Penetration Tester

3 days ago


Kuala Lumpur, Kuala Lumpur, Malaysia FIRMUS Full time

The Penetration Tester will be serving as the Penetration Testing Lead, is a technical leadership role responsible for steering and executing advanced offensive security engagements. This role requires a security practitioner capable of designing, managing, and delivering comprehensive security assessments including penetration testing, red teaming, and application security reviews to identify critical vulnerabilities and assess organizational risk across diverse client environments.

Key Responsibilities

Technical Leadership & Execution

  • Design and Scope Engagements:
    Plan, scope, and lead security assessment activities targeting network infrastructure, web applications, mobile platforms, and cloud environments.
  • Advanced Testing:
    Conduct offensive security exercises, including Red Team exercises, to simulate real-world threats and test defensive capabilities.
  • Post-Engagement Analysis:
    Oversee the thorough documentation of findings, providing clear, actionable, and prioritized recommendations to mitigate identified risks.

Consulting & Reporting

  • Client Collaboration:
    Work directly with clients to understand their security objectives, define testing parameters, and clearly communicate the technical findings and associated business risk.
  • Quality Assurance (QA):
    Serve as a technical QA reviewer for reports and deliverables produced by junior consultants, ensuring accuracy, clarity, and adherence to industry best practices.
  • Strategic Advisement:
    Provide strategic counsel to clients on enhancing their overall security posture, incident response capabilities, and adherence to relevant compliance standards.

Team Mentorship & Growth

  • Mentorship:
    Mentor and train junior consultants, fostering the development of technical skills in penetration testing methodologies, application security, and report writing.

Qualifications & Experience

Essential Technical Expertise

  • Proven Expertise:
    5+ years of demonstrable experience in hands-on penetration testing, web and mobile application security, and managing Red Team exercise.
  • Offensive Security Skills:
    Expert knowledge of common exploitation techniques, attack methodologies (e.g., MITRE ATT&CK), and vulnerability analysis tools.
  • Foundational Knowledge:
    Broad and deep understanding of core Cybersecurity principles, defensive architectures, and regulatory frameworks.

Educational & Professional Requirements

  • Certifications:
    Possession of industry-leading certifications such as
    OSCP, CREST CRT or equivalent
    is highly advantageous.
  • Analytical Skills:
    Exceptional analytical ability and meticulous attention to detail required for complex vulnerability research and reporting.

Soft Skills & Work Environment

  • Communication:
    Excellent verbal and written communication skills, with the ability to articulate complex technical concepts to both technical and executive audiences.
  • Team Collaboration:
    Demonstrated ability to lead projects, work effectively on-site, and collaborate seamlessly with cross-functional internal and client teams.
  • Location:
    Commitment to working
    full-time on-site
    in WP. Kuala Lumpur.

  • Penetration Tester

    3 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia PAN ASIA SOFTWARE SOLUTIONS SDN BHD Full time

    Job Title : Penetration TesterResponsible managing a team of penetration testers, designing and executing complex security assessments, and ensuring the security posture of critical systems and applications across our organization. You will also serve as a subject matter expert in identifying vulnerabilities, providing remediation strategies, and developing...

  • Penetration Tester

    2 weeks ago


    Kuala Lumpur, Kuala Lumpur, Malaysia Hytech Consulting Management Sdn Bhd Full time 120,000 - 240,000 per year

    About The Role:The Penetration Tester will be responsible for assessing the security of our network, applications, and infrastructure by identifying vulnerabilities and weaknesses that could be exploited by malicious actors. You will work closely with cybersecurity and development teams to provide actionable insights and recommendations, helping us protect...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Axiata Digital Labs Full time 120,000 - 240,000 per year

    Summary You will be responsible for managing a team of penetration testers, designing and executing complex security assessments, and ensuring the security posture of critical systems and applications across our organization. You will also serve as a subject matter expert in identifying vulnerabilities, providing remediation strategies, and developing threat...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Axiata Digital Labs Full time

    SummaryYou will be responsible for managing a team of penetration testers, designing and executing complex security assessments, and ensuring the security posture of critical systems and applications across our organization. You will also serve as a subject matter expert in identifying vulnerabilities, providing remediation strategies, and developing threat...

  • Penetration Tester

    2 weeks ago


    Kuala Lumpur, Kuala Lumpur, Malaysia R Systems Full time 120,000 - 240,000 per year

    Position Title: Penetration Testing & Vulnerability Assessment (PTVA)Department: Information SecurityLocation: Kuala LumpurRole OverviewThe PTVA PIC is responsible for coordinating and executing the bank's penetration testing andvulnerability assessment activities. This role ensures that assessments are conducted effectively,vulnerabilities are identified...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Ambition Full time $80,000 - $180,000 per year

    About the ClientOur client is a leading regional financial institution with a dedicated technology and innovation centre based in Kuala Lumpur. The organisation is currently undergoing a large-scale cloud transformation, with a strong focus on strengthening its security posture, modernising legacy platforms, and enhancing governance across digital...


  • Kuala Lumpur, Kuala Lumpur, Malaysia BAE Systems Full time 120,000 - 180,000 per year

    Location(s): Asia-Pacific & Middle East : Malaysia : Kuala LumpurBAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Tentacle Infotech Full time 108,000 - 114,000 per year

    Job Title: Senior QA / Test Analyst – Internet & Core Banking SystemsCompetencies and SkillsQualificationsEducation: Minimum Bachelor's Degree or Diploma in Computer Science, Information Technology, or a related discipline.Professional Certification:CTFL (Certified Tester Foundation Level) certification is an added advantage.Exposure to CMMi/TMMi testing...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Wizlynx Malaysia Sdn Bhd Full time 900,000 - 1,200,000 per year

    Key RoleAs (Senior) Cyber Security Consultant & Penetration Tester, you will execute a variety of engagements, conducting advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other information...

  • Security Consultant

    3 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia LRQA Full time

    About LRQA At LRQA our focus has always been on excellence in cyber security. We have teams that offer world class services in red teaming, penetration testing, threat intelligence, research and development, detection and response, governance, risk, and compliance, and plenty more. Our business is global and so are our clients. We work closely with central...