Search by job, company or skills

  • Posted 4 hours ago
  • Be among the first 10 applicants

Job Description

Key Responsibilities

  • Perform Vulnerability Assessment and Penetration Testing (VAPT) for internal and external infrastructure, servers, endpoints, network devices, web applications, and cloud environments.
  • Conduct asset discovery, service enumeration, vulnerability scanning, manual validation, exploitation testing, and security configuration assessments within the approved scope.
  • Validate identified vulnerabilities to minimize false positives and determine actual security impact and associated risk.
  • Perform penetration testing activities using appropriate tools and methodologies while adhering to client-approved Rules of Engagement (RoE).
  • Analyze vulnerabilities and map findings to relevant standards and references such as CVSS, CWE, OWASP, and MITRE ATT&CK, where applicable.
  • Prepare professional technical VAPT reports, executive summaries, vulnerability registers, assessment checklists, and supporting evidence.
  • Present assessment results to technical teams, management, and client stakeholders, clearly communicating identified risks and recommended remediation.
  • Provide post-assessment remediation support, including clarification of findings, remediation recommendations, evidence review, vulnerability re-scanning, and revalidation.
  • Work closely with infrastructure, network, cloud, application, and security teams to support effective vulnerability remediation.
  • Support cybersecurity presales activities including scope clarification, effort estimation, technical proposal preparation, and client discussions when required.
  • Continuously research emerging vulnerabilities, attack techniques, security tools, and industry cybersecurity trends.
  • Develop additional capabilities in OT/ICS security assessment, cloud security assessment, red teaming, and security configuration review based on business and project needs.

Requirements

  • Bachelor's degree in Cybersecurity, Computer Science, Information Security, Information Technology, Networking, or a related field.
  • Knowledge or hands-on experience in Vulnerability Assessment and Penetration Testing (VAPT).
  • Good understanding of TCP/IP, network protocols, Windows/Linux environments, Active Directory, web technologies, and common security vulnerabilities.
  • Experience or familiarity with security assessment tools such as Nmap, Nessus, Burp Suite, Metasploit, Nikto, Nuclei, Wireshark, Kali Linux, or equivalent tools.
  • Understanding of common vulnerability categories including OWASP Top 10, insecure configurations, outdated software, authentication weaknesses, network/service exposure, and access-control issues.
  • Ability to perform manual vulnerability validation and distinguish exploitable security issues from scanner-generated false positives.
  • Basic scripting or automation knowledge using Python, PowerShell, Bash, or equivalent is an advantage.
  • Ability to prepare clear technical documentation, assessment evidence, and professional cybersecurity reports.
  • Strong analytical and troubleshooting skills with willingness to continuously learn new security technologies and attack techniques.
  • Good verbal and written communication skills and ability to coordinate with technical and non-technical stakeholders.
  • Business-level proficiency in English and Malay is mandatory; proficiency in other languages is an advantage for stakeholder communication in multinational environments.

More Info

Job Type:
Industry:
Function:
Employment Type:

Job ID: 152547367

Similar Jobs

Subang Jaya, Malaysia, Selangor

Skills:

Vulnerability ManagementCloud SecuritySocWindowsIncident ResponsePenetration TestingDevSecOpsThreat HuntingIso 27001Linux SecurityAzure AdSiemKubernetesSecurity AuditsActive DirectoryEDRRisk Compliance

Beware of Scammers

We don’t charge money for job offers