Talent.com
Lead - Penetration Tester

Lead - Penetration Tester

Axiata Digital LabsKuala Lumpur, Malaysia
30+ hari lalu
Jenis pekerjaan
  • Quick Apply
Penerangan pekerjaan

Summary

You will be responsible for managing a team of penetration testers, designing and executing complex security assessments, and ensuring the security posture of critical systems and applications across our organization. You will also serve as a subject matter expert in identifying vulnerabilities, providing remediation strategies, and developing threat modeling.

Key Responsibilities

Strategic & Operational Leadership

  • Set the direction and scope of internal and external penetration testing engagements.
  • Develop, refine, and maintain the organizations penetration testing methodology.
  • Align red team activities with business objectives, risk priorities, and threat intelligence.

Team Management

  • Lead, mentor, and coach a team of penetration testers, red teamers, and offensive security analysts.
  • Conduct regular 1-on-1s, career development planning, and performance evaluations.
  • Build a collaborative and high-performing team culture with continuous skills development.
  • Planning & Execution Oversight

  • Oversee project timelines, resource allocation, and task delegation.
  • Ensure timely delivery of assessments and reporting within defined SLAs.
  • Manage team workflows using Agile or structured project management frameworks.
  • Quality Assurance & Reporting

  • Review and approve penetration testing reports for clarity, accuracy, and risk relevance.
  • Ensure all tests are conducted ethically, legally, and in line with organizational policy.
  • Maintain consistency in reporting formats, severity ratings, and risk classifications.
  • Technical Guidance & Escalation

  • Provide hands-on support in complex testing scenarios (e.g., privilege escalation, advanced persistence).
  • Serve as the go-to expert in bypassing modern defenses (EDR, WAF, MFA, etc.).
  • Troubleshoot and advise during real-time engagements or red / purple team exercises.
  • Continuous Improvement

  • Stay current with threat trends, TTPs (MITRE ATT&CK), and industry frameworks (OWASP, PTES, NIST).
  • Recommend new tools, scripts, and techniques to keep the team ahead of emerging threats.
  • Introduce automation, playbooks, and reusable exploits to improve testing efficiency.
  • Training & Development

  • Develop internal training modules, labs, and tabletop exercises.
  • Support certifications and knowledge-sharing within the team (e.g., OSCP, OSCE, CRTO).
  • Organize internal red team simulations, capture-the-flag (CTF) challenges, or lab walkthroughs.
  • Stakeholder Communication

  • Present technical findings and risk assessments clearly to non-technical stakeholders.
  • Interface with IT, development, SOC, and compliance teams to coordinate remediation efforts.
  • Participate in executive briefings or incident response drills where red team input is required.
  • Compliance & Documentation

  • Ensure testing procedures align with regulatory frameworks (ISO 27001, PCI-DSS, NIST).
  • Maintain documentation for all tools, payloads, testing infrastructure, and evidence handling.
  • Establish safe testing protocols to avoid disruption or unintentional damage during engagements.
  • Buat amaran kerja untuk carian ini

    Penetration Tester • Kuala Lumpur, Malaysia

    Pekerjaan yang berkaitan
    • Dinaikkan pangkat
    Security Engineer Full Time

    Security Engineer Full Time

    Career HorizonsKuala Lumpur, Kuala Lumpur, Malaysia
    We collaborate with leading financial institutions and industry partners to provide innovative and accessible financial solutions. Grown into a trusted financial services provider, offering a wide r...Tunjukkan lagiKemas kini terakhir: 22 hari yang lalu
    • Dinaikkan pangkat
    Linux Cryptography and Security Engineer

    Linux Cryptography and Security Engineer

    CanonicalPort Klang, Port Klang, Malaysia
    Linux Cryptography and Security Engineer.Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.This is a unique opportunity to use your software engineering and cryptography skills to...Tunjukkan lagiKemas kini terakhir: 27 hari yang lalu
    • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    SEEKKuala Lumpur, Kuala Lumpur, Malaysia
    At SEEK, we serve a noble purpose : to help people live more productive and fulfilling working lives and to help organisations succeed. By joining us, you’ll be part of a multinational technology bus...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Senior Security Engineer, Threat Hunting

    Senior Security Engineer, Threat Hunting

    GrabPetaling Jaya, Selangor, Malaysia
    Grab is Southeast Asia's leading superapp.From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything.In...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    OneConnect Financial TechnologyKuala Lumpur, Kuala Lumpur, Malaysia
    Design, implement, and maintain secure AWS network architectures (VPC, subnets, Transit Gateway, routing, NACLs, Security Groups). Define traffic flows for north-south and east-west traffic to enfor...Tunjukkan lagiKemas kini terakhir: 22 hari yang lalu
    • Dinaikkan pangkat
    Senior Security Engineer, Threat Hunting

    Senior Security Engineer, Threat Hunting

    GrabTaxi Holdings Pte. Ltd.Petaling Jaya, Selangor, Malaysia
    Grab is Southeast Asia's leading superapp.From getting your favourite meals delivered to helping you manage your finances and getting around town hassle-free, we've got your back with everything.In...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Senior Security Engineer

    Senior Security Engineer

    Ensign InfoSecurityPetaling Jaya, Selangor, Malaysia
    We are looking for an experienced Senior Security Engineer to join our System Integration team in Malaysia.If you are passionate about cybersecurity engineering and have hands-on experience in depl...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    DohertyKuala Lumpur, Kuala Lumpur, Malaysia
    Doherty Associates (DA) has delivered IT solutions for over 30 years to some of the world’s most prestigious and demanding clients. We focus on the professional and financial services sectors, inclu...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    R SystemsKuala Lumpur, Kuala Lumpur, Malaysia
    A Bachelor’s Degree in Computer Science, Engineering, Information Systems or its equivalent.Knowledge or experience in security resource administration (AS400), troubleshooting any operating system...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Ubuntu Security Engineer

    Ubuntu Security Engineer

    CanonicalSubang Jaya, Subang Jaya, Malaysia
    Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Join or sign in to find your next job.Canonical Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Be among the first 25 a...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    Career HorizonsKuala Lumpur, Kuala Lumpur, Malaysia
    We collaborate with leading financial institutions and industry partners to provide innovative and accessible financial solutions. Grown into a trusted financial services provider, offering a wide r...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    NintexKuala Lumpur, Kuala Lumpur, Malaysia
    At Nintex, we are transforming the way people work, everywhere.As the global standard for process intelligence and automation, we're trusted by over 10,000 public and private sector organizations a...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    Refine GroupKuala Lumpur, Kuala Lumpur, Malaysia
    Doherty Associates (DA) has delivered IT solutions for over 30 years to some of the world’s most prestigious and demanding clients. We focus on the professional and financial services sectors, inclu...Tunjukkan lagiKemas kini terakhir: 24 hari yang lalu
    • Dinaikkan pangkat
    Web3 Senior Security Engineer

    Web3 Senior Security Engineer

    Hyphen ConnectPutrajaya, Putrajaya, Malaysia
    We are working with a decentralised exchange which looks to innovate on providing the best of CEXs and DEXs, focusing on building a safe, simple and scalable platform for trading.They differentiate...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    BjakPetaling Jaya, Selangor, Malaysia
    Safeguard the Infrastructure Powering Southeast Asia’s Leading Fintech.At BJAK, technology is our backbone, from real-time insurance quoting to payment infrastructure and claims automation.With mil...Tunjukkan lagiKemas kini terakhir: 6 hari yang lalu
    • Dinaikkan pangkat
    Security Engineer (SOC L2 / L3 – Chronicle SIEM & SOAR)

    Security Engineer (SOC L2 / L3 – Chronicle SIEM & SOAR)

    Accenture Southeast AsiaKuala Lumpur, Kuala Lumpur, Malaysia
    Security Engineer (SOC L2 / L3 – Chronicle SIEM & SOAR).Apply security expertise to design, build, and protect enterprise systems, applications, and processes. Provide SOC Level 2 and Level 3 support,...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu
    • Dinaikkan pangkat
    Senior Security Engineer

    Senior Security Engineer

    CarsomeSelangorMalaysia, Selangor, Malaysia
    The Senior Security Engineer II is a hands-on technical expert responsible for the implementation, automation, and maintenance of CARSOME’s security infrastructure. This role plays a key function in...Tunjukkan lagiKemas kini terakhir: 22 hari yang lalu
    • Dinaikkan pangkat
    SECURITY ENGINEER

    SECURITY ENGINEER

    Netpoleon MalaysiaPetaling Jaya, Selangor, Malaysia
    Netpoleon Solutions is a well-established IT Security and Network Company recently acquired by Macnica Inc – a US 5.Billion Dollar Revenue company. With offices in Singapore, Australia, Cambodia, In...Tunjukkan lagiKemas kini terakhir: 30+ hari yang lalu