IT Security Analyst

ibex

Lahore

On-site

PKR 2,000,000 - 3,000,000

Full time

9 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

IBEX is seeking an information security specialist with strong web application assessment and penetration testing concepts. The role coordinates and helps implementing the IT Security Roadmap and security processes to protect IBEX Global assets.

Responsibilities include conducting full-scale security assessments of web, APIs, AI/LLM, and mobile apps; participating in red team exercises; coordinating with third parties; and enabling secure coding practices.

Qualifications

  • Bachelors Degree in IT/CS/Software Eng./Telecom.
  • Experience in penetration testing and vulnerability assessment.
  • Proficiency with Burp Pro and other pentest tools.
  • Experience with source code analysis tools and OWASP.
  • OSCP/OSWP/CEH (Practical) certification is required.

Responsibilities

  • Conduct full scale security assessments and manual penetration testing of web, APIs, AI/LLM, mobile applications.
  • Participate in red team and automated pentest exercises internally or by third party.
  • Active coordination for any third party penetration testing exercises.
  • Using open source tools, scripts and techniques to enumerate and map publicly exposed assets and vulnerability surface.
  • Coordination with IT infrastructure & development teams for remediation.
  • Reviewing application design and flow to identify business logic flaws.
  • Using various tools for vulnerability scanning of IT assets and dynamic/static application assessments.
  • Support development teams for secure coding practices.
  • Perform Cloud security review and prepare reports with gaps and remediation guidelines.
  • Fair understanding with prompt injection, adversarial input, model inversion, hallucination attacks for LLM testing.
  • Familiarly with Gen-AI applications security assessment.

Skills

Penetration testing
Vulnerability Assessment
Burp Pro
Source Code Analysis
OWASP
Presentation skills
OSCP/OSWP/CEH

Education

Bachelor's Degree in IT/CS/Software Eng./Telecom

Tools

Burp Pro

Job description

About the Company

To protect IBEX infrastructure from emerging threats and help organization in achieving its business objectives.

About the Role

This position acts as IS resource having strong concepts of web application assessments and penetration testings. This position will coordinate & will help implementing IT Security Roadmap and security processes for the protection of IEBX Global assets.

Responsibilities
  • Conduct full scale security assessments and manual penetration testing of web, APIs, AI/LLM, mobile applications.
  • Participate in red team and automated pentest exercises internally or by third party.
  • Active coordination for any third party penetration testing exercises.
  • Using open source tools, scripts and techniques to enumerate and map publically exposed assets and vulnerability surface.
  • Coordination with IT infrastructure & development teams for remediation.
  • Reviewing application design and flow to identify business logic flaws.
  • Using various tools for vulnerablilty scanning of IT assets and dynamic/static application assessments.
  • Support development teams for secure coding practices.
  • Perform Cloud security review and prepare reports with gaps and remediation guidelines.
  • Fair understanding with prompt injection, adversarial input, model inversion, hallucination attacks for LLM testing.
  • Familiarly with Gen-AI applications security assessment.
Qualifications

Bachelors Degree in IT/CS/Software Eng./Telecom

Required Skills
  • Must have a passion to work in the IT Security field.
  • Does have experience in:
  • Penetration testing
  • Vulnerability Assessment
  • Burp Pro and other pentest tools
  • Source Code Analysis tools
  • OWASP strong understanding
  • Must have good presentation skills.
  • OSCP/OSWP/CEH (Practical) certification is required.
Preferred Skills

1-2 years in IT Security field.

Reporting Time: 03:00 PM-12:00 am (PKST)

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst: Web, API & Cloud Penetration Expert
Security Analyst: Web, API & Cloud Penetration Expert

ibex • Lahore

On-site
PKR 2,000,000 - 3,000,000
Information Security Analyst
Information Security Analyst

Work standard • Khanpur

On-site
PKR 1,200,000 - 2,400,000
Penetration Tester
Penetration Tester

Alykas • Karachi Division

On-site
PKR 1,200,000 - 1,800,000
Information Security Analyst
Information Security Analyst

BlueHorizon • Lahore

On-site
Assistant Manager (Penetration Testing)
Assistant Manager (Penetration Testing)

Risk Associates Pvt. Ltd. • Karachi Division

On-site
PKR 1,800,000 - 3,000,000
Information Security Analyst
Information Security Analyst

FutureTech • Karachi Division

On-site
Accommodation provided
Senior Application Security Engineer
Senior Application Security Engineer

SwipBox • Islamabad

On-site
PKR 350,000 - 600,000
Cyber Security Specialist
Cyber Security Specialist

Level 3 BOS • Karachi Division

On-site
PKR 1,000,000 - 1,500,000
Information Security Analyst
Information Security Analyst

OceanWave Maritime • Multan

On-site
Cyber Security Engineer - Islamabad
Cyber Security Engineer - Islamabad

Yeah! Global • Islamabad

On-site