Vulnerability Consultant

HRTX

Philippines

On-site

PHP 900,000 - 1,300,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

HRTX in the Philippines is seeking a Senior Attack Surface Management Consultant to lead a Vulnerability Management team, set up security programs with clients, run scans, and deliver reports. You will mentor junior consultants, foster knowledge sharing, and work with the senior TAM team to shape new service lines while building strong client relationships.

The role requires strong background in cybersecurity, Linux/Windows, and hands-on experience with vulnerability scanning tools, ITSMs, and

Qualifications

  • Solid understanding of core cybersecurity principles and risk-based thinking.
  • Experience with vulnerability management processes and reporting.
  • Exposure to ITSM platforms and client-facing delivery.
  • Ability to mentor junior consultants and lead client engagements.

Responsibilities

  • Line Management of a small Vulnerability Management team
  • Setting up security programs with clients based on their requirements
  • Running and verifying network and application vulnerability scans
  • Writing and delivering client reports
  • Analysis of external and internal attack surface outputs to identify risk
  • Work directly with customers to provide prioritization for remediation
  • Providing support and answering queries from clients
  • Act as the customer advocate within the Attack Surface Management Team
  • Own the operational relationships with your customers
  • Identifying efficiency and process improvements to the operational teams.
  • Act as the SME to customers to improve the quality of service they are receiving and maintain a roadmap for those customers
  • Assist with the onboarding of new customers, building an understanding of customers business risks
  • Lead and mentor more junior consultants and analysts, providing guidance and support in delivering exceptional service to our clients
  • Foster a collaborative and positive team culture, promoting knowledge sharing and continuous improvement
  • Work with the Departmental Leadership team, as a SME, to ensure success

Skills

Vulnerability management
Linux
Windows
Network security
Web application security
Nexpose
Qualys
Burp Suite
NMAP
ServiceNow

Education

Bachelor's degree in Computer Science or Engineering

Tools

Nexpose
Rapid7
Qualys
HP WebInspect
IBM AppScan
Tenable Nessus
Burp Suite
NMAP
CyCognito
ServiceNow

Job description

This is an opportunity to work in a fun and challenging environment, using market leading security testing tools and platforms to provide security testing services to our large client base. You will play a key role in delivering and managing client security programs all year round, as well as building relationships with clients and ensuring that our services are meeting their needs. You will also have the responsibility of working within the senior TAM team to support the direction and development of new service lines offered by the company.

  • Line Management of a small Vulnerability Management team
  • Setting up security programs with clients based on their requirements
  • Running and verifying network and application vulnerability scans
  • Writing and delivering client reports
  • Analysis of external and internal attack surface outputs, to identify and communicate risk
  • Work directly with customers to provide prioritization for remediation
  • Providing support and answering queries from clients
  • Act as the customer advocate within the Attack Surface Management Team
  • Own the operational relationships with your customers
  • Identifying efficiency and process improvements to the operational teams.
  • Act as the SME to customers to improve the quality of service they are receiving and maintain a roadmap for those customers
  • Assist with the onboarding of new customers, building anunderstanding of customers business risks.
  • Lead and mentor more junior consultants and analysts, providing guidance and support in delivering exceptional service to our clients.
  • Foster a collaborative and positive team culture, promoting knowledge sharing and continuous improvement.
  • Work with the Departmental Leadership team, as a SME, to ensure success
Qualification
  • Excellent understanding of basic cybersecurity principles
  • Excellent understanding and experience of Linux and Windows operating systems
  • Excellent understanding and exposure to network and web application security
  • Strong experience using network and application scanning tools and utilities, such as
  • Nexpose Rapid 7, Qualys, HP WebInspect, IBM AppScan , Tenable Nessus, Burp, NMAP etc
  • Good understanding how vulnerabilities can be linked and the impact on risk
  • Strong understanding of how to identify vulnerabilities that may be higher risk than their score indicates
  • Experience of EASM platforms such as Cycognito
  • Experience of ITSMs such as Service Now
  • Strong interpersonal and communication skills
  • Ability to work, and manage time and tasks independently
  • Ability to communicate with customers in a clear and concise manner
  • Client Relationship Management
  • Build and maintain strong relationships with key clients, serving as their trusted advisor for a range of ASM solutions.
  • Conduct regular meetings with clients to understand their evolving requirements, address concerns, and identify opportunities for improvement.
  • Collaborate with the sales team to identify upsell and cross-sell opportunities based on clients' ASM needs.
  • Degree in Computer Science / Engineering or equivalent experience
  • Strong Experience in Information Security
  • CRT and/or IASME Vulnerability assessment Plus certification
  • Understanding of web services architecture and commonly employed technologies
  • Exposure to software development and understanding of secure code development
  • Knowledge and understanding of PCI DSS requirements, in particular PCI ASV testing
  • Knowledge and understanding of Cyber Essentials requirements
  • Understanding of DDoS Mitigation
  • Experience with Python
  • Experience with Java
  • Understanding of Service Now
  • UK Security Check (SC) clearance is desirable but not essential
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Consultant – Attack Surface Management
Vulnerability Consultant – Attack Surface Management

HRTX • Philippines

On-site
PHP 1,200,000 - 1,600,000
Associate Security Consultant
Associate Security Consultant

HRTX • Philippines

On-site
PHP 420,000 - 780,000
Application Security Manager
Application Security Manager

PwC • Makati

On-site
PHP 1,200,000 - 1,600,000
Vulnerability Analyst
Vulnerability Analyst

HRTX • Philippines

On-site
PHP 446,000 - 1,004,000
IT Security Consultant
IT Security Consultant

HRTX • Philippines

On-site
PHP 400,000 - 600,000
Security Vulnerability and Penetration Testing Engineer
Security Vulnerability and Penetration Testing Engineer

HRTX • Philippines

On-site
PHP 1,200,000 - 1,800,000
Security Vulnerability and Penetration Testing (VAPT) Engineer
Security Vulnerability and Penetration Testing (VAPT) Engineer

HRTX • Philippines

On-site
PHP 700,000 - 1,000,000
Vulnerability Remediation Lead
Vulnerability Remediation Lead

UpSkill MNL • Metro Manila

On-site
PHP 600,000 - 900,000
Security Analyst
Security Analyst

Artech Technology Inc. • Quezon City

On-site
PHP 3,527,000 - 5,292,000
Security Engineer
Security Engineer

Azeus Systems Limited • Cebu City

On-site
PHP 1,200,000 - 1,800,000