Senior Penetration Testing Lead
2 days ago
Role Description
The Senior Penetration Testing Lead is a technical leadership role responsible for steering and executing advanced offensive security engagements. This role requires a security practitioner capable of designing, managing, and delivering comprehensive security assessments—including penetration testing, red teaming, and application security reviews—to identify critical vulnerabilities and assess organizational risk across diverse client environments.
This is a full-time, on-site position based in
WP. Kuala Lumpur
.
Key Responsibilities
Technical Leadership & Execution
- Design and Scope Engagements:
Plan, scope, and lead security assessment activities targeting network infrastructure, web applications, mobile platforms, and cloud environments. - Advanced Testing:
Conduct offensive security exercises, including Red Team exercises, to simulate real-world threats and test defensive capabilities. - Post-Engagement Analysis:
Oversee the thorough documentation of findings, providing clear, actionable, and prioritized recommendations to mitigate identified risks.
Consulting & Reporting
- Client Collaboration:
Work directly with clients to understand their security objectives, define testing parameters, and clearly communicate the technical findings and associated business risk. - Quality Assurance (QA):
Serve as a technical QA reviewer for reports and deliverables produced by junior consultants, ensuring accuracy, clarity, and adherence to industry best practices. - Strategic Advisement:
Provide strategic counsel to clients on enhancing their overall security posture, incident response capabilities, and adherence to relevant compliance standards.
Team Mentorship & Growth
- Mentorship:
Mentor and train junior consultants, fostering the development of technical skills in penetration testing methodologies, application security, and report writing.
Qualifications & Experience:
Essential Technical Expertise
- Proven Expertise:
5+ years of demonstrable experience in hands-on penetration testing, web and mobile application security, and managing Red Team exercise. - Offensive Security Skills:
Expert knowledge of common exploitation techniques, attack methodologies (e.g., MITRE ATT&CK), and vulnerability analysis tools. - Foundational Knowledge:
Broad and deep understanding of core Cybersecurity principles, defensive architectures, and regulatory frameworks.
Educational & Professional Requirements
- Certifications:
Possession of industry-leading certifications such as
OSCP, CREST CRT or equivalent
is highly advantageous. - Analytical Skills:
Exceptional analytical ability and meticulous attention to detail required for complex vulnerability research and reporting.
Soft Skills & Work Environment
- Communication:
Excellent verbal and written communication skills, with the ability to articulate complex technical concepts to both technical and executive audiences. - Team Collaboration:
Demonstrated ability to lead projects, work effectively on-site, and collaborate seamlessly with cross-functional internal and client teams. - Location:
Commitment to working
full-time on-site
in WP. Kuala Lumpur.
At Firmus, we embrace Diversity, Equity, and Inclusion (DEI) as foundational pillars of our workplace culture. We are opposed to discrimination on any basis, including but not limited to race, religion, color, gender identity, sexual orientation, national origin or any characteristic protected by applicable law. Our commitment to fostering a diverse and inclusive workforce is unwavering, and every employment decision is rooted in the principles of DEI, guided by qualifications, merit, and the genuine requirements of our business.
-
Penetration Testing
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia ECOMMERCE CONSULTANTS PRIVATE LIMITED Full time 60,000 - 120,000 per year1. Penetration Testing Coordination & ExecutionCoordinate penetration testing engagements with external vendors, including:o Internal & External Penetration Testingo Firewall Configuration Reviewo Wireless Network Penetration Testingo Intelligence-led Red Team Exerciseso Mobile & Web Application Security Testingo Network Segmentation ValidationDefine and...
-
Lead - Penetration Tester
2 weeks ago
Kuala Lumpur, Kuala Lumpur, Malaysia Axiata Digital Labs Full time 120,000 - 240,000 per yearSummaryYou will be responsible for managing a team of penetration testers, designing and executing complex security assessments, and ensuring the security posture of critical systems and applications across our organization. You will also serve as a subject matter expert in identifying vulnerabilities, providing remediation strategies, and developing threat...
-
Lead - Penetration Tester
4 hours ago
Kuala Lumpur, Kuala Lumpur, Malaysia Axiata Digital Labs Full time 120,000 - 240,000 per yearSummary You will be responsible for managing a team of penetration testers, designing and executing complex security assessments, and ensuring the security posture of critical systems and applications across our organization. You will also serve as a subject matter expert in identifying vulnerabilities, providing remediation strategies, and developing threat...
-
Penetration Tester
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia R Systems Full time 120,000 - 240,000 per yearPosition Title: Penetration Testing & Vulnerability Assessment (PTVA)Department: Information SecurityLocation: Kuala LumpurRole OverviewThe PTVA PIC is responsible for coordinating and executing the bank's penetration testing andvulnerability assessment activities. This role ensures that assessments are conducted effectively,vulnerabilities are identified...
-
Penetration Tester
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Hytech Consulting Management Sdn Bhd Full time 120,000 - 240,000 per yearAbout The Role:The Penetration Tester will be responsible for assessing the security of our network, applications, and infrastructure by identifying vulnerabilities and weaknesses that could be exploited by malicious actors. You will work closely with cybersecurity and development teams to provide actionable insights and recommendations, helping us protect...
-
Security Penetration Tester
5 hours ago
Kuala Lumpur, Kuala Lumpur, Malaysia BAE Systems Full time 120,000 - 180,000 per yearLocation(s): Asia-Pacific & Middle East : Malaysia : Kuala LumpurBAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the...
-
Senior Test Manager
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Hungry Bird Resources Full time 80,000 - 120,000 per yearCompany Description HungryBIrd Consulting Services offers tailored and assessable Recruitment Process solutions that engender a viable advantage for our clients. Most of the companies do not have the internal resources needed to hire the top talented personnel to succeed in the market place. With the constant gravity to reduce costs and focus on essential...
-
Automation Test Lead
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia Helius Technologies Full time 120,000 - 240,000 per yearPosition:Test Automation LeadEmployment Type:12-month contract (renewable)Location:Kuala Lumpur, Exchange 106Working Arrangement:5 days a week, onsite (Monday to Friday)Working Hours (MY time):9:00 AM – 6:00 PMAbout the RoleThis role is for a Senior Automation Tester supporting BP PLC under the GF_SAM_Ops & Compliance_KL project. You will lead the shift...
-
Senior Test Analyst – Banking Applications
4 hours ago
Kuala Lumpur, Kuala Lumpur, Malaysia Tentacle Infotech Full time 8,000 - 108,000 per yearJob Title: Senior Technical Analyst / Test Lead (CLMS Enhancement – Banking Domain)Job PurposeKey ResponsibilitiesProject Implementation & DeliveryAssist in the implementation of CLMS Enhancements for the Regional Corporate Model 2.0 project, including requirement specification, system evaluation, interface mapping, installation, customization, testing,...
-
Test Lead
2 days ago
Kuala Lumpur, Kuala Lumpur, Malaysia The eCEOs Full time 100,000 - 120,000 per yearSAP Test Lead requires managing test strategies, planning and execution of various testing types (functional, regression, performance, UAT), leading a test team, defect management, and reporting to stakeholders.Key responsibilities include developing test plans, overseeing the creation and execution of test cases, using test management tools, and...