Job Purpose:  

The primary objectives of the Security Penetration Tester are to deliver and enhance various security services provided to both internal and external clients. The services include technical security assessments of applications and infrastructure, security design reviews as well as risk assessments. This is a hands-on role, requiring technical skills from the hardware to the application layer.

Duties & Responsibilities:

  • Perform application and infrastructure penetration tests, as well as physical security review and social engineering tests for our global clients
  • Review and define requirements for information security solutions
  • Perform security reviews of application designs, source code and deployments as required, covering all types of applications (web application, web services, mobile applications, thick client applications, SaaS)
  • Participate in Security Assessments of networks, systems and applications
  • Work on improvements for provided security services, including the continuous enhancement of existing methodology material and supporting assets.

Job Requirements:

  • Bachelor degree or higher, technical discipline preferred
  • Two years of working experience in IT Security, preferably with exposure to application security testing (source code review and application penetration tests)
  • Working knowledge of Security principles, techniques and technologies
  • Good understanding of network protocols, design and operations
  • Strong analytical skills and efficient problem solving
  • Willingness to travel
  • Willingness to learn
  • Good English communication skills (written and oral)

Nice to have Skills:

  • CISSP, CISA, CEH, OSCP or other information security certifications
  • Application development background and security knowledge – example of languages include C, C#, C++, Java, J2EE
  • Vulnerability and threat management experience
  • Experience with various security tools and products (Fortify, AppScan, etc…)

 

工作详细内容

全部职位:
2 发布
工作时间:
早班
工作类型:
工作地址:
性别:
没有偏好
最低学历:
硕士
学位头衔:
MSIS
职位等级:
资深专业人员
经验:
3年 - 4年
在之前申请:
Jun 27, 2017
发布日期:
May 26, 2017

Trillium Information Security Systems

· 11-50 员工 - 卡拉奇

Trillium Information Security Systems is the regions's first full spectrum Information Assurance focused company! The passion to deliver the best Information Assurance services with solid in-house knowledge back-up, stems from our uniquely qualified and experienced top management. We boast the strongest team with each member holding minimum Master of Science degrees in Information Assurance, Information Security or IT. These are further strengthened with multiple qualifications and certifications. The result is the strongest and the most qualified resource and knowledge base in the region! We design and implement customized solutions based upon Information Security Management, Business Continuity Management, IT Service Management using Standards and Best Practices. Our unique expertise allows us to integrate various Standards and Best Practices into a customized Integrated Management Systems for each customer.

你最大的竞争优势

快速得到有竞争力的分析和专业的对你的评定
联系我们团队的专业顾问来提升你的简历
尝试罗资 专业版

相同职位头衔

VAPT Analyst

MTBC, 多个城市, 巴基斯坦
发布 Apr 23, 2024
我在ROZEE上找到工作啦!