About the Role : The Penetration Test Engineer is responsible for conducting authorized simulated cyberattacks on systems, networks, and applications to identify security vulnerabilities before malicious hackers can exploit them.
This role plays a critical part in ensuring the confidentiality, integrity, and availability of organizational data and IT infrastructure.
Key Responsibilities : Perform vulnerability assessments and penetration testing on web applications, networks, cloud environments, and endpoints.
Develop and execute test plans and attack scenarios simulating real-world threats.
Identify, exploit, and document security weaknesses and misconfigurations.
Provide detailed technical reports outlining findings, risk ratings, and remediation recommendations.
Collaborate with development, infrastructure, and security teams to validate fixes and improve overall security posture.
Maintain awareness of emerging cyber threats, exploits, and attack techniques.
Utilize tools such as Burp Suite, Metasploit, Nmap, Nessus, Kali Linux, and OWASP ZAP.
Participate in red team exercises and advanced adversarial simulations.
Ensure compliance with the Penetration Testing Execution Standard (PTES) and other relevant security frameworks such as OWASP , NIST , ISO 27001 , and PCI DSS , as applicable.
Qualifications : Bachelor’s degree in Computer Science, Information Security, or a related field.
At least 10–15 years of experience in penetration testing, vulnerability assessment, or ethical hacking.
Strong understanding of network protocols, web technologies, operating systems, and security frameworks.
Hands-on experience with offensive security tools and scripting languages (Python, Bash, PowerShell, etc.).
Professional certifications are highly preferred : OSCP (Offensive Security Certified Professional), CEH (Certified Ethical Hacker), GPEN (GIAC Penetration Tester), CREST Registered Pen Tester.
Key Skills : Ethical hacking and exploitation techniques Web and network security testing Risk assessment and report writing Strong analytical and problem-solving skills Clear communication of technical findings to non-technical stakeholders Powered by JazzHR
Test Engineer • Makati City, PH