offensive security officer

5 days ago


Taguig, National Capital Region, Philippines Metrobank Full time ₱1,200,000 - ₱2,400,000 per year

Be #InGoodHands with Metrobank

Here at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future and lead a fulfilling career. And with Metrobank's strong heart for the community, you have the chance to give back and make worthwhile contributions to our nation's economic and social development. With Metrobank, a meaningful life is within your reach

Job Summary:

Plan, document test methodologies and perform penetration testing or ethical hacking of network infrastructure, application systems including mobile applications all in a stealthy operation without being detected, in order to identify potential security weaknesses in the system. Collaborate with ITG developers by communicating the back doors/security weaknesses identified and providing inputs in correcting the security flaws. Establish red team procedures in conducting red team exercises.

Specific Duties & Responsibilities:

Perform threat analysis, wireless network assessments, and social-engineering assessments including physical security assessments to develop test scenarios.

Conduct network and system security scans. Perform manual and automated hacking techniques on network infrastructure, computer systems, web and mobile applications. Search for weaknesses and recommend corrective measures to prevent potential attacks.

Evade intrusion prevention systems, intrusion detection systems, firewalls, and honeypots to ensure they are effective and reinforced when necessary.

Identify methods and entry points that attackers may use to exploit vulnerabilities or weaknesses

Develop abuse cases and testing methods to identify vulnerabilities in business logic. Develop/update scripts/tools to enhance penetration testing processes.

Research, evaluate, document and discuss findings with IT teams and management. Collaborate with IT teams to remediate the vulnerabilities.

Effectively communicate findings and remediation strategy to stakeholders. Develop comprehensive and accurate reports and presentations for both technical and executive audiences.

Review, verify and provide feedback on information security fixes.

Establish improvements for existing security services, including hardware, software, policies and procedures.

Observe business continuity and its operations when performing testing (i.e. minimize downtime and loss of employee productivity).

Stay updated on the latest malware and security threats.

Assist in cyber security investigations.

Recognize the safe utilization of attacker tools, tactics, and procedures.

Keep abreast with the latest attack vectors, hacking methods, ethical hacking/pen testing techniques and new penetration testing tools.

Analyze security policies and configurations for effectiveness against an attack and make necessary suggestions on security policy and configuration improvements.

Proactively works with the Department Head in implementing programs for the continuous improvement of the bank's information security plans and strategies.

Perform other information security governance, risk and compliance related duties and responsibilities as directed by the Department Head.

Qualifications

Graduate of any college degree in Computer Science or Information Security, Cybersecurity or related technical field of expertise.

Strong understanding of vulnerabilities, common attack vectors and has attacker mindset: ability to think about creative threats and attack vectors.

Full knowledge and understanding of OWASP Top 10 Application Security best practices.

Certification may include SANS GPEN, GWAP, OSCP, CEH or equivalent.

Technical knowledge and experience in ethical hacking.

Advanced computer skills – extensive computer skills and an understanding of networking fundamental, including forensics, reverse engineering, web applications, databases, and wireless technologies.

Scripting and programming –scripting skills to infiltrate any system.

Clear understanding of how computer security breaches can disrupt business, including the financial implications.

Highly analytical with exceptional problem-solving skills.

Result-orientated in terms of disposition for corrective action to drive the remediation to reduce the risk exposure of the bank.

Have good teamwork and collaboration skills: a good team player with the ability to lead security initiatives

Good written and verbal communication skills: to effectively articulate and explain complex security topics in simple language and easy to understand concepts.

Possess excellent time management skills, thrive in a fast-paced demanding environment

Be a self-managed, self-starter with good organizational skills.


  • Security Engineer

    2 weeks ago


    Taguig, National Capital Region, Philippines PeopleMatter PH Full time ₱900,000 - ₱1,200,000 per year

    Job description:About the RoleWe are looking for a skilled Web & API Security Engineer with strong offensive security expertise. In this hands-on role, you will test modern web applications and APIs to find vulnerabilities, simulate real-world attacks, and work with engineering teams to improve our platform's security.What You'll DoPerform manual security...

  • Security Engineer

    2 weeks ago


    Taguig, National Capital Region, Philippines Robert Walters Full time $70,000 - $120,000 per year

    A leading financial institution is seeking a Security Engineer (SIEM) to join their expert cybersecurity team in Taguig.This is an exceptional opportunity for you to play a pivotal role in safeguarding digital assets, ensuring robust threat detection, and supporting the continuous evolution of security monitoring capabilities. The organisation offers a...


  • Taguig, National Capital Region, Philippines Metrobank Full time ₱120,000 - ₱180,000 per year

    Be #InGoodHands with MetrobankHere at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future...


  • Taguig, National Capital Region, Philippines Metrobank Full time ₱1,200,000 - ₱2,400,000 per year

    Be #InGoodHands with Metrobank Here at Metrobank, we don't simply hire employees-we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your...


  • Taguig, National Capital Region, Philippines UPTC Full time $70,000 - $120,000 per year

    Job Qualifications:Bachelor's degree in Computer Science, Information Security, or a related technical fieldAt least 3 years of experience as a Security Consultant or Risk Officer.Solid understanding of regulatory compliance and its application to security and privacy (non-negotiable).Strong knowledge of network and application security risks and mitigation...

  • Penetration Tester

    1 week ago


    Taguig, National Capital Region, Philippines Yondu, Inc. Full time ₱900,000 - ₱1,200,000 per year

    Penetration Tester (VAPT)*THIS IS FOR PHILIPPINE RESIDENTS / FILIPINO APPLICANTS ONLY*GENERAL RESPONSIBILITIES:The Penetration Tester conducts penetration testing and vulnerability assessments to identify potential security risks in applications, networks, and IT infrastructure. The role involves collaborating with teams to remediate identified...

  • Head Security Guard

    7 days ago


    Taguig, National Capital Region, Philippines Digiplus Interactive Corp. Full time ₱420,000 per year

    About DigiPlus Interactive Corp.DigiPlus Interactive Corp. pioneered digital entertainment in the Philippines. It introduced leading platforms BingoPlus and ArenaPlus, widely known for their engaging experiences in interactive gaming and sports entertainment. DigiPlus also operates GameZone, with more to come.For more information, visit: Lead the security...


  • Taguig, National Capital Region, Philippines Carelon Global Solutions Full time ₱900,000 - ₱1,200,000 per year

    Overview: As the Security and Safety Specialist, you will play a crucial role in ensuring the safety and security of our site, overseeing our local security operations command center, and managing our electronic security systems. You will also be responsible for overseeing emergency management activities and ensuring our operations adhere to Elevance Health...


  • Taguig, National Capital Region, Philippines Philtech Inc. Full time ₱900,000 - ₱1,200,000 per year

    RequirementsShould have at minimum 3-year IT work experience primarily in Security Operations.Willing to work on Night Shift and On-call Requirement:3+ years working in a multinational IT Services/IT Enabled Services industry preferably having to work in a Retail Environment.A solid understanding of the technical aspects of Windows, UNIX, Security...

  • Penetration Tester 3

    2 weeks ago


    Taguig, National Capital Region, Philippines Asurion Full time ₱900,000 - ₱1,200,000 per year

    Application Penetration Tester 3Application Penetration Tester 3The Application Penetration Tester will assist Asurion in developing secure products by providing best-in-class application security penetration testing and security assessment services to the product development organization, while passionately pursuing personal and organizational excellence in...