VAPT Engineer

Hitachi Digital Payment Solutions Philippines Inc.

Philippines

On-site

PHP 800,000 - 1,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Hitachi Digital Payment Solutions Philippines Inc. is seeking a VAPT Engineer to perform vulnerability assessments and penetration testing across web, mobile, APIs, and cloud environments. You will conduct manual and automated testing, document findings, and collaborate with DevOps to validate fixes.

The role is based in Makati, with a focus on securing digital payment platforms. Candidates should have 3+ years in vulnerability analysis and security testing, strong knowledge of OWASP Top 10, and

Qualifications

  • Strong understanding of OWASP Top 10, network security, and web and API security concepts.
  • Experience with authentication and authorization mechanisms across platforms.
  • Hands-on work with mobile frameworks and security testing.
  • Proficiency with manual penetration testing and exploit validation.

Responsibilities

  • Perform Vulnerability Assessment and Penetration Testing (VAPT) on web, mobile, APIs, networks, and cloud environments.
  • Conduct manual and automated security testing.
  • Identify vulnerabilities, exploit weaknesses, and provide remediation recommendations.
  • Prepare detailed technical reports and executive summaries.
  • Collaborate with development and infrastructure teams to validate fixes.
  • Perform security re-testing after remediation.
  • Stay updated with latest cybersecurity threats and tools.
  • Support security audits and compliance assessments when required.

Skills

OWASP Top 10
Network security
Web application security
API security
Authentication & authorization
Mobile framework

Tools

Burp Suite
Nmap
Metasploit
Nessus
Wireshark
OpenVAS

Job description

VAPT Engineer
Join Our Team – VAPT Engineer (Vulnerability Assessment & Penetration Testing)

Cybersecurity

We are looking for a highly motivated and skilled VAPT Engineer to join our growing cybersecurity team. The ideal candidate will be responsible for identifying security vulnerabilities across web applications, mobile applications, APIs, networks, and infrastructure through comprehensive vulnerability assessments and penetration testing.

If you are passionate about ethical hacking, offensive security, and helping organizations strengthen their cybersecurity posture, we want to hear from you.

Job Title

VAPT Engineer / Penetration Tester

Employment Type
  • Full-Time

Key Responsibilities
  • Perform Vulnerability Assessment and Penetration Testing (VAPT) on:

    • Web applications

    • Mobile applications

    • APIs

    • Internal & external networks

    • Cloud environments

  • Conduct manual and automated security testing.

  • Identify vulnerabilities, exploit weaknesses, and provide remediation recommendations.

  • Prepare detailed technical reports and executive summaries.

  • Collaborate with development and infrastructure teams to validate fixes.

  • Perform security re-testing after remediation.

  • Stay updated with the latest cybersecurity threats, attack techniques, and security tools.

  • Support security audits and compliance assessments when required.

Required Skills & Experience
  • Strong understanding of:

    • OWASP Top 10

    • Network security

    • Web application security

    • API security

    • Authentication & authorization mechanisms

    • Mobile framework

  • Hands-on experience with tools such as:

    • Burp Suite

    • Nmap

    • Metasploit

    • Nessus

    • Wireshark

    • OpenVAS

  • Knowledge of:

    • Linux & Windows environments

    • Scripting (Python, Bash, PowerShell)

    • Secure coding concepts

  • Experience in manual penetration testing and exploit validation.

  • Ability to create clear technical documentation and reports.

  • Proven track records of 3+ years of experience in vulnerability scanning, analysis & penetration testing of websites, cloud hosted applications, APIs and networks.

  • Knowledge of DevSecOps and integrating security into CI/CD pipelines.

  • Application session management.

  • Good knowledge of modifying and compiling exploit code.

  • Had exposures in Ethical Hacking competitions and programs like Bug Bounty, Capture the Flag etc.

Preferred Qualifications
  • Certifications such as:

    • OSCP

    • CEH

    • eJPT

    • GWAPT

    • CISSP

    • SANS

    • GXPN

  • Experience with:

    • Mobile app testing

    • Cloud security

    • Red Team activities

    • Source code review

    • DevSecOps

Nice to Have
  • Experience in fintech, banking, or wallet applications.

  • Knowledge of secure SDLC and compliance frameworks.

  • Experience handling aggressive SLA production environments.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

VAPT Engineer
VAPT Engineer

ATOMIT Corp. • Philippines

On-site
PHP 600,000 - 1,000,000
Security Engineer - Offensive Security
Security Engineer - Offensive Security

Thrive • Tarlac City

On-site
PHP 900,000 - 1,500,000
VAPT Engineer: Offensive Security & App Security Testing
VAPT Engineer: Offensive Security & App Security Testing

ATOMIT Corp. • Philippines

On-site
PHP 600,000 - 1,000,000
Security Engineer, Offensive Security
Security Engineer, Offensive Security

InfoHedge Technologies LLC • Morong

On-site
Senior Cybersecurity Specialist (VAPT)
Senior Cybersecurity Specialist (VAPT)

Likha Careers • Pasig

Hybrid
Paid training
Health Insurance
Life Insurance
+2
Penetration Tester - Hybrid - BGC - up to 100K
Penetration Tester - Hybrid - BGC - up to 100K

weSource Management Consultancy Firm • Taguig

Hybrid
Penetration Tester - Up to 100K - Hybrid BGC - Midshift
Penetration Tester - Up to 100K - Hybrid BGC - Midshift

weSource Management Consultancy Firm • Metro Manila

Hybrid
PHP 80,000 - 100,000
Application Security Engineer
Application Security Engineer

Trinity Workforce Solutions, Inc. • Makati

On-site
PHP 800,000 - 1,200,000
Collaborate with talented teams
Work on real-world security challenges
Career growth in a security-first culture
Application Security Manager
Application Security Manager

PwC • Makati

On-site
PHP 1,200,000 - 1,600,000
Vulnerability and Penetration Tester
Vulnerability and Penetration Tester

Total Information Management Corp. • Philippines

On-site
PHP 600,000 - 1,000,000