Security Engineer - Offensive Security

Thrive

Capas

Hybrid

PHP 450,000 - 750,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Thrive, a rapidly growing technology solutions provider in the Philippines, is seeking a Security Engineer to join the Offensive Security team. You will own vulnerability management, perform penetration tests, write professional reports, and deliver insights to clients.

You will collaborate with internal teams, stay updated on industry best practices, and help remediation efforts. Strong analytical skills and ability to communicate complex security concepts to non-technical stakeholders are

Qualifications

  • Solid understanding of networks, operating systems, and security best practices.
  • Familiarity with cybersecurity threats, incident response standards and procedures.
  • Ability to translate security findings to non-technical stakeholders.
  • Demonstrated passion for cybersecurity and good security practices.
  • Knowledge of vulnerability management and pentesting methodologies.

Responsibilities

  • Execute and analyze vulnerability scans and determine remediation steps.
  • Perform Penetration Tests (manual and automated), write reports and deliver to clients.
  • Lead client meetings with expert guidance and remediation recommendations.
  • Collaborate with clients to align remediation with business outcomes.
  • Maintain security process documentation and generate automated stakeholder reports.
  • Stay updated on security events and emerging attack techniques.

Skills

Penetration testing
Vulnerability assessment
Security analysis
Network security
Incident response
Threat detection
Security reporting
Communication skills
Python

Tools

Burp Suite
Metasploit Framework
Caido

Job description

About Us

Thrive is a rapidly growing technology solutions provider focusing upon Cloud, Cyber Security, Networking, Disaster Recovery and Managed Services. Our corporate culture, engineering talent, customer‑centric approach, and focus upon "next generation" services help us stand out amongst our peers. Thrive is on the look‑out for individuals who don't view their weekdays spent at "a job", but rather look to develop valuable skills that ignite their passion and lead to a CAREER. If you're attracted to a "work hard, play hard" environment, seeking the guidance, training and experience necessary to build a lucrative career, then welcome to THRIVE!!

Position Overview

Thrive is looking for a security engineer to join our Offensive Security team. This team focuses on advanced vulnerability management and Pentesting as a service and delivers strategic security insights to clients based on the findings of these services. This role will own the delivery of these services ensuring client satisfaction, timely and complete service delivery. The Security Engineer will work closely with the team to ensure the services are being delivered to clients effectively, and stay on top of industry's best practices as well as new features available from the tools. Additionally, the Security Engineer will coordinate with internal teams at Thrive and the primary contact for these services for clients. This role will meet with customers and explain the vulnerabilities found and/or exploited, and assist with steps for remediation. This Engineering position requires attention to detail and a commitment to maintaining high security standards and fostering client trust in our cybersecurity capabilities.

Primary Responsibilities
  • Execution and analysis of vulnerability scans and determining remediation steps
  • Execution and analysis of Penetration Tests (manual and autonomous), writing reports, and delivery of reports to client stake holders.
  • Lead client meetings, offering expert advice and guidance as needed.
  • Collaborate with clients to understand their business needs and requirements to best align remediation requirements to business outcomes.
  • Creation and ongoing upkeep of materials documenting our security processes, procedures, and technologies, along with the generation of automated reports for relevant stakeholders.
  • Update client Security presentations and discuss findings with our clients.
  • Maintain a leading edge on security events and techniques to keep our clients aware of new threats and attack techniques.
  • Other duties as required.
Requirements
  • Solid understanding of network protocols, operating systems, application layer protocols, and security best practices.
  • Understanding cybersecurity threats, and experience with incident response standards and procedures.
  • Ability to communicate security information to non-technical people.
  • Has a passion for Cyber Security.
  • Demonstrates comprehension of good security practices.
  • Knowledge of risk assessment tools, technologies and methods.
  • Knowledge of penetration testing methodologies, frameworks, and tools.
  • Ability to analyze a large amount of data from various sources and use this information to solve complex problems and make good decisions.
  • Must be able to work effectively in a team environment and collaborate within the team and other stakeholders.
  • Excellent Written and Verbal Communication Skills.
  • Computer Networking & Security Vulnerability Discovery and Analysis
  • Operating System Internals Familiarity with TCP/IP network protocols, application layer protocols (e.g., HTTP, SMTP, DNS, etc.).
  • 3-5 years of experience executing penetration tests, writing reports and delivering report debriefs to clients
  • Knowledge of common Windows and Linux/Unix system calls and APIs
  • Working knowledge of pentesting tools, such as Burpsuite, Metaspliot framework, Caido
  • Knowledge of programming and/or scripting languages (i.e. Python)
  • One or more of the following certifications or other relevant certifications: eJPT, PJPT, PenTest+, OSCP, GPEN, PNPT, CEH, Security+
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer - Remediation
Security Engineer - Remediation

Thrive • Capas

Hybrid
PHP 700,000 - 1,100,000
Security Engineer - GRC
Security Engineer - GRC

Thrive • Mabalacat

On-site
PHP 600,000 - 900,000
Offensive Security Engineer: Penetration Testing Lead
Offensive Security Engineer: Penetration Testing Lead

Thrive • Capas

Hybrid
PHP 450,000 - 750,000
Security Engineer - Remediation (Vulnerability Response)
Security Engineer - Remediation (Vulnerability Response)

Thrive • Capas

Hybrid
PHP 700,000 - 1,100,000
Security Engineer - GRC
Security Engineer - GRC

Thrive • Capas

Hybrid
PHP 500,000 - 800,000
Security Vulnerability and Penetration Testing Engineer
Security Vulnerability and Penetration Testing Engineer

HRTX • Philippines

On-site
PHP 1,200,000 - 1,800,000
Junior Cyber Security Engineer
Junior Cyber Security Engineer

Dormont Manufacturing Co • Philippines

On-site
PHP 420,000 - 620,000
Systems Engineer
Systems Engineer

Thrive • Morong

On-site
PHP 300,000 - 420,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Morgan McKinley • Philippines

On-site
PHP 1,200,000 - 2,400,000
Vulnerability Analyst
Vulnerability Analyst

HRTX • Philippines

On-site
PHP 446,000 - 1,004,000