
Security Penetration Tester
BAE Systems Digital Intelligence
full-time
Posted on:
Location Type: Office
Location: Kuala Lumpur • Malaysia
Visit company websiteExplore more
Tech Stack
About the role
- Delivery of end-to-end security testing engagements, including scoping and client wash-up meetings.
- Performing a wide range of security testing types such as web application, infrastructure and objective based/red teaming.
- Production of detailed reporting and presentations for both technical and non-technical stakeholders.
- Safe and responsible use of testing tools, ensuring controls are in place to limit risks during customer engagements.
- Developing improvements in terms of scripts, tools, or techniques to enhance the Security Testing team's capabilities.
- Maintaining an up-to-date knowledge of information security issues, continuously learning about new technologies, methodologies, and techniques.
- Knowledge sharing with colleagues in other teams, such as Threat Intelligence, Incident Response, and the wider Security Consulting community.
- Assist and support team members in troubleshooting complex technical issues, reviewing vulnerability findings, and validating penetration test results to uphold high standards of accuracy, consistency, and reporting quality.
- Opportunity for international travel to deliver for our global customers at customer sites.
Requirements
- At least 3 years of relevant work experience in common offensive penetration testing domains such as testing of web applications, infrastructure and red teaming.
- Experience with wireless and mobile testing also an advantage.
- Passion for cybersecurity.
- Involvement in cybersecurity related blogs, vulnerability research/bug bounties or other community related events will be looked at favourably
- Evidenced skills through industry recognised certifications such OSCP, CREST or CRTO
- Confident communicator with excellent spoken and written English communication skills
- Experience using common industry tools such as Kali Linux, Nessus & Burpsuite.
- Knowledge of C2 frameworks such as Cobalt Strike.
- Threat hunting or compromised assessment experience.
Benefits
- 18 days holiday a year (increases to 21 after 5 years’ service)
- Private family medical cover
- Maternity (4 months)
- Paternity (2 weeks)
- Study leave
- Optical/ Dental/ Health screening allowance
- Annual bonus and share award scheme
- Personal training and development sponsorship
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
penetration testingweb application testinginfrastructure testingred teamingvulnerability assessmentthreat huntingcompromised assessmentscriptingsecurity testing methodologiesreporting
Soft Skills
communicationteam supporttroubleshootingknowledge sharingclient engagementpresentation skillspassion for cybersecurity
Certifications
OSCPCRESTCRTO