Enable job alerts via email!

Offensive Security Associate Manager

Pt. Alto Network

Daerah Khusus Ibukota Jakarta

On-site

IDR 250.000.000 - 350.000.000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A prominent payment infrastructure firm in Indonesia is seeking an Offensive Security Associate Manager to lead their security operations. The role involves managing a team, conducting penetration tests, and ensuring security practices are up to date. The ideal candidate should have at least 3 years of experience in offensive security and relevant certifications. This position offers a competitive salary along with opportunities for professional development.

Qualifications

  • Minimum of 3 years of experience in offensive security roles.
  • At least 2 years in a leadership or supervisory position.
  • Offensive Security Certifications like OSCP or OSCE are highly desired.

Responsibilities

  • Lead and manage a team of offensive security professionals.
  • Plan and execute offensive security operations.
  • Communicate findings to stakeholders.
  • Assess and improve security practices.

Skills

Penetration Testing
Red Teaming
Vulnerability Assessment
Exploit Development
Scripting and Programming
Regulatory Compliance
Cybersecurity

Education

Bachelor's degree in computer science or information security
Master's degree preferred

Tools

Metasploit
Burp Suite
Nmap
MobSF
Drozer
Job description
COMPANY DESCRIPTION

ALTO Network is a leading payment infrastructure provider as well as the pioneer in payment solution by always bringing the most innovative and impactful technology to connect merchants or financial institutions with their customers to grow their businesses nationwide and beyond.

Designation

Offensive Security Associate Manager

RESPONSIBILITIES

Role Purpose

Leading offensive security operations, including penetration testing, red teaming, and vulnerability assessments.

Key Responsibilities
  • Lead and manage a team of offensive security professionals, including penetration testers, red team members, and vulnerability analysts.
  • Provide mentorship, training, and performance feedback to team members.
  • Collaborate with cross-functional teams, including IT, development, and operations, to prioritize and remediate security vulnerabilities identified through offensive security testing.
  • Communicate findings and recommendations to technical and non-technical stakeholders.
  • Plan, coordinate, and execute offensive security operations, including penetration tests, red team exercises, and vulnerability assessments, to identify and exploit security weaknesses in our systems, networks, and applications.
  • Continuously assess and improve offensive security practices, methodologies, and tools based on industry trends, lessons learned from previous engagements, and feedback from stakeholders.
  • Risk/Findings audit to be fulfilled. Ensure staff are informed and trained to support good corporate governance in their specific areas of work.
Knowledge
  • Penetration Testing: In-depth knowledge of penetration testing methodologies, including reconnaissance, enumeration, exploitation, post-exploitation, and reporting.
  • Red Teaming: Understanding of red teaming techniques and tactics to simulate real-world cyber attacks and assess an organization's security posture.
  • Vulnerability Assessment: Proficiency in conducting vulnerability assessments across various attack surfaces, including networks, systems, applications, and cloud environments.
  • Vulnerability Assessment: Proficiency in conducting vulnerability assessments across various attack surfaces, including networks, systems, applications, and cloud environments.
  • Exploit Development: Familiarity with exploit development techniques and methodologies to identify and exploit security vulnerabilities.
  • Scripting and Programming: Proficiency in scripting and programming languages such as Python, PowerShell, or Bash for automation, tool development, and exploit scripting.
  • Regulatory Compliance: Understanding of relevant laws, regulations, and industry standards related to offensive security testing, including legal and ethical considerations.
  • Cybersecurity: Knowledge of cybersecurity principles, practices, technologies, and regulatory requirements.
QUALIFICATIONS
Technical
  • Penetration tests, vulnerability assessments, and security audits (VAPT) Red teaming exercises and adversarial simulation techniques.
  • Metasploit , Burp Suite, Nmap Scripting languages (e.g., Python, PowerShell) MobSF (Mobile Security Framework) Drozer OWASP Mobile Security Testing Guide (MSTG)
Non-technical
  • Collaborative Leadership
  • Time Management Skills
  • Vision and Strategy
  • Conflict Management Skills
  • Emotional Resilience
OTHER INFORMATION

Experience in leading and managing offensive security operations, including penetration tests, red team exercises, and vulnerability assessments.Experience with threat intelligence analysis, security research, and incident response support.Minimum of 3 years of experience in offensive security roles, with at least 2 years in a leadership or supervisory position.

Bachelor's degree in computer science, information security, or a related field. Master's degree preferred. Offensive Security Certifications: Offensive Security Certified Professional (OSCP), Offensive Security Certified Expert (OSCE), or similar certifications highly desired.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.