Penetration Tester
3 days ago
SGV is the largest professional services firm in the Philippines. In everything we do, we nurture leaders and enable businesses for a better Philippines. This Purpose is our aspirational reason for being that ignites positive change and inclusive growth.
Our multidisciplinary teams work across a full spectrum of services in assurance, tax, strategy and transactions, and consulting. Enabled by data, AI and advanced technology, we help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
At SGV, we develop you with future-focused skills and equip you with world-class experiences. We empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams.
Your Key Responsibilities
- Conduct vulnerability assessments to identify IT infrastructure weaknesses.
- Perform penetration tests to evaluate the impact of potential security breaches.
- Analyze scan results to prioritize threats and vulnerabilities.
- Develop and maintain a vulnerability management program with regular scans.
- Collaborate with teams to create strategies for vulnerability remediation.
- Document findings and provide reports with security improvement recommendations.
- Track and report on vulnerability remediation progress.
- Advise on the implementation of security best practices and controls.
- Stay current with security threats, vulnerabilities, and testing methods.
- Provide mentorship to junior team members on VM and VAPT practices.
- Participate in security incident response with expert analysis.
- Assist in developing security policies and standards for VM and VAPT.
- Lead client meetings to discuss assessment results and security posture.
- Contribute to the enhancement of internal VM and VAPT processes and tools.
To qualify for the role, you must have:
- Bachelor's degree in IT, computer science, computer engineering, management, business administration, or a related field.
- Minimum of two years of relevant experience in security testing.
- Proficiency with security assessment tools (e.g., Burpsuite, SQLmap, nmap, Nessus, Rapid7, Prisma).
- Good understanding of cloud security and modern architecture, with hands-on experience in AWS or Alibaba.
- Familiarity with various operating systems (Windows, Linux, Unix) and web platforms.
- Knowledge of programming languages and frameworks (SQL, C++, JavaScript, Ruby, Python).
- In-depth understanding of OWASP Top 10 and effective communication with development teams.
- Hands-on experience with penetration testing across networks, web applications, social engineering, and physical testing.
- Good understanding of vulnerability assessment, network security, security operations, and software development.
- Experience with web services, distributed systems, or mobile applications.
- Excellent written and verbal technical communication skills.
- Eagerness to learn new techniques, frameworks, and technologies.
- Professional certifications (CISSP, CISA, CEH, OSCP, etc.). Willingness to pursue cybersecurity certifications and external training.
- Ability to manage multiple tasks and projects in a fast-paced environment.
- Experience with SDLC and agile environments for application security testing.
- Skills in developing automated solutions for security testing.
- Knowledge of cloud security, modern architecture (microservices, serverless, automated delivery), and testing in these environments.
- Consulting experience with client interaction.
- Understanding of cryptography, secure software development lifecycle, DevSecOps, and cloud security.
- Hands-on experience with IT security (application security, threat modeling, vulnerability assessment, penetration testing, security operations).
- Ability to juggle many tasks and projects in a fast-moving environment
- Excellent written and verbal technical communication skills
- Has strong project management skills
- 4 years above overall experience
Optionally, you also have
- Relevant professional certification such as CISSP, CISA, CEH, OSCP, or other similar industry recognized certifications
- Ability to juggle many tasks and projects in a fast-moving environment
- Support SDLC and agile environments which application security testing
- Ability to develop automated solutions to execute security testing
- Good understanding of cloud security and modern architecture (microservices, serverless and automated delivery) and testing in these environments
- Experience in working in consulting roles, interacting with clients, third parties or security vendors
- Good understanding of cryptography as applied in security such as SSL and key management
- Good understanding of secure software development lifecycle, DevSecOps, automated software delivery
- Good understanding of cloud security and modern architecture
- Hands on experience with IT security (application security, threat modeling, vulnerability assessment, penetration testing, security operations)
SGV | Building a better working world.
SGV is the largest professional services firm in the Philippines. In everything we do, we nurture leaders and enable businesses for a better Philippines. This Purpose is our aspirational reason for being that ignites positive change and inclusive growth.
Our multidisciplinary teams work across a full spectrum of services in assurance, tax, strategy and transactions, and consulting. Enabled by data, AI and advanced technology, we help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
All in to shape the future with confidence.
SGV & Co. is a member firm of Ernst & Young Global Limited. EY refers to the global organization, and may refer to one or more of the member firms of Ernst & Young Global Limited, each of which is a separate legal entity. Ernst & Young Global Limited, a UK company limited by guarantee, does not provide services to clients.
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets. Fueled by sector insights, a globally connected, multidisciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories. Information about how EY collects and uses personal data and a description of the rights individuals have under data protection legislation are available via EY member firms do not practice law where prohibited by local laws. For more information about our organization, please visit
2024 SyCip Gorres Velayo & Co.
All Rights Reserved.
-
Penetration Tester
3 days ago
Makati City, National Capital Region, Philippines Emapta Full time ₱1,200,000 - ₱2,400,000 per yearEmpowering Careers, Inspiring Growth At Emapta, we don't just build teams-we create communities where people thrive. With a strong global presence and a reputation for partnering with top international companies, we provide world-class opportunities right here at home. Our culture is built on care, collaboration, and continuous learning, empowering...
-
Penetration Tester
3 days ago
Makati City, National Capital Region, Philippines Emapta Global Full time ₱500,000 - ₱1,200,000 per yearEmpowering Careers, Inspiring GrowthAt Emapta, we don't just build teams-we create communities where people thrive. With a strong global presence and a reputation for partnering with top international companies, we provide world-class opportunities right here at home. Our culture is built on care, collaboration, and continuous learning, empowering...
-
Senior Penetration Tester
2 weeks ago
Makati City, National Capital Region, Philippines bluedog Security Monitoring Full time ₱900,000 - ₱1,200,000 per yearWe are a well-established cybersecurity company in Manila with contracts with major local enterprises. We seek a highly experienced, certified Penetration Tester to join our pool of on-site consultants. The ideal candidate will travel to client sites in Metro Manila, perform thorough penetration testing across web, mobile, API, and network environments, and...
-
Penetration Tester
5 days ago
Quezon City, National Capital Region, Philippines Manulife Full time ₱900,000 - ₱1,200,000 per yearAre you looking for a supportive and collaborative workplace with great benefits, strong culture, and clear career development? You've come to the right place.Why choose Manulife?Competitive salary packageHMO on the first day with free dependentsRetirement benefitsMerit IncreasePerformance BonusGlobal network of industry expertsExtensive training...
-
Penetration Tester
5 days ago
Mandaluyong City, National Capital Region, Philippines Vertiv Full timeJoin a High-Performance Culture That Drives Innovation and Excellence At Vertiv, we don't just hire talent—we cultivate leaders who drive innovation and engage teams to push the limits of what's possible. As a global leader in critical digital infrastructure, we are scaling up to meet the demands of AI, data centers, and next-gen technology—and we...
-
Penetration Tester
5 days ago
Mandaluyong City, National Capital Region, Philippines Vertiv Full timeJoin a High-Performance Culture That Drives Innovation and ExcellenceAt Vertiv , we don't just hire talent—we cultivate leaders who drive innovation and engage teams to push the limits of what's possible. As a global leader in critical digital infrastructure , we are scaling up to meet the demands of AI, data centers, and next-gen technology —and we need...
-
Penetration Tester
5 days ago
Marikina City, National Capital Region, Philippines Next Generation Technologies Global Inc. Full time ₱900,000 - ₱1,200,000 per yearJob Description:Conduct and/or support mobile penetration testing on enterprise network assets.Prepare reports that identify technical and procedural findings and provide recommended remediation strategies/solutions.Perform technical (evaluation of technology) and non-technical (evaluation of people and operations) risk and vulnerability assessments of...
-
Penetration Tester
3 days ago
Marikina City, National Capital Region, Philippines Next Generation Technologies Global, Inc. Full time ₱350,000 - ₱500,000 per yearJob Description:Conduct and/or support mobile penetration testing on enterprise network assets.Prepare reports that identify technical and procedural findings and provide recommended remediation strategies/solutions.Perform technical (evaluation of technology) and non-technical (evaluation of people and operations) risk and vulnerability assessments of...
-
Information Security Engineer
5 days ago
Makati City, National Capital Region, Philippines inspiro Full time ₱900,000 - ₱1,200,000 per yearAbout the RoleWe are seeking a highly skilled and detail-orientedPenetration Testerto join ourInformation Security Team. The role involvessimulating cyberattacks,identifying vulnerabilities, andassessing risksto ensure the security of our systems, applications, and infrastructure.This position requires someone who can think like an attacker while working...
-
information security specialist
1 week ago
Mandaluyong City, National Capital Region, Philippines Unilab, Inc. Full time ₱1,200,000 - ₱2,400,000 per yearIt is the spirit of Bayanihan that drives us to continue our legacy of excellence and commitment to care. As an organization, we achieve our successes through good, honest, and persevering hard work - TOGETHER. It is in this way in which our company was built; we progressed as the country's leading Pharmaceutical company, not by sheer luck, but by pure...