VAPT Specialist
PH
Responsibilities:
Conducts Vulnerability Assessment and Penetration Testing (VAPT) across, but not limited to, the following:
- Host / Server / Workstation
- Network Device
- Web Application
- Web API
- Source Code
- Mobile Application
- Wireless Device
- Software Application
- In-house Application
- Cloud Security
- Security Tools
Documentation and other tasks:
- Generation, documentation, and submission of VAPT reports, periodic reports, and other relevant documents
- Presentation of report findings to stakeholders in a clear and concise manner
- Provision of support to Cybersecurity and non-Cybersecurity teams in relation to vulnerability assessment and testing
- Validation and tracking of vulnerabilities until closure based on Threat Intelligence sources
- Participation in Threat Exposure and Attack Surface Management initiatives
Qualifications:
- Graduate with Bachelor's degree in IT or other 4 years course.
- At least 2.5 years of working experience on web and mobile application VAPT following the OWASP Top 10 testing framework
- Has knowledge in ICS (Industrial Control System)/OT (Operational Technology) or any related to Dev Ops is a plus.
- With working experience on open source and commercial security testing tools like Kali Linux, Metasploit, Qualys, Nessus, BurpSuite, OWASP Zap, etc.
- With working knowledge on web application and mobile application development or has experience in CVSS and CVE to help identify vulnerabilities.
- Must be able to write assessment reports that is understandable by both technical and non-technical audience
- Preferably with relevant Cybersecurity certifications like CEH, CISSP, etc, but not required.
Work set-up: 100% onsite in Ortigas (near the Medical City)