jobs in Axonect

全职 Senior Security Engineer - Penetration Testing 工作, 薪水, Axonect Federal Territory 公司招聘中 - Ricebowl

Senior Security Engineer - Penetration Testing

Axonect

KL City, Federal Territory

分享
保存

工作地点

  • Kuala Lumpur Federal Territory Malaysia

职位描述

岗位职责

Overview

We are seeking a technical Senior Security Engineer for the Penetration Testing function. This role is expected to independently lead penetration testing engagements, serve as a technical escalation point for the team, mentor junior consultants, review assessment quality, and provide operational continuity for the Penetration Testing Lead when required.

Key Responsibilities

  • Lead and execute web, mobile, API, network, cloud and Active Directory penetration tests
  • Lead engagements from scoping, execution and reporting through stakeholder presentations
  • Review penetration testing reports and technical deliverables for quality, consistency and accuracy
  • Provide technical escalation support for junior consultants and VM analysts
  • Mentor team members through coaching, report reviews and technical workshops
  • Support engagement planning, estimation and resource allocation across concurrent assessments
  • Drive methodology improvements, testing standards and automation initiatives
  • Support remediation discussions with business and technology stakeholders
  • Act as delegated operational lead when required


Person Specifications

Qualifications

  • Minimum 3 to 5 years of hands-on penetration testing experience
  • Strong expertise across Web, Mobile, API, Network, Active Directory and Cloud security testing
  • Demonstrated experience leading penetration testing engagements independently
  • Experience mentoring junior consultants and performing technical quality reviews
  • Strong understanding of Active Directory attack paths, privilege escalation and post-exploitation techniques
  • Experience assessing AWS and/or Azure cloud environments
  • Ability to write scripts and automate offensive security workflows
  • Excellent written and verbal English communication skills
  • Exposure to AI security testing, including LLM prompt injection, agent abuse, indirect prompt injection, tool-chain security review and AI application security assessment


Preferred Experience

  • Resource planning and engagement scheduling
  • Coordination of multiple concurrent penetration testing engagements
  • Red team operations, C2 infrastructure and phishing simulations
  • Code review and secure development knowledge
  • Experience in Intelligence-led penetration testing or threat-led penetration testing
  • Experience building testing methodologies, reporting standards and QA processes


Preferred Certifications

  • OSCP (preferred)
  • CRTP
  • OSWE
  • GIAC certifications
  • Relevant cloud security certifications

重要安全守则

申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。

了解更多