RESPONSIBILITIES
- Working with a diverse range of colleagues to define security testing activities (scope) across target applications and infrastructure
- Continuous improvement and best practices to promote continuous improvement of penetration testing methodologies and processes
- Delivery of technical reports and documentation
- Communication of security vulnerabilities and exposures to internal stakeholders
- Perform penetration testing and vulnerability assessments, including the triage of findings to determine key exposures. Expanding upon this responsibility, you will also be required to perform:, cloud
o Tests against various technical assets (applications, networks, cloud), as expanded upon below
o Security Audits
o Analyse Security Policies
o Write Security Assessment Reports
REQUIREMENTS
- At least 5+ years exp.
- Extensive experience as a penetration tester or security analyst, with experience in large organisations.
- Extensive experience penetration testing various assets, including but not limited to; web applications, mobile applications, networks/infrastructure, and cloud services. You should highlight any key strengths across these disciplines.
- A clear understanding of both manual and automated penetration testing techniques, including knowledge of common penetration testing tools and the impacts they have on systems.
- Fluent understanding of cloud technologies (AWS, Azure)
- A comprehensive understanding of Penetration Testing frameworks and methodologies (OWASP, OSSTTMM, WAHH).
- Advanced problem-solving skills
- Excellent written and verbal communication skills – with experience writing and conveying complex penetration testing findings and their associated risks through reports to stakeholders; findings writeups, or verbal discussions.
- Ability to attend to the detail on multiple concurrent tasks while meeting various deadlines.
- Industry certifications such as OSCP, OSWE, CREST (CRT, CCT), or equivalent are highly desired
- Training on self-development platforms (i.e. HackTheBox, Pentesterlabs, wechall, etc.)
Nice to have:
- Experience working in large enterprise organisations e.g. banking
- Exposure to Microservices, Web and Cloud technologies
- Degree in Computer Science, Information Security or similar
WHAT COMPANY OFFERS
Successful candidates will be part of a friendly, motivated and committed talent teams with various benefits and attractive offers:
- Attractive offer, plus annual compensation and performance bonus.
- FPT Care insurance plan tailored for FPT employees
- Support for learning and certificate examination.
- Chance to work onsite in US, Euro and Asian countries
- Company shuttle buses provide convenient way of transportation for all employees.
- Salary review 2 times/year or on excellent performance
- Annual Summer Vacation support
- International, dynamic, friendly working environment
- Annual leave, working conditions follow Vietnam labor laws.
- Other allowances: transportation allowance, lunch allowance, working on-site allowance, etc.
- FTown Campus provide many facilities for FPT employees such as football ground, basketball & volleyball, gym & yoga centre, restaurant, cafeteria, etc.
CONTACT
Department: South Talent Acquisition – FPT Software Workforce Assurance – FPT Software Ho Chi Minh Company Limited
Email: [email protected]
Website: www.career.fpt-software.com