig, National Capital Region, Philippines Willis Towers Watson Full time

    A penetration tester is responsible for assessing the security of web applications and its underlying infrastructure to identify vulnerabilities and weaknesses that could be exploited by attackers. Their role involves conducting thorough assessments and penetration tests to uncover potential security risks and provide recommendations for mitigation.The role...

  • Penetration Tester

    2 days ago


    Taguig, National Capital Region, Philippines beBee Careers Full time

    About the Position: We are seeking a highly skilled and experienced Penetration Tester to join our team. As a Penetration Tester, you will play a key role in simulating cyber attacks on our systems and networks to identify vulnerabilities and weaknesses.Duties and Responsibilities: The successful candidate will be responsible for performing penetration...


  • Taguig, National Capital Region, Philippines Nityo Infotech Full time

    Minimum Criteria:-- Education: A bachelor's degree in a related field such as computer science, information security, or cybersecurity is commonly preferred, but not always mandatory. Relevant industry experience can compensate for formal education requirements.-- Technical Knowledge: A strong understanding of web technologies, programming languages (e.g.,...


  • Taguig, National Capital Region, Philippines Nityo Infotech Full time

    About the Role:We are seeking an experienced Web Application Penetration Tester to join our cybersecurity team at Nityo Infotech. This individual will be responsible for designing and executing comprehensive penetration tests to identify vulnerabilities in web applications. The successful candidate will have a deep understanding of web application security,...


  • Taguig, National Capital Region, Philippines GSS PH Full time

    Job Summary:GSS PH is seeking an experienced Penetration Tester to join our team. The successful candidate will have a proven track record of identifying vulnerabilities in complex systems and providing effective remediation strategies.About Us:GSS PH is a leading provider of cybersecurity services, committed to delivering exceptional results to our clients....


  • Taguig, National Capital Region, Philippines Willis Towers Watson Full time

    We are seeking a Penetration Tester Professional to join our team at Willis Towers Watson. As a key member of our Penetration Testing team, you will be responsible for identifying security vulnerabilities in our web applications and infrastructure.ResponsibilitiesConduct thorough assessments of web applications and infrastructure to identify security...


  • Taguig, National Capital Region, Philippines Asurion Full time

    Product Security ExpertiseWe are seeking an experienced Application Penetration Tester to join our team at Asurion. This individual will contribute to the development of secure products by delivering high-quality application security penetration testing and security assessment services. The role requires expertise in identifying security risks and...

  • Penetration Tester

    1 day ago


    Taguig, National Capital Region, Philippines beBee Careers Full time

    About the Role:This is an exciting opportunity for a skilled Penetration Tester to join our team. You will be responsible for identifying and exploiting vulnerabilities in our clients' systems.Your Key Tasks:Conduct penetration testing engagements to simulate real-world attacksDevelop and maintain relationships with clients to ensure their security needs are...