Get more replies from employers
Send a job-specific resume in minutes.
Ensign InfoSecurity in Selangor, Malaysia is seeking a skilled Penetration Tester to conduct security assessments and penetration tests on a variety of applications and networks. The ideal candidate will have a strong background in cybersecurity along with hands-on experience with penetration testing tools and techniques.
Applicants must hold a Bachelor’s degree and possess between 2–5 years of relevant experience. Senior candidates with over 5 years are encouraged to apply, as leadership experience will be valued.
Penetration Testing & Security Assessments – conduct penetration testing on web applications (OWASP Top 10), mobile applications (iOS/Android), internal and external networks, APIs and web services, cloud environments (AWS, Azure, GCP). Perform vulnerability assessments using automated and manual techniques. Simulate real‑world attack scenarios, including privilege escalation and lateral movement.
Exploitation & Validation – identify and exploit security weaknesses in systems and applications. Develop proof‑of‑concept exploits to validate findings. Assess the impact and risk severity of vulnerabilities discovered.
Reporting & Documentation – prepare detailed penetration testing reports, including executive summary, technical findings, risk ratings and remediation recommendations. Present findings to technical teams and management. Provide remediation validation (re‑test) services.
Tools & Techniques – utilize industry tools such as Burp Suite, Metasploit, Nmap, Nessus/OpenVAS, Wireshark, SQLmap, Kali Linux toolsets. Develop custom scripts (Python, Bash, PowerShell) where necessary. Stay updated on latest attack techniques, CVEs and threat trends.
Compliance & Standards – conduct testing aligned with OWASP Testing Guide, PTES, NIST frameworks, ISO 27001 controls. Support compliance‑driven assessments such as PCI‑DSS.
Bachelor’s degree in Cybersecurity, Computer Science, IT or related field.
2–5 years of experience in penetration testing or offensive security.
Hands‑on experience conducting web and network penetration tests.
Experience preparing formal penetration testing reports.
Senior level: 5+ years with leadership or project ownership experience.