Get more replies from employers
Send a job-specific resume in minutes.
Hitachi Digital Payment Solutions Philippines Inc. is seeking a VAPT Engineer to perform vulnerability assessments and penetration testing across web, mobile, APIs, and cloud environments. You will conduct manual and automated testing, document findings, and collaborate with DevOps to validate fixes.
The role is based in Makati, with a focus on securing digital payment platforms. Candidates should have 3+ years in vulnerability analysis and security testing, strong knowledge of OWASP Top 10, and
Cybersecurity
We are looking for a highly motivated and skilled VAPT Engineer to join our growing cybersecurity team. The ideal candidate will be responsible for identifying security vulnerabilities across web applications, mobile applications, APIs, networks, and infrastructure through comprehensive vulnerability assessments and penetration testing.
If you are passionate about ethical hacking, offensive security, and helping organizations strengthen their cybersecurity posture, we want to hear from you.
VAPT Engineer / Penetration Tester
Full-Time
Perform Vulnerability Assessment and Penetration Testing (VAPT) on:
Web applications
Mobile applications
APIs
Internal & external networks
Cloud environments
Conduct manual and automated security testing.
Identify vulnerabilities, exploit weaknesses, and provide remediation recommendations.
Prepare detailed technical reports and executive summaries.
Collaborate with development and infrastructure teams to validate fixes.
Perform security re-testing after remediation.
Stay updated with the latest cybersecurity threats, attack techniques, and security tools.
Support security audits and compliance assessments when required.
Strong understanding of:
OWASP Top 10
Network security
Web application security
API security
Authentication & authorization mechanisms
Mobile framework
Hands-on experience with tools such as:
Burp Suite
Nmap
Metasploit
Nessus
Wireshark
OpenVAS
Knowledge of:
Linux & Windows environments
Scripting (Python, Bash, PowerShell)
Secure coding concepts
Experience in manual penetration testing and exploit validation.
Ability to create clear technical documentation and reports.
Proven track records of 3+ years of experience in vulnerability scanning, analysis & penetration testing of websites, cloud hosted applications, APIs and networks.
Knowledge of DevSecOps and integrating security into CI/CD pipelines.
Application session management.
Good knowledge of modifying and compiling exploit code.
Had exposures in Ethical Hacking competitions and programs like Bug Bounty, Capture the Flag etc.
Certifications such as:
OSCP
CEH
eJPT
GWAPT
CISSP
SANS
GXPN
Experience with:
Mobile app testing
Cloud security
Red Team activities
Source code review
DevSecOps
Experience in fintech, banking, or wallet applications.
Knowledge of secure SDLC and compliance frameworks.
Experience handling aggressive SLA production environments.