
Enable job alerts via email!
Generate a tailored resume in minutes
Land an interview and earn more. Learn more
A leading cybersecurity firm in Malaysia is seeking a Cybersecurity Analyst (Penetration Tester) to perform security assessments, conduct OSINT gathering, and execute vulnerability scans. The ideal candidate should have a diploma in Computer Science or related fields, with at least a year’s experience in penetration testing. Responsibilities include assisting with security testing, maintaining documentation, and staying updated on emerging techniques. This role provides an excellent opportunity for career development in a dynamic environment.
Conduct open-source intelligence (OSINT) gathering to identify publicly exposed assets and potential attack surfaces within approved engagement scope.
Perform assigned penetration testing tasks for networks, web applications, systems, and APIs under defined scope.
Execute automated vulnerability scans using approved tools.
Conduct basic manual testing based on documented methodologies (OWASP, MITRE Attack).
Reproduce and validate identified vulnerabilities to confirm exploitability.
Participate in retesting activities after remediation.
Maintain accurate testing notes and evidence during engagements.
Assist in preparing penetration testing reports, including vulnerability descriptions, proof of concept, and ensuring reports are clear, accurate, and aligned with company standards.
Strictly adhere to rules of engagement, scope limitations, and legal requirements.
Follow internal security policies and ethical guidelines.
Escalate critical or unexpected findings to senior team members immediately.
Work closely with senior analyst or partners during assessments.
Support internal teams (SOC, IT, Dev) during vulnerability clarification.
Participate in internal knowledge-sharing sessions and reviews.
Improve technical skills through labs, internal training, and mentorship, staying updated on common vulnerabilities and emerging attack techniques, and preparing for role progression through skill validation and certifications.