Talent.com
HCM Nexus Consulting
Vulnerability Assessment & Penetration Testing (VAPT) EngineerHCM Nexus Consulting • Taguig, Metro Manila, Philippines
Vulnerability Assessment & Penetration Testing (VAPT) Engineer

Vulnerability Assessment & Penetration Testing (VAPT) Engineer

HCM Nexus Consulting • Taguig, Metro Manila, Philippines
30+ days ago
Job description

Job Summary:

We are seeking a highly skilled Vulnerability Assessment & Penetration (VAPT) Engineer to lead and perform technical security testing of the firms enterprise applications, platforms, and systems. This role is a critical part of the global cybersecurity function, ensuring that vulnerabilities are identified, reported, and addressed in a timely, risk-informed manner. The successful candidate will bring deep expertise in web application penetration testing, mastery of common VAPT tools, and the ability to communicate technical findings effectively to both technical and non-technical audiences.

Key Responsibilities:

  • Conduct manual and automated penetration tests on web applications, cloud platforms, APIs, and internal systems.
  • Identify, assess, and document security vulnerabilities, working closely with application and infrastructure teams to validate and prioritize remediation.
  • Serve as a subject matter expert (SME) for the firms VAPT function, contributing to strategy, standards, and testing methodologies.
  • Manage and maintain key VAPT tools and platforms (e.g., Burp Suite, AppScan, Nessus, Nipper, Trustwave).
  • Deliver clear, well-structured reports that include actionable recommendations aligned with security best practices and risk management principles.
  • Collaborate with internal stakeholders across IT, DevOps, and InfoSec teams to enhance secure development practices and build threat awareness.
  • Stay current on emerging security threats, techniques, and tools to continuously improve VAPT effectiveness.

Qualifications:

  • At least 5 years of hands-on experience in web application penetration testing and vulnerability assessments in large-scale enterprise environments.
  • Proven experience using at least two of the following tools: Burp Suite, AppScan, Nessus, Nipper, Trustwave(strong preference for Burp Suite and AppScan).
  • Strong knowledge of OWASP Top 10, SANS/CWE vulnerabilities, and secure coding principles.
  • Deep understanding of attack vectors, threat modeling, and exploitation techniques across web, API, and system layers.
  • Excellent technical reporting and communication skills, with the ability to translate complex findings for business and technical audiences.

Certifications:

  • Preferred: CISSP (Certified Information Systems Security Professional)
  • Alternatives considered: GIAC GPEN (Penetration Tester) or GIAC GWAPT (Web Application Penetration Tester)

Preferred Skills:

  • Experience in professional services or highly regulated industries (e.g., legal, finance, or healthcare).
  • Familiarity with secure SDLC integration, CI/CD security testing, or DevSecOps practices is a plus.
  • Ability to work across cultures and time zones in a global team environment.
Create a job alert for this search

Vulnerability Assessment & Penetration Testing (VAPT) Engineer • Taguig, Metro Manila, Philippines

Similar jobs

Test Engineer (ATM)

Euronetnational capital region, ph

Design and execute test cases for ATM transactions including cash withdrawal, fund transfer, deposit, and balance inquiry etc.Validate end-to-end transaction flows through ATM, switch, and core ban... Show more

 • Promoted

Full Stack.Net Engineer (Security Specialist)

Comrisenational capital region, ph

We are seeking a Senior Full-Stack Engineer with deep security expertise to embed within a Scrum team and deliver secure software through hands-on engineering.This is a builder / fixer role (not an... Show more

 • Promoted

Senior Testing and Commissioning Engineer

Ayala Property Management Corporation (APMC)makati, national capital region, Philippines

Must be a Registered Electrical / Mechanical Engineer.Preferably with at least 2 years comprehensive experience as lead in testing and commissioning of equipment and project / construction experien... Show more

 • Promoted

Senior Fire Protection Design Engineer

WSP in Manilanational capital region, ph

WSP, a world leading management and consultancy firm, connects you to a vast array of opportunities.We are a collaborative team of experts that thrives on challenge and unconventional thinking.At W... Show more

 • Promoted

Expert Test Engineer

Security Bank Corporationnational capital region, ph

This role exists to drive faster and more efficient delivery by building robust automation frameworks that cover most testing activities, reducing manual effort while maintaining product quality.It... Show more

 • Promoted

Head of VAPT

SM Investmentspasay, national capital region, Philippines

SM Investments | Pasay City | On-site.At SM Investments, we shape sustainable growth stories that uplift industries and communities.Join one of the Philippines’ leading conglomerates and help safeg... Show more

 • Promoted

Senior Fire Protection Design Engineer

GSS HR Solutions Private Limtedpasig, national capital region, Philippines

Knowledge in Wet and Dry System.AutoCAD and Revit Experience is a plus.Working knowledge of WSP's organizational capability and how to access it.Working knowledge of systems, procedures and practic... Show more

 • Promoted

Quality Assurance Engineer (D365 & Cloud) - Manager

Risewave Consulting, Inc.national capital region, ph

QA, test automation, and cloud platform testing.The ideal candidate is highly organized, analytical, adaptable, and experienced in managing complex IT transformation programs.Lead IT transformation... Show more

 • Promoted

Penetration Tester

E-Solutionsnational capital region, ph

We are looking for a security-focused analyst to perform penetration testing, security assessments, and vulnerability analysis across embedded devices, applications, and cloud systems (AWS/Azure).T... Show more

 • Promoted

QR Surveillance & Enforcement Associate (Fresh Grad)

Netbanknational capital region, ph

The QR Surveillance & Enforcement Analyst plays a key role in protecting Netbank and its customers from financial crimes involving QR code misuse.This includes monitoring for illegal QR activities ... Show more

 • Promoted

Security Engineer

Atosnational capital region, ph

Job Title: Security Engineer (Threat Modeling).Job Type: Hybrid model - 5 month Contract + Extension.Threat Modeling & Secure Design.Threat modeling methodologies (e.STRIDE, OWASP Threat Modeling, ... Show more

 • Promoted

Site Reliability Engineer

Strategic Staffing Solutionsnational capital region, ph

STRATEGIC STAFFING SOLUTIONS (S3).Position: Site Reliability Engineer.Work Set-Up: Hybrid (2x per week onsite).Office Location: Makati, Philippines.Schedule: Dayshift with Flexible schedules for US... Show more

 • Promoted

Penetration Tester

CoDevquezon city, national capital region, ph

Work Arrangement: Work From Home.Work Location: WFH Philippines.Working Days: Mondays to Fridays if Mid or Night Shift; Available Shift Options (You may choose): PH Mid shift 5PM or PH Night shift ... Show more

 • Promoted

Security Testing and Assurance Analyst

Bank of Commerce (Philippines)national capital region, ph

The Security Testing and Assurance (STA) Analyst supports and executes the Bank’s technical security testing activities under the direction of the Section Head.The role provides hands-on assistance... Show more

 • Promoted

Software Test Engineer (Tosca)

Ascendionmetro manila, Philippines

Design, develop, and execute automated test scripts using Tricentis Tosca.Perform functional, regression, integration, and end-to-end testing.Analyze business and technical requirements to create e... Show more

 • Promoted

Embedded Audio Validation and Test Automation Engineer

Drake International Philippinesnational capital region, ph

We’re Hiring: Embedded Audio Validation & Test Automation Engineer.A leading global IT company is expanding and looking for a detail-oriented and passionate.Embedded Audio Validation Engineer.Hybri... Show more

 • Promoted

Automation Test Analyst

Fulcrum Digital Incmanila, national capital region, ph

Job Spec – QA Automation Engineer.We are looking for a QA Automation Engineer with hands-on experience in API automation.The role focuses on writing and maintaining automation scripts and improving... Show more

 • Promoted

VAPT Manager

SM Investmentsnational capital region, ph

At SM Investments, we shape sustainable growth stories that move industries and uplift communities.As one of the Philippines’ leading conglomerates, we build opportunities across retail, banking, a... Show more

 • Promoted

Quality Test Engineer

Reed Elsevier Philippinesnational capital region, ph

Join us and enjoy benefits designed to help you thrive:.Flexible hybrid work setup (1-2 days/month onsite reporting).HMO coverage starting from Day 1 for you and FOUR FREE dependents.Attractive ret... Show more

 • Promoted

Systems and Monitoring Engineering Lead – Wintel

Avensys Consultingnational capital region, ph

Systems and Monitoring Engineering Lead – Wintel.The Infrastructure Operations & Monitoring Lead supervises a team of L1.L2 analysts responsible for monitoring, incident triage, and queue managemen... Show more